Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC
Norfolk, VA, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Complex Networks Cyber Security System Configuration Data Validation Database Queries Elasticsearch Monitoring of Systems Intrusion Detection Systems Network Security Linux Servers NetFlow
+7 more
Logstash Information Technology Drilldown Kibana Cyber Warfare Splunk Devsecops

Job description

You will work with an expert team focused on implementing and operating next-generation security solutions for government and commercial clients. You’ll use Splunk and integrate it with other state-of-the-art tools like HBSS, Enterprise Security Manager (ESM), Network Security Manager (NSM), NetFlow, and/or Intrusion Detection Systems (IDS) to monitor, detect, and analyze threats. You’ll perform hands-on evaluation, implementation, and operation of leading security Cyber defense tools and technologies and apply in-depth defense strategies for large and complex networks to rapidly identify vulnerabilities and threats, prioritizing response actions, including developing effective countermeasures. You’ll support the risk management and security compliance of specified cyber security tools. You’ll apply thought leadership to solving complex security challenges in a highly collaborative and innovative work environment.

Requirements

  • 3+ years of experience utilizing Splunk Enterprise

  • Experience with deploying, configuring, and performing functional testing and data validation in a Splunk environment

  • Experience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting in Windows and Linux Server environments

  • Experience creating custom dashboards, writing queries and generating reports, and setting up alerts and notifications

  • Familiarity with DoD Risk Management Framework

  • Top Secret/SCI clearance with the ability to obtain a Counter-Intelligence polygraph

  • HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate’s degree and 5+ years of experience with supporting IT projects and activities, or Bachelor’s degree and 3+ years of experience with supporting IT projects and activities

  • DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP

  • Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification prior to start date

Optional Qualifications:

  • Ability to ingest and parse logs within Splunk

  • Experience with fields abstraction

  • Experience with data modeling using Splunk

  • Experience with workflows and drilldown query

  • Experience administering Splunk in distributed deployments

  • Experience with performing site surveys, data gathering, and research and analysis regarding deploying and implementing security tools

  • Splunk Certified Power User or other advanced Splunk Certification

  • Experience with DevSecOps and Elasticsearch, Logstash & Kibana (ELK)

  • Possession of excellent oral and written communication skills, including using presentation expertise to convey complex ideas to client and internal staff

  • Possession of excellent problem-solving skills

Benefits & conditions

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS

About the company

AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:21 min

Deploying a primary Elasticsearch and Kibana cluster configuration

Philipp Krenn · WWC 2022

3:09 min

Balancing data science skillings alongside systems engineering rigor

Nico Schmidt · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:51 min

Executing simple full-text search queries using the Kibana interface

Derek Binkley · LIVE

Videos

See all

Related articles

See all