Senior Cyber Security Analyst (Splunk)
Nevada National Security SitesAbout the role
Mission Support and Test Services, LLC (MSTS) manages and operates the Nevada National Security Site (NNSS) for the U.S. National Nuclear Security Administration (NNSA). Our MISSION is to help ensure the security of the United States and its allies by providing high-hazard experimentation and incident response capabilities through operations, engineering, education, field, and integration services and by acting as environmental stewards to the Site’s Cold War legacy. Our VISION is to be the user site of choice for large-scale, high-hazard, national security experimentation, with premier facilities and capabilities below ground, on the ground, and in the air. (See NNSS.gov for our unique capabilities.) Our 2,750+ professional, craft, and support employees are called upon to innovate, collaborate, and deliver on some of the more difficult nuclear security challenges facing the world today.
- MSTS offers our full-time employees highly competitive salaries and benefits packages including medical, dental, and vision; both a pension and a 401k; paid time off and 96 hours of paid holidays; relocation (if located more than 75 miles from work location); tuition assistance and reimbursement; and more.
- MSTS is a limited liability company consisting of Honeywell International Inc. (Honeywell), Jacobs Engineering Group Inc. (Jacobs), and HII Nuclear Inc.
MSTS is seeking an experienced candidate for a Senior Splunk Engineer. The Senior Splunk Engineer will play a critical role in safeguarding company infrastructure from cyber threats and attacked by delivering innovative solutions which enhance the capabilities of the Cyber Security section to detect and identify threat activity and system intrusions. The position is responsible for a range of Splunk development and configuration activities including system deployment, Splunk app implementation, data onboarding, and other Splunk integrations.
Key Responsibilities
- Assist in managing the organization's Splunk environment providing fundamental knowledge of the Splunk license manager, indexers, and search heads.
- Conduct a range of Splunk development and configuration activities including system deployment, Splunk app implementation, data onboarding, and other Splunk integrations.
- Mature and maintain premium Splunk applications to include Enterprise Security, SOAR, & ITSI, as well as research new applications to modernize the deployment.
- Develop SOAR playbooks to minimize security incident response time and develop advanced techniques to identify and mitigate vulnerabilities.
- Collaboratively design and implement custom Splunk solutions which satisfy project requirements.
- Use established standards, practices, and procedures as well as an increasing technical knowledge to solve problems and complete projects.
- Review current Cyber Security threat information and assist the Threat Evaluation Team with mitigating vulnerabilities identified.
- Collaborate with other outside Cyber Security interests such as Counterintelligence, other DOE sites, US CERT, and law enforcement.
- Assist with data calls, FISMA reporting, compliance scanning and reporting, continuous monitoring, and compiling reports for auditors.
- Perform other duties assigned by Management.
- Bachelor’s degree or equivalent training and experience in a computer-related field and at least 5 years of related experience.
- Preferred Qualifications:
- Splunk Enterprise Certified Architect
- Splunk Enterprise Security Certified Administrator
- Splunk SOAR Certified Automation Developer
- Splunk IT Service Intelligence Certified Administrator
- A strong IT background, including networking fundamentals and system. Able to demonstrate thorough understanding of basic principles, theories, standards, practices, protocols, and procedures used in Cyber Security as well as knowledge of Linux administration services.
- Experience deploying, configuring, and managing Splunk systems.
- Experience with centralized logging and filtering (Splunk, syslog).
- Experience deploying and troubleshooting large clustered Splunk deployments.
- Experience onboarding various data sources into Splunk using multiple input techniques.
- Experience developing and maintaining health monitoring for a large Splunk deployment and data sources.
- Experience managing Splunk via the command-line interface.
- Experience with DevOps platforms and tools (Jira, git, Jenkins, Ansible).
- A strong understanding of software development best practices and design patterns.
- Modern programming skills in any language, including version control, test-driven development, and debugging.
- Knowledge, experience, and scripting skills (Bash, Python, PowerShell, e
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s