Senior Splunk Administrator
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
GCYber is seeking a Senior Splunk Administrator, to support a high-profile government customer. This is a hands-on administration role responsible for data ingestion, dashboard development, and resolving issues when data is missing, delayed, duplicated, or incorrectly parsed. As the Senior Splunk Administrator, you will:
- Administer and monitor an enterprise Splunk environment, including indexer clusters, search head clusters, heavy and universal forwarders, deployment servers, deployers, cluster managers, and monitoring consoles.
- Troubleshoot missing, delayed, duplicated, incorrectly parsed, or incorrectly routed data across the complete ingestion path.
- Configure and maintain Splunk inputs, outputs, indexes, sourcetypes, routing, filtering, timestamp extraction, and event parsing.
- Build and maintain Splunk dashboards, reports, alerts, and saved searches that provide useful operational and cybersecurity visibility.
- Work with stakeholders to define dashboard requirements, identify the right data, and present results in a clear and actionable format.
- Develop and optimize SPL searches that support dashboards, data validation, troubleshooting, trend analysis, and operational reporting.
- Diagnose issues involving forwarders, blocked queues, certificates, network connectivity, indexing, permissions, dashboards, and search logic., Description The Defense sector at Leidos is seeking an experienced Senior Network Engineer to support a fast-paced Department of Defense (DoD) program supporting the Air Force Li…
- 1 day ago +
Requirements
- Active DoD Top Secret/SCI clearance
- Active IAT II certification (i.e., Security+, CySA+, CCNA-Security, GSEC, CND, GICSP, SSCP)
- Bachelor’s Degree in Computer Science, Cybersecurity, Computer. Engineering, Information Technology, or equivalent degree
- 5+ years of Splunk administration or engineering experience.
- Hands-on experience supporting a distributed enterprise Splunk environment
- Experience with indexer clusters, search head clusters, heavy forwarders, universal forwarders, deployment servers, and related Splunk components.
- Splunk certification preferred
Benefits & conditions
GCyber is committed to the well-being and development of every employee. Our benefits are designed to support your personal and professional goals, from health and wellness programs to retirement savings and career development opportunities. Highlights include:
- 26 Days of Paid Leave + Annual PTO Increase
- An extra day of paid leave for every year of employment with GCyber
- Paid Parental Leave
- Additional Leave Allowances for Military Duty, Jury Duty, and Bereavement Leave
- 401(k) Matching
- 100% Company-funded Disability Insurance
- 90% Company-Funded Health, Dental, and Vision Insurance, with contributions to insurance benefits for spouses, children, and family members
- Training and Professional Development Plans
- Commuter Benefits Plan
- Parking and Transportation Allowance
Equal Opportunity Employer GCyber is an Equal Opportunity Employer. This means you don’t have to worry about whether your application process will be fair. We consider all applicants without regard to race, color, religion, age, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, veteran status, or disability. Stay in Touch For future job notifications please follow GCyber on LinkedIn. Powered by JazzHR
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Dev Digest 134 - Where pixels sing?
Dev Digest 164: AI Agents, AI Blindspots and MCP security problems
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents