initiatives. Knowledge of NIST guidance (SP 800-37, 800-53, 800-161) and JSIG guidance. Hands-on risk assessment experience that incorporates system/mission requirements and operation constraints. Splunk Experience to enhance your threats detection capabilities. Other Requirements: Must have an active Secret clearance with the ability to obtain a Top Secret with SCI eligibility or have an active More ❯
Description SAIC's Horizon 2 contract is seeking an energized and professional Principal Systems Administrator to support the contract's secure operating facilities in Colorado Springs, CO. Your background in configuring, maintaining, and troubleshooting systems in both Windows and Linux More ❯
Evolver Federal is seeking a ServiceNow Cybersecurity Risk Management Analyst experience to support its Federal client in Springfield, VA in building and maintaining workflows and supporting its business processes using ServiceNow and lead the automation of workflows supporting cybersecurity governance More ❯
improvement programs, providing operational management and delivering fully or co-managed SOCs off and on-prem, they continue to offer cutting edge provision within this space. As a Senior SPLUNK Consultant, you will guide enterprise organisations through consultative reviews, ensuring their SIEM and wider technologies are operating as effectively as possible whilst ensuring People and Process are similarly proficient. Main … documentation Assess existing threat monitoring rules with a focus on changing threat landscape and technologies Document appropriate detection, containment and response strategies to meet business needs Pre-requisites: Experienced Splunk Engineer/Splunk Consultant with significant knowledge of Splunk technology Consistent experience from within the cyber security industry Ability to write Splunk Searches Ability to write Splunk TAs for applications … and middleware Experience of Splunk Enterprise Security Strong scripting experience - Python (preferred), Bash, Perl, Shell, VBA Relevant knowledge of other cyber technologies such as firewalls, IDS/IPS or proxies Strong communication and documentation skills Developing SIEM use cases is a strong advantage Further info: Competitive Basic, Bonus and Flex bens Remote working UK. Various office locations To apply: Please More ❯
SCDIT is seeking a skilled SPLUNK Engineer to join our dynamic team. The Splunk engineer is expected to use Splunk software in his/her everyday job for searching, monitoring, and analyzing machine-generated data. Splunk is being used for metrics, diagnosing problems, and pulling data from repositories on our servers from tools such as CASPORT, LATTEART, JIRA, and CONFLUENCE. … This data is being assembled into dashboards. Role Responsibilities: Administer Splunk clusters Upgrade the tool when required API data calls IAVA support CentOS7 to RHEL8 upgrade Moving to AWS Pulling logs for servers Creating dashboards and briefing material using Splunk data Role Requirements: Scripting Experience (python etc.); pulling data from tools via RestAPI 7-10 years of experience. Candidates will … be considered for DevOps and Splunk multi-role if they possess the skills. Required Clearance: Candidate must have a TS/SCI polygraph clearance Pay Range: $202,000-$215,000 SCD Benefits: An established, family-owned and operated company that cares about your continued career growth and happiness. Opportunities for advancement. Work/life balance. 100% company-paid Health, Dental More ❯
Own your career as a Splunk Engineer at GDIT. Here, you'll have the opportunity to build strong lines of cyber defense using cutting-edge technologies. Your work in cyber security at GDIT will have an impact on securing our clients' missions and ensuring we anticipate the threats of tomorrow. At GDIT, people are our differentiator. As a Splunk Engineer … you will help ensure today is safe and tomorrow is smarter. Our work depends on a Splunk Engineer joining our team to provide critical support to the architecture, deployment, and maintenance of Splunk environments that support essential federal clients. The Splunk Engineer will work as part of a diverse, high-octane security team to deploy, test, manage, and maintain Splunk … opportunity to safeguard vital infrastructure and grow your career with a company that values its people as our greatest asset, then this is the role for you! HOW A SPLUNK ENGINEER WILL MAKE AN IMPACT Supports systems integration efforts involving hardware, software, operating system and communications interoperability, and maintenance of the Splunk Environment. Manages distributed deployment architecture, index clusters, and More ❯
Job Title: Splunk Consultant Salary: £55,000 - £70,000 Location: Remote (with travel to client sites at least once per quarter) Security Clearance: Minimum SC required About the Role Networkology is seeking a highly skilled Splunk Consultant to join our growing team. This is an exciting opportunity to work on innovative, mission-critical projects with leading government and private sector … clients. You’ll leverage your expertise in Splunk and cloud technologies to design, implement, and optimise data and security solutions that drive real-world impact. What You'll Do Act as a trusted technical advisor, guiding clients through the delivery of robust data and logging solutions. Engineer and support data pipelines for both operational and security-focused use cases. Engage … structured technical documentation to support delivery and knowledge transfer. Collaborate with cross-functional teams, troubleshooting complex issues and delivering innovative solutions. What We’re Looking For Technical Expertise: Certified Splunk Architect (minimum Splunk Admin certification with strong real-world experience considered) Demonstrated experience delivering data use-case solutions Exposure to engineering security use-cases (desirable) Proficient in AWS services with More ❯
MUST HAVE SECRET CLEARANCE on location in Doral, FL Job Title: Splunk UBA Engineer We are seeking an experienced and analytical Splunk UBA Engineer to implement, optimize, and maintain our User Behavior Analytics (UBA) platform. In this role, you will use behavioral modeling and machine learning capabilities in Splunk UBA to identify insider threats, compromised accounts, data exfiltration, and other … work closely with SOC analysts, engineers, and data owners to turn user activity data into actionable intelligence and risk-based threat detections. Key Responsibilities • Deploy, configure, and maintain the Splunk UBA platform, including data ingestion, normalization, and threat model tuning. • Deploy UBA cluster designing the build • Ingest and map logs from various sources (e.g., Active Directory, VPN, firewalls, proxy, endpoint … risk scoring, notable events, and incident response workflows. • Build and maintain dashboards, entity timelines, and investigative tools within UBA to support threat hunting and investigations. • Integrate UBA output with Splunk Enterprise Security (ES) or SOAR platforms for automated response and triage. • Continuously evaluate new data sources, use cases, and detection strategies to enhance UBA capabilities. • Document procedures, configurations, and threat More ❯
Splunk Developer (Threat Detection Consultant) - Brussels/London/Paris/Amsterdam - Banking Client Duration: 1 year Rate: 500 - 800 per day Hybrid: 2 days onsite per week (London, Paris, Brussels or Amsterdam) Role: Interact with the different customers to capture and define requirements for the development and testing of the threat detection capabilities Cooperate with log source onboarding team … to assure correct log source onboarding and log mapping to data models according to Splunk standard processes The development and tuning and continuous improvement of correlation rules Develop and maintain dashboards, reports, and alerts Create Splunk Knowledge Objects to address customers needs in context of using Splunk as security tool Prepare correlation search tests, conduct tests, and document evidence from … making sure we have a healthy balance between defect resolution and new features Qualifications: Technical Skills: In depth experience in development and maintenance of SIEM use cases Fluent in Splunk's search processing language (SPL) Excellent knowledge of Splunk Enterprise and Splunk Enterprise Security Sound knowledge about Splunk Common Information Model and log normalization using Data Models Solid understanding of More ❯
IT architecture. Offers a wide range of roles, from cybersecurity experts to engineers specializing in systems, networks, software, and data center services. About The Role Peraton is seeking a Splunk Architect to provide design, deployment, and configuration of Splunk in both on-premises and cloud environments. The Splunk Architect/Engineer subject matter expert (SME) will have the following responsibilities … Provide Splunk support for design, architecture, development, unit test, deployment, installation, configuration, integration, operation, and maintenance Experience in the design and upgrade of Splunk in the cloud and on-premise environments to include architecting search head, indexer, universal forwarder, and heavy forwarder instances needed to service the expanding enterprise demand expected on the Splunk System as cross organizational use cases … emerge Drive complex security focused Splunk deployments, including architecting, implementing, and integrating with a current or planned customer security and monitoring strategy to include advanced products like Enterprise Security Build Splunk dashboards that take inputs from various data sources such as application logs, operating system logs, middleware logs, network feeds, etc. Utilize Splunk to develop data requirements, data catalog(s More ❯
Senior Splunk Engineer needed for an opportunity with SOC's client to work in Herndon, Virginia. Active Top Secret/SCI Clearance with CI Polygraph is Required! Responsibilities Have an initial understanding of the most effective and efficient process to get things done with a focus on continuous improvement. Begin to develop the ability to make sense of complex information …/SCI with a full-scope poly required. Experience operating in classified environments. Bachelor's degree in a related area or at least 4 years of related work experience. Splunk industry certifications. Strong background with Splunk Enterprise and Splunk Enterprise Security. Understanding of identity, SIEM, cybersecurity, and infrastructure concepts. Understanding of governance and compliance, specifically with FAR, DFARs, CUI and More ❯
secure. Program Overview Provides IC data management support to modernize mega data repositories, dataflow management, data provenance and compliance validation, and streaming solutions. About The Role Position: SRE/Splunk Administrator Location: Annapolis Junction, MD Business Unit: Cyber Mission, Peraton Peraton is seeking a talented Site Reliability Engineer (SRE)/Splunk Administrator to support a high-impact, mission-critical program … our Cyber Mission Business Unit. This role is based in Annapolis Junction, MD, and plays a key part in maintaining, modernizing, and scaling enterprise-grade cybersecurity infrastructure. As a Splunk Administrator, you will take ownership of the stability, performance, and evolution of a large-scale Splunk environment that directly supports national security operations. What You'll Do: Administer and maintain … the existing Splunk infrastructure, ensuring availability, performance, and reliability across the enterprise. Support and optimize Splunk Enterprise Security (ES) capabilities to meet mission-critical cybersecurity needs. Apply patches, perform upgrades, and maintain system integrity and security compliance. Troubleshoot complex system and log issues and collaborate effectively across government and contractor teams in a high-visibility environment. Oversee full-stack SplunkMore ❯
transforming industries through cutting-edge digital solutions and next-generation AI. We empower businesses-and their customers-to achieve more through innovation, automation, and intelligent insights. The Role Presidio Splunk Engineers serve as a technical expert supporting military and federal customers in the nearby Fayetteville, NC area. You will be responsible for architecting, deploying, and configuring Splunk products within classified … environments, ensuring compliance with DoD security requirements and RMF guidelines. Your background in System Administration, Security, and Consulting, combined with hands-on Splunk experience and required security clearance, will be essential for supporting mission-critical operations. Responsibilities include: • Splunk Technical Capability o Deliver Splunk engineering solutions in on-prem and Cloud instances o Understand and execute on the promise of … Splunk within the customer's environment o Technical expert in at least one premium application within Splunk such as ITSI or ES (Enterprise Security) • Delivery Engineering o Serve as the Splunk expert on projects exceeding quality delivery standards o Become a Trusted Advisor to internal teams and external customers o Perform timely documentation for all work completed • Mission Support o More ❯
Job Title: Splunk Engineer Location: Herndon, VA (CI Poly or FS Poly), Ft. Meade, MD (FS Poly), McLean, VA (FS Poly) End Customer: Intel community Program Name & Supporting Details: Could not disclose Budget Approved/Fully Funded: Yes # of Positions: 4 Reason for opening: New position Note: Prefers FS Poly, but if they are hands-on with ITSI (and …/SCI with a full-scope poly required. Experience operating in classified environments. Bachelor's degree in a related area or at least 4 years of related work experience. Splunk industry certifications. Strong background with Splunk Enterprise and Splunk Enterprise Security. Understanding of identity, SIEM, cybersecurity, and infrastructure concepts. Understanding of governance and compliance, specifically with FAR, DFARs, CUI and More ❯
Herndon, Virginia, United States Hybrid / WFH Options
Optiv+ClearShark
TS/SCI with a full scope polygraph. Experience operating in classified environments. Bachelor's degree in a related area or at least 4 years of related work experience. Splunk industry certifications. Strong background with Splunk Enterprise and Splunk Enterprise Security. Understanding of identity, SIEM, cybersecurity, and infrastructure concepts. Understanding of governance and compliance, specifically with FAR, DFARs, CUI and More ❯
EngineeringHybrid Remote , London,United KingdomReading,United Kingdom Splunk - a Cisco company, provides the Unified Security and Observability Platform. The world's leading organisations trust Splunk to go from insight to action fast and at scale; organisations such as McLaren, Heineken, and Tesco are turning data into action with Splunk. Join us as we pursue our innovative vision to make machine … accessible, usable and valuable to everyone. Our company is filled with people passionate about our solutions and seeking to deliver the best experience and outcomes to our customers. At Splunk, we're committed to our work, customers, having fun and, most importantly, to each other's success. This is an opportunity to work at a company that is changing the … way that information supports business decisions and makes the world a more digitally resilient place. Splunk seeks a highly motivated, outcome-focused individual to join our Solutions Engineering team as a Solutions Engineer (SE). As a Splunk SE, you'll be a technical sales resource for the UKI Enterprise Sales team supporting our clients in the UK and Ireland. More ❯
Cybersecurity, or related discipline, or equivalent hands-on experience. 2-5 years of experience in security operations or security engineering. Hands-on experience with SOAR platforms (e.g., Cortex XSOAR, Splunk SOAR, IBM Resilient). Strong familiarity with: Google SecOps/Chronicle Darktrace (AI-based threat detection) CrowdStrike Falcon platform Scripting experience in Python , PowerShell , or Bash . Experience with REST … critical thinking, and communication skills. Desirable Qualifications Experience with CI/CD for playbook development and version control (e.g., Git). Familiarity with other SOC tools (e.g., ServiceNow, Jira, Splunk, Elastic, SentinelOne). Security certifications such as: SOAR-specific certifications (e.g., Cortex XSOAR Certified Engineer) CrowdStrike Certified Falcon Responder Google Cybersecurity Certificate General security certs (e.g., CySA+, GCIH, CISSP More ❯
analysis through deployment and maintenance. Architect and develop complex software solutions utilizing C#, C , SQL Server, Microsoft Windows Server, and Linux Drive system monitoring, troubleshooting, and optimization efforts using Splunk and Grafana/Prometheus Work with Jira and Confluence for agile management Produce detailed technical documentation, including system designs, Interface Control Documents (ICDs), and operational procedures Guide cross-functional collaboration … hands-on software development experience Proven leadership in secure systems engineering, systems integration, and reverse engineering Expertise in programming languages: C#, C , SQL Experience with development tools: JIRA, Confluence, Splunk, Enterprise Architect Strong debugging, performance optimization, and DevOps skills Background in operational monitoring and on-call support for critical systems Exceptional analytical and problem-solving abilities Clearance Required: TS/ More ❯
environment Proficiency working in Linux systems; configuring Linux IPTables and SELinux; deciphering logs Demonstrated experience in Linux system hardening Demonstrated experience with security monitoring and log event triage using Splunk SPL Demonstrated senior level knowledge of cyber security and information security practices Hands on experience interpreting Linux and network data Demonstrated experience serving in a mid to senior security analyst … network security engineer position or other relevant cyber security position Demonstrated experience with Splunk Enterprise Security (SES) Security Enterprise Incident Manager (SIEM) system or willingness to quickly take a course and learn SES Demonstrated extensive experience using/implementing security products such as network monitoring devices (i.e., Zeek, SNORT, Cisco Stealthwatch) and end-point security products to detect advanced attacks More ❯
process Collaborate with cross-functional teams to ensure compliance with security standards and regulatory requirements Automate and orchestrate security processes, including incident response and threat detection, using technologies like Splunk, Chef Automate, and others Stay updated with emerging DevSecOps trends, tools, and practices, and provide recommendations for implementing new technologies Provide mentorship and guidance to junior engineers in DevSecOps practices … of experience as a DevSecOps Engineer or related field This position requires a High School Diploma, GED, or equivalent Experience in any or all of the following: Docker Enterprise, Splunk, Chef, Chef Automate, Chef (Ruby), Puppet, Ansible, Kubernetes, Openshift Hands-on working experience in Terraform (IaC), Jenkins groovy scripts, and Python More ❯
cloud experience/certifications Experience with/knowledge of the following topic areas: Incident detection, incident response and forensics activities Implementing and managing Network and Application Firewalls, SIEM (e.g., Splunk), end-point security (IDS/IPS and HBSS) Networking protocols, such as TCP/IP, LAN/WAN concepts Automation (e.g., Ansible, CloudFormation) Cybersecurity trends and hacking techniques Security tools … and processes such as Splunk, HBSS, IDS/IPS, VPN, Rapid 7, Webinspect, Appdetective Scripting languages (Python, Power Shell) Virtual private networks, firewalls, web protocols SAFe Agile Framework Knowledge of potential attack vectors such as XSS, injection, hijacking and social engineering. Health monitoring tools (Nagios, SolarWinds) Interview Process The process typically involves an initial phone screen followed by technical interviews. More ❯
Papillion, Nebraska, United States Hybrid / WFH Options
Charles Schwab
telemetry pipeline. Proficient with Monitoring Tools, Linux administration; Proficient in Kafka administration, including installing software, modifying configuration files, and agent management. Highly efficient multi-tasker and great organization skills. Splunk, Grafana, and Datadog experience a plus. Duties will include: On-boarding new Kafka producer and consumer use cases. Engineering and supporting the enterprise telemetry pipeline Testing and deploying software upgrades. … environments (AWS, Azure, GCP, and PCF) Familiarity with DNS, Load balancing, and firewalls. Ability to analyze logs to diagnose issues. Experience using other monitoring or analytics tools such as Splunk or Prometheus) Desired: Scripting experience with Python, Bash, Powershell or similar. Desired: Knowledge or experience in high level languages such as Java or Go. In addition to the salary range More ❯
Littleton, Colorado, United States Hybrid / WFH Options
Charles Schwab
telemetry pipeline. Proficient with Monitoring Tools, Linux administration; Proficient in Kafka administration, including installing software, modifying configuration files, and agent management. Highly efficient multi-tasker and great organization skills. Splunk, Grafana, and Datadog experience a plus. Duties will include: On-boarding new Kafka producer and consumer use cases. Engineering and supporting the enterprise telemetry pipeline Testing and deploying software upgrades. … environments (AWS, Azure, GCP, and PCF) Familiarity with DNS, Load balancing, and firewalls. Ability to analyze logs to diagnose issues. Experience using other monitoring or analytics tools such as Splunk or Prometheus) Desired: Scripting experience with Python, Bash, Powershell or similar. Desired: Knowledge or experience in high level languages such as Java or Go. In addition to the salary range More ❯
Bellevue, Iowa, United States Hybrid / WFH Options
Charles Schwab
telemetry pipeline. Proficient with Monitoring Tools, Linux administration; Proficient in Kafka administration, including installing software, modifying configuration files, and agent management. Highly efficient multi-tasker and great organization skills. Splunk, Grafana, and Datadog experience a plus. Duties will include: On-boarding new Kafka producer and consumer use cases. Engineering and supporting the enterprise telemetry pipeline Testing and deploying software upgrades. … environments (AWS, Azure, GCP, and PCF) Familiarity with DNS, Load balancing, and firewalls. Ability to analyze logs to diagnose issues. Experience using other monitoring or analytics tools such as Splunk or Prometheus) Desired: Scripting experience with Python, Bash, Powershell or similar. Desired: Knowledge or experience in high level languages such as Java or Go. In addition to the salary range More ❯
Omaha, Nebraska, United States Hybrid / WFH Options
Charles Schwab
telemetry pipeline. Proficient with Monitoring Tools, Linux administration; Proficient in Kafka administration, including installing software, modifying configuration files, and agent management. Highly efficient multi-tasker and great organization skills. Splunk, Grafana, and Datadog experience a plus. Duties will include: On-boarding new Kafka producer and consumer use cases. Engineering and supporting the enterprise telemetry pipeline Testing and deploying software upgrades. … environments (AWS, Azure, GCP, and PCF) Familiarity with DNS, Load balancing, and firewalls. Ability to analyze logs to diagnose issues. Experience using other monitoring or analytics tools such as Splunk or Prometheus) Desired: Scripting experience with Python, Bash, Powershell or similar. Desired: Knowledge or experience in high level languages such as Java or Go. In addition to the salary range More ❯