Splunk Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+67 more
Job description
Linux Splunk Editing Ansible Equities Dashboard Scripting Leadership Management Automation ServiceNow Market Data RESTful API Self-Starter Microsoft 365 Cyber Security Prioritization Cloud Services Cloud Security Problem Solving Ancient History CompTIA Security+ Cyber Engineering Windows PowerShell Wide Area Networks Workflow Management Systems Engineering Amazon Web Services Integration Testing Information Systems Local Area Networks Regular Expressions Enterprise Security Atlassian Confluence Business Intelligence Requirements Analysis Information Technology Configuration Management Bash (Scripting Language) Cyber Threat Intelligence IAT Level II Certification Splunk Enterprise Security Network Planning And Design Git (Version Control System) Python (Programming Language) Troubleshooting (Problem Solving) Intrusion Detection And Prevention Visual Basic (Programming Language) Federal Information Security Management Act, Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations. The CBP SOC is responsible for the overall security of CBP Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed security violations.Leidos currently has a need for a Splunk Engineer for this highly visible cyber security program supporting Customs and Border Protection (CBP) security operations center (SOC).The Splunk Engineer will support the full system engineering life cycle, including requirements analysis, design, development, implementation, integration, test, and documentation. The Splunk Engineer will follow defined best practices and operational workflows., The Splunk Engineer will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders, and Splunk Enterprise Security premium apps, spanning security, performance, and operational roles. The Engineer should be proficient with recognizing and onboarding new data sources into Splunk, building dashboards, searches, reports, etc. The Splunk engineer should be proficient within a Linux environment, editing and maintaining Splunk configuration files and apps. In addition, the Splunk engineer should be familiar with ansible or other automation tools. The Splunk Engineer will be a member of theEnterprise Splunk team, which falls under Cybersecurity Engineering, and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk Engineer may be required interact with senior management, as necessary., CI/CD Splunk Nessus Rapid7 Ansible Auditing Firewall Equities Scripting SonarQube DevSecOps Pipelines Operations Automation Purchasing Upskilling Market Data Coordinating Oracle Cloud Cryptography Investigation Cyber Security Key Management Risk Management Authentications Cloud Computing Ancient History Network Security Security Controls Incident Response CompTIA Security+ Digital Forensics System Monitoring Endpoint Security Cyber Engineering Analytical Method Windows PowerShell AWS CloudFormation Systems Engineering Amazon Web Services Time Off Management Security Engineering Software Development Contingency Planning Signals Intelligence Programming Languages Regulatory Frameworks Vulnerability Scanning Security Configuration Cyber Security Policies Configuration Management Vulnerability Management Certified Ethical Hacker Cyber Security Standards Cybersecurity Compliance Risk Management Framework Authorization (Computing) Cyber Threat Intelligence Cyber Security Assessment IT Security Documentation Agile Software Development Splunk Enterprise Security Google Cloud Platform (GCP) Computer Network Operations Change Management Processes Information Systems Security Customer Information Systems React.js (Javascript Library) Python (Programming Language) Enterprise Application Software Endpoint Detection And Response Troubleshooting (Problem Solving) Host Based Security System (HBSS) Intrusion Detection And Prevention CompTIA Cybersecurity Analyst (CySA+) Plan Of Action And Milestones (POA&M) Security Information And Event Management (SIEM) Certified Information Systems Security Professional Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Firewall Engineer Leidos
Arlington, VA*On-Site
Firewall Equities DevSecOps Operations Management Automation Market Data Consolidation Cyber Security Self-Motivation Working Capital Cloud Migration Service Catalog Virtual Routers Ancient History Customer Service Security Clearance Service Management Security Solutions Technology Roadmaps Networking Hardware Information Sharing GIAC Certifications Palo Alto Firewalls CompTIA Security+ CE Continuous Integration Continuous Development Web Application Security IAT Level II Certification Virtual Private Networks (VPN) Internet Protocol Security (IP SEC) CompTIA Cybersecurity Analyst (CySA+) Systems Security Certified Practitioner Information Technology Infrastructure Library GIAC Security Essentials Certification (GSEC) Counter Intelligence Polygraph (CI Clearance) GIAC Global Industrial Cyber Security Professional Cisco Certified Network Associate Security (CCNA Security) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Cyber Security Engineer-Technical Lead Leidos
Bethesda, MD*On-Site
Splunk Gitlab Github Ansible Auditing Firewall Equities Scripting DevSecOps Pipelines Operations Leadership Management Automation Mentorship Purchasing Upskilling SolarWinds Market Data Coordinating Cryptography Player Coach Proxy Servers Cyber Security Key Management Security Tools Attack Vectors Detail Oriented Problem Solving Cloud Computing Ancient History Database Systems Network Security Security Controls Incident Response Digital Forensics Endpoint Security Cyber Engineering Analytical Method Windows PowerShell AWS CloudFormation Medical Monitoring Amazon Web Services Time Off Management Security Engineering Technical Leadership Data Loss Prevention Signals Intelligence Programming Languages Technical Engineering Vulnerability Scanning Text Retrieval Systems Red Hat Enterprise Linux Cyber Threat Intelligence Agile Software Development Computer Network Operations Change Management Processes Customer Information Systems React.js (Javascript Library) Python (Programming Language) Virtual Private Networks (VPN) Enterprise Application Software Troubleshooting (Problem Solving) Host Based Security System (HBSS) Security Information And Event Management (SIEM) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Login | JoinContact
Requirements
-
A minimum of a Bachelor’s degree with 8+ years’ experience in the Information Technology arena.
-
Additional Cyber Security Certifications and experience may be considered in lieu of Bachelor’s degree.
-
A combination of 4+ Years experience in Linux, Splunk, Ansible, app interface development, using REST APIs, or other Cyber technologies.
-
Ability to followChange & Configuration Management, utilizing automation tools, such as Git.
-
4+ years of experience in a Splunk roleworking in a Splunkclustered environment, with experience in Splunk premium app management (Enterprise Security, ITSI).
-
Strong problem-solving abilities with an analytic and qualitative eye for reasoning under pressure.
-
Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision.
-
Knowledge of Cloud Services such as AWS, Office365.
-
Understanding and usage of Regex.
-
Experience with scripting languages, such as Python, Bash, Visual Basic or PowerShell.
-
Understanding basic networking principles or Enterprise network design.
-
Possess baseline security certification to meet DoD 8570 at IAT II requirements, such as Security +.
Must have at least one of the following certifications:
-
Splunk Enterprise Security Certified Admin
-
Splunk IT Service Intelligence Certified Admin
-
Splunk Cloud Certified Admin
-
Splunk SOAR Certified Automation Developer
-
Splunk Certified Developer
-
Splunk Enterprise Certified Admin
-
Splunk Enterprise Certified Architect
-
Splunk Core Certified Consultant
Must have a current or be able to favorably pass a 5-year (BI) Background Investigation to join this program.
Preferred Qualifications
-
Prior experience in Splunk professional services role.
-
Possess certifications in Splunk premium app, such as Enterprise Security, ITSI, UBA.
-
Splunk Certified Developer certification.
-
Experience in automating Splunk Deployments and orchestration within a Cloud environment.
-
Experience with FISMA Systems requirements.
-
Experience with Confluence, JIRA, ServiceNow.
-
Cribl CCOE User certification.
-
Knowledge/experience with CBP/DHS
Benefits & conditions
Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .
About the company
If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares., Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
Best Coding Boot Camps in Germany
Is Software Engineering Over-Saturated?
What’s the Difference between a Junior, Mid, and Senior Developer?