Splunk UBA Engineer

Leidos, Inc.
Suitland-Silver Hill, MD, United States
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$107,900.0 - $195,050.0
Working hours
Regular working hours

Tech stack

Network Security Wide Area Networks Information Technology Splunk

Job description

  • Administer the SOAR platform, including configuration, asset integrations, and custom fields.
  • Administer the User Behavior Analytics (UBA) platform, including configuration, data source ingestion, and validation.
  • Configure behavioral baselines, peer group analysis, user, device, and entity modeling, and risk scoring thresholds.
  • Monitor UBA pipeline health, model accuracy, and analytic coverage.
  • Tune anomaly detection logic to reduce false positives and improve threat detection accuracy.
  • Validate UBA insights against known security incidents and integrate findings into Splunk Enterprise Security.
  • Support UBA platform upgrades and analytic refresh cycles.
  • Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities.
  • Recommend architectural and security improvements.
  • Travel may be required between the National Maritime Intelligence Center (NMIC) and other designated CONUS and OCONUS locations in support of program requirements.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Information Assurance, or a related discipline with 8+ years of relevant experience, or a Master’s degree with 6+ years of relevant experience. 15+ years of experience, including at least 10 years supporting LAN/WAN technologies, may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Active IAT Level III certification (such as CISSP).
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years of experience with Splunk, including Splunk Add-ons, Apps, Technology Add-ons (TAs), and Universal Forwarder.
  • Expert knowledge of Splunk and its components, including Splunk Enterprise, Splunk Enterprise Security, and Splunk User Behavior Analytics (UBA).
  • Significant experience with the System/Software Development Life Cycle (SDLC).
  • Strong analytical and problem solving skills.
  • Effective verbal and written communication skills.

Benefits & conditions

Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .

About the company

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Defeating network latency in distributed system deployments

Wei Hu Wei Hu · WWC 2025

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter · WWC 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all