SPLUNK ENGINEER and Active Public Trust
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+25 more
Job description
Seeking an experienced Splunk Engineer SME to support enterprise logging, security monitoring, observability, and cybersecurity operations within a federal government environment. This role will lead the design, implementation, and optimization of Splunk solutions that provide operational visibility, security analytics, compliance reporting, and continuous monitoring capabilities across AWS and hybrid infrastructures supporting mission-critical government operations.
The ideal candidate possesses deep expertise in Splunk Enterprise and Splunk Cloud administration, AWS integrations, dashboard development, automation, and security monitoring. This individual will collaborate closely with cloud architects, cybersecurity teams, system administrators, developers, and government stakeholders to support cloud modernization initiatives, enterprise security objectives, and highly regulated federal environments., Splunk Administration & Platform Management
- Design, deploy, configure, administer, and maintain Splunk Enterprise and Splunk Cloud environments.
- Manage Splunk indexers, search heads, forwarders, deployment servers, and supporting infrastructure.
- Perform routine maintenance, optimization, storage management, and performance tuning activities.
AWS Integration & Cloud Monitoring
- Integrate Splunk with AWS services including CloudTrail, CloudWatch, Security Hub, GuardDuty, AWS Config, VPC Flow Logs, EC2, Lambda, and S3.
- Support cloud migration and modernization initiatives while maintaining operational and security visibility.
- Develop data ingestion strategies for cloud-native and hybrid environments.
Security Analytics & Operational Visibility
- Develop advanced SPL searches, correlation searches, data models, dashboards, alerts, and reporting solutions.
- Support threat detection, incident response, troubleshooting, and operational monitoring activities.
- Create executive-level reporting and actionable operational insights.
Compliance, Monitoring & Vulnerability Management
· Support continuous monitoring, vulnerability management, compliance reporting, and security operations initiatives.
· Assist with NIST, FISMA, and FedRAMP compliance efforts.
· Integrate Splunk with vulnerability management and enterprise monitoring platforms.
Automation & Engineering
· Develop automation solutions using Python, PowerShell, Bash, AWS CLI, CloudFormation, Terraform, and related technologies.
· Support release validation, monitoring readiness, alert configuration, and post-deployment activities.
· Implement and maintain Splunk applications and AWS integration add-ons.
Collaboration & Stakeholder Engagement
· Partner with cloud engineers, security teams, developers, system administrators, and government stakeholders.
· Troubleshoot complex technical issues and provide subject matter expertise.
· Maintain technical documentation and support mission-critical federal operations.
Requirements
Do you have experience in Stakeholder management?, * Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity, Engineering, or a related field OR 10+ years of directly related experience in lieu of degree.
- 8+ years of experience in cloud technologies.
- 4+ years of hands-on AWS cloud experience.
- Proven experience administering Splunk Enterprise and/or Splunk Cloud environments.
- Experience integrating Splunk with AWS cloud services.
- Experience supporting enterprise monitoring, logging, observability, and security analytics solutions.
- Experience working with cybersecurity frameworks and federal compliance requirements.
Required Certifications:
Must possess:
- Splunk Enterprise Certified Admin OR
- Splunk Cloud Certified Admin, * VMware Certified Professional (VCP)
- HashiCorp Terraform Associate
Technical Skills:
-
Splunk Enterprise & Splunk Cloud
-
SPL (Splunk Processing Language)
-
AWS Cloud Services
-
CloudTrail, CloudWatch, GuardDuty, Security Hub
-
AWS Config, EC2, Lambda, S3
-
Python, PowerShell, Bash
-
CloudFormation & Terraform
-
IAM & AWS Security Services
-
Security Monitoring & Vulnerability Management
- NIST, FISMA, and FedRAMP Compliance
- U.S. Citizenship required.
- Ability to support Eastern Time Zone business hours.
- Must be eligible to obtain and maintain a federal clearance.
Strongly Preferred
- Active Public Trust Clearance.
- Active DOJ Public Trust Clearance.
- Experience supporting Department of Justice (DOJ) environments.
- Experience administering Splunk Federated Search environments.
- Splunk Enterprise Certified Architect.
- Terraform Associate Certification.
- VMware Certified Professional (VCP).
- Experience with Azure and/or Google Cloud Platform (GCP).
- Experience with Docker and Kubernetes.
- Experience with DevSecOps practices and CI/CD pipelines.
- Experience supporting Security Operations Centers (SOC).
- CISSP, CISM, CEH, Security+, or other cybersecurity certifications.
- Experience supporting large-scale federal cybersecurity and compliance programs.
Benefits & conditions
$85 - $150 an hour - Part-time, Full-time, Contract
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
Dev Digest 134 - Where pixels sing?
Top Big Data Technologies That You Need to Know
Is Software Engineering Over-Saturated?