Jobs · Engineering

Splunk Cyber Security SME

PlanIT Group, LLC · Reston, VA · 1 wk ago
RemoteRemoteEngineeringContract

About the role

The US Government Client seeks an experienced Splunk Subject Matter Expert with strong Engineering skills to join their dynamic team. The role involves designing, deploying, and maintaining on-premises and cloud-based Splunk environments to support enterprise-level monitoring, alerting, and reporting.

Responsibilities

  • Manage knowledge objects (fields, extractions, tags, event types, lookups, workflow actions, aliases, macros, etc.) through automations, scripting, and management server functions, including .conf and .cfg files.
  • Deploy and configure Splunk in large-scale environments.
  • Write complex Splunk queries, dashboards, and alerts using SPL.
  • Develop and integrate Splunk with external systems via REST APIs.
  • Design and develop automation workflows and dashboard interfaces.
  • Collaborate across DevOps, Security, and IT teams to optimize performance, ensure data integrity, system availability, and support mission-critical operations.
  • Provide off-hours and weekend support for systems maintenance, upgrades, and support.

Requirements

  • 5+ Years of Splunk Experience
  • Experience managing knowledge objects in Splunk.
  • Proficiency in writing complex Splunk queries and alerts.
  • Ability to analyze and troubleshoot complex data ingestion and parsing issues.
  • Strong scripting skills in Bash, Python, JavaScript, SQL, and PowerShell.
  • Strong communication and collaboration skills.
  • Experience mentoring and guiding junior researchers or team members.

Qualifications

  • A minimum of eight (8) years' overall relevant experience.
  • A degree from an accredited College/University in the applicable field of services is required.
  • If the individual's degree is not in the applicable field, four additional years of related experience are required.

Skills

  • Advanced knowledge of Unix/Linux and/or Windows systems administration and troubleshooting.
  • Experience with Splunk upgrades, patching, and performance tuning.
  • Experience integrating Splunk with cloud platforms (AWS, GCP, Azure).
  • Understanding of security and compliance requirements and implementation of role-based access controls (RBAC) in Splunk.
  • Extensive knowledge of defense-in-depth principles, Network and Security architecture, network topology, IT device integrity, and common security elements.
  • Experience installing and utilizing Splunk App for Data Science and Deep Learning.
  • Experience installing and utilizing Splunk SOAR Automation toolset.
  • Strong understanding of IT and Cyber industry standards and technologies, including NIST, FISMA, and FedRamp.

Benefits

Pass a client-mandated clearance process, including drug screening, criminal history check, and credit check. Overtime must be pre-approved in writing by the client manager or his/her designated representative. Authorized overtime will be reimbursed at straight time. The enforced dress code is business casual.

Pay

TBD

Schedule

TBD

Similar jobs

Splunk Cyber Security SME

General Dynamics Information TechnologyUnited States· 1 wk ago
RemoteEngineering$111k–$150k/yrapply on gdit.wd5.myworkdayjobs.com

Splunk SME

Largeton GroupTempe, AZ· 3 wk ago
OTHRapply on candidateportal.ceipal.com