Splunk Engineer
Role details
Job location
Tech stack
Requirements
Security Clearance:Active TS/SCI clearance with Polygraph Minimum Requirements:3+ years of experience with Splunk EnterpriseExperience developing searches, reports, alerts, and dashboards using SPLHands-on experience managing Splunk infrastructure (indexers, search heads, forwarders)Experience with data ingestion and onboarding new data sourcesFamiliarity with Splunk configuration files (e.g., inputs.conf, props.conf) and troubleshooting via GUI and CLI1+ year of experience in Linux and/or Windows system administrationExperience creating architectural or system diagramsFamiliarity with ticketing and collaboration tools (e.g., Jira, Confluence, SharePoint)Ability to work in Agile/Scrum environments and provide status updatesWillingness to work onsite in a SCIF 23 days per week (Falls Church)Bachelors degree in a relevant field (or equivalent experience)Key Responsibilities:Design, build, and maintain Splunk dashboards, alerts, and reporting solutionsAdminister and support Splunk environments, including infrastructure components and configurationsPerform data onboarding, parsing, and indexing for new log sourcesTroubleshoot and resolve system and configuration issuesDevelop and maintain documentation and architecture diagramsCollaborate with cross-functional teams to support monitoring, security, and analytics needsProvide updates and briefings to stakeholders on progress and system performanceSkills and Proficiencies:Splunk Enterprise (administration, configuration, and SPL development)Linux and Windows system administrationScripting and automation (e.g., Python, Bash, JSON, XML, YAML)Familiarity with AWS cloud environmentsExperience with automation and Infrastructure as CodeExposure to tools such as Docker, Kubernetes, and AnsibleKnowledge of Splunk Enterprise Security (ES) and User Behavior Analytics (UBA) (preferred)Strong communication, organization, and time management skills Additional Information:Relevant certifications such as Splunk Certified Admin or Architect are highly preferredIdeal candidates will demonstrate a mix of technical depth, problem-solving ability, and strong collaboration skills