SRE Cyber Tools - Splunk Admin.
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+10 more
Job description
Experteer Overview As a Leidos SRE Splunk Enterprise Administrator, you will support mission-critical cybersecurity operations for the Navy’s SMIT program. You’ll maintain and optimize distributed Splunk environments across hybrid cloud and on-premises setups, focusing on resilience, performance, and secure operations. You will collaborate with cross-functional teams to automate testing and validation of SLIs/SLOs, ensuring reliable services at scale. This role offers meaningful impact by strengthening cyber defense and enterprise network stability. Compensation / Benefits * Administer and operate distributed Splunk Enterprise environments (Search Heads, Indexers, Forwarders, Deployment Servers) across hybrid and on-premises infrastructure * Monitor health, ingestion, indexing performance, and retention; troubleshoot onboarding, parsing, and data issues * Support Splunk Cloud integrations and hybrid operational activities * Maintain and optimize Splunk apps, dashboards, alerts, and knowledge objects * Assist with patching, STIG compliance, and system hardening; support upgrades and modernization * Develop and maintain automation using scripting and configuration-management tools; contribute to CI/CD pipelines * Participate in incident response, root cause analysis, and post-incident reviews * Maintain architecture diagrams, runbooks, SOPs, and coordinate with cybersecurity, network, and server teams * Participate in after-hours support and on-call rotation Tasks * BS degree and 5-10 years of relevant experience or MS with 4-8 years * U.S. Citizen with active Secret clearance * DoD 8570.01 IAT Level II certification * 3+ years administering Splunk Enterprise v9 in hybrid/cloud/on-prem environments * Strong knowledge of Splunk ingestion, indexing, parsing, forwarding, and retention * RHEL 8/9 administration experience * Proficiency in scripting (Python, Bash, etc.) * Experience with cybersecurity monitoring and SIEM operations * TCP/UDP networking, SSL, Syslog, REST APIs, and authentication integrations * Vendor certifications (e.g., Splunk Enterprise Admin, Splunk Cloud Admin, SAFe) * Excellent communication, analytical, and documentation skills * Ability to work on-site at Norfolk Naval Station and manage competing priorities Key requirements *
Requirements
23541, objects * Assist with patching, STIG compliance, and system hardening; support upgrades and modernization * Develop and maintain automation using scripting and configuration-management tools; contribute to CI/CD pipelines * Participate in incident response, root cause analysis, and post-incident reviews * Maintain architecture diagrams, runbooks, SOPs, and coordinate with cybersecurity, network, and server teams * Participate in after-hours support and on-call rotation Tasks * BS degree and 5-10 years of relevant experience or MS with 4-8 years * U.S. Citizen with active Secret clearance * DoD 8570.01 IAT Level II certification * 3+ years administering Splunk Enterprise v9 in hybrid/cloud/on-prem environments * Strong knowledge of Splunk ingestion, indexing, parsing, forwarding, and retention * RHEL 8/9 administration experience * Proficiency in scripting (Python, Bash, etc.) * Experience with cybersecurity monitoring and SIEM operations * TCP/UDP networking, SSL, Syslog, REST a aav_ and authentication integrations * Vendor certifications (e.g., Splunk Enterprise Admin, Splunk Cloud Admin, SAFe) * Excellent communication, analytical, and documentation skills * Ability to work on-site at Norfolk Naval Station and manage competing priorities Key requirements *
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on us.experteer.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Highest Paying Tech Companies for Developers
Walking Into The Era of Supply Chain Risks
Dev Digest 120 - Apple and peers