SIEM Platform Engineer (DoD TS Clearance)

Martin Incorporated
Washington, DC, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Computing Platforms Configuration Management Cyber Security Data Retention Disaster Recovery Monitoring of Systems Intrusion Detection and Prevention Performance Tuning Role-Based Access Control Security Information and Event Management Data Storage Management Cloud Platform System
+7 more
Data Ingestion System Availability Indexer Storage Technologies Information Technology Performance Monitor Splunk

Job description

The SIEM responsible for the architecture, deployment, and ongoing health of the Splunk platform that underpins security operations across government agencies. This role owns the underlying infrastructure - indexers, search heads, forwarders, and clustering - and ensures the environment is performant, resilient, secure, and scalable. The Platform Engineer partners with Data and Detection Engineers, IT teams, and stakeholders to deliver a stable foundation on which data ingestion and threat detection depend., * Platform Architecture and Deployment

  • Design, deploy, and maintain Splunk environments, including indexer clusters, search head clusters, and forwarder tiers, to support enterprise-scale data collection and analysis.
  • Architect distributed and clustered deployments for high availability and disaster recovery.
  • Configuration and Optimization
  • Optimize Splunk configurations to ensure efficient data storage, indexing, retrieval, and search performance.
  • Manage index and storage design, data retention policies, and licensing to balance performance and cost.
  • Capacity Planning and Scaling
  • Monitor growth trends and forecast capacity needs across compute, storage, and licensing.
  • Scale the environment proactively to meet increasing data volumes and user demand.
  • Lifecycle Management
  • Plan and execute Splunk version upgrades, patching, and platform migrations with minimal disruption.
  • Manage app and add-on deployment across the environment using deployment servers and configuration management.
  • Performance Monitoring and Troubleshooting
  • Monitor system performance and troubleshoot issues related to indexing, search performance, and resource utilization.
  • Implement optimizations to enhance the platform’s efficiency, stability, and responsiveness.
  • Platform Security and Compliance
  • Implement access controls, role-based access (RBAC), hardening, and best practices to protect the platform and ensure compliance with relevant regulations and standards.
  • Support audit, accreditation, and continuous monitoring requirements for the environment.
  • Training and Documentation
  • Provide guidance to team members on Splunk platform administration and best practices.
  • Create and maintain documentation for platform architecture, configurations, and operational procedures.

Requirements

  • US Citizen with an active Top Secret Security Clearance.
  • Bachelor’s degree in Computer Science or a related field plus 6 years of related experience.
  • Proven experience designing, deploying, and administering distributed and clustered Splunk environments, preferably within government or enterprise settings.
  • Strong understanding of Splunk architecture, indexer/search head clustering, forwarder management, and licensing.
  • Experience with capacity planning, performance tuning, and platform upgrades.
  • Familiarity with security standards and regulations (NIST, FISMA, etc.) applicable to platform operation and accreditation.
  • Splunk Enterprise Certified Admin or Architect certification preferred.
  • Excellent problem-solving skills and the ability to diagnose and resolve complex technical issues.
  • Strong written and verbal communication skills.

PHYSICAL REQUIREMENTS & ENVIRONMENTAL CONDITIONS

  • Inside office environment.
  • Working on a computer for long periods of time.
  • May involve long period of sitting at a desk.
  • The work environment is fast-paced and sometimes involves extreme deadline pressures.

About the company

Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers’ missions. Our goal is to attract the best and brightest within their field.

We invest in our people because they are our greatest asset. They cultivate our purpose, embody and reflect our core values, and define our culture. MartinFed’s core values that set us apart are the following:

  • Be Driven - We are fueled by the hunger to learn more and do more.
  • Be Curious - We engage in continuous improvement - never accepting the status quo.
  • Be Humble - We seek honest feedback to strengthen our relationships.
  • Pursue Excellence - We strive to achieve extraordinary results and do not settle for mediocrity.

Strive for excellence and consider joining our growing team today!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:18 min

Prioritizing communication and structural awareness over strict tool mastery

Liam Hurrel +1 ¡ World Congress 2021

4:11 min

Introduction to cloud-native application developer security

Micah Silverman ¡ World Congress 2022

2:36 min

Analyzing limitations with PostgreSQL bitmap heap scans

Dharin Shah Dharin Shah ¡ World Congress 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 ¡ LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger ¡ LIVE

1:32 min

Generating functional runtime database columns using indexer properties

Halil İbrahim Kalkan Halil İbrahim Kalkan ¡ World Congress 2026 Europe

Videos

See all

Related articles

See all