Sr. Splunk Engineer - TS/SCI with CI Poly...

Optiv Inc
Elkridge, MD, United States
21 days ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Linux JSON Python (Programming Language) Ansible Security Information and Event Management Systems Integration Scripting Terraform Splunk

Job description

Optiv + ClearShark is looking for a highly skilled Sr. Splunk Engineer to join our cybersecurity team. The ideal candidate will be responsible for implementing, managing, and optimizing the Splunk platform to automate and orchestrate security operations. This role requires expertise in developing custom playbooks for various stakeholders, integrating with other security tools, and enhancing the overall security posture of the organization.

How you’ll make an impact

  • Create custom Splunk reports, dashboards, and content per customer requirements.

  • Ability to troubleshoot Splunk instances.

  • Execute all tasks outlined in the scope of work and follow standard operating procedures with minimal oversight.

  • Work with clients to analyze and understand their needs and objectives.

  • Serve as the escalation level for complex issues as necessary.

  • Aid Associate, Level I, and Level II Engineers on sophisticated tasking.

Requirements

  • Currently holds a TS/SCI with CI polygraph.

  • Security Certification (i.e, Security+, CISSP, etc) required.

  • 7-10 years of related work experience required.

  • Experience operating in classified environments.

  • Strong understanding of identity, SIEM, cybersecurity, and infrastructure concepts.

  • Splunk Core certification required.

  • Splunk IT Service Intelligence (ITSI) certification desired.

  • Splunk Certified Architect/Consultant preferred.

  • Experience with, or interest in, learning, deploying, and maintaining Splunk SOAR.

  • Experience with, or interest in, learning, deploying, and maintaining Splunk Enterprise Security.

  • Experience with, or interest in, learning, deploying, and maintaining Cribl Stream.

  • Robust understanding of identity, SIEM, cybersecurity, and infrastructure concepts.

  • Strong Linux and scripting (Python, Ansible, Terraform, JSON, others) experience.

  • Experience working in a Security Operations Center (SOC).

  • Experience operating in classified environments.

  • Initial understanding of leadership concepts and ideas.

  • Strong interpersonal skills and ability to work collaboratively in a team.

  • Ability to clearly communicate complex messages to a variety of audiences.

  • Excellent problem-solving skills with a keen attention to detail.

  • Willingness to travel to meet client needs.

  • Open to government workers and/or government experience.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all