Jobs and Careers
ON

Sr. Splunk Engineer

OneZero Solutions
United Statesfull_timeVerifiedPosted 6 Oct 2024

About the role

We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time employees receive an extremely competitive benefits package that includes health/dental/vision/life insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at: https://www.onezerollc.com/careers/

Title: Sr. Splunk Engineer

Location: Ashburn, VA

Clearance: Secret

The selected candidate will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security premuim app, spanning security, performance, and operational roles.

The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.

The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required interact with senior management, as necessary.

Knowledge of Cloud Services such as AWS, Azure, Office365

Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell

Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program.

Minimum of a Bachelor's degree coupled with 7+ years' experience in the Information Technology arena.
- 4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
- 3+ Years experience in Linux and SQL/ODBC interfaces
- 2+ Years experience in app interface development, using REST API's
- Previous project management experience.
- ITIL Change & Configuration Management
- Experience with Ansible and GIT

Ability to follow Change & Configuration Management

Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure

Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision

Knowledge of Cloud Services such as AWS, Azure, Office365

Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell

Splunk Certified Architect Certification

CCIE Security
Cisco Certified Network Professional (CCNP)
CCNP Security
CCSP - Certified Cloud Security Professional
CEH - Certified Ethical Hacker
Certified Data Administrator Professional
Certified Implementation Engineer Specialist
Splunk Certified Architect
Certified Storage Associate
CISSP - Certified Information Systems Security
CompTIA Advanced Security Practitioner (CASP)
Converged Infrastructure Specialist
CSSLP - Certified Secure Software Lifecycle Professional
ECSP - EC-Council Certified Secure Programmer
GCIH - Incident Handler
GCWN - Windows Security Administrator
GICSP -Cyber Security Professional
GISF - Security Fundamentals
GISP - Security Professional
GSSP - Secure Software Programmer
MCSE - Microsoft Certified Solutions Expert (Server)
RHCA - Red Hat Certified Architect
RHCE - Red Hat Certified Engineer
SEI (Software Engineering Institute)
SSCP - Systems Security Certified Practitioner
VCA (Certified Associate)
VCAP (Certified Advanced Professional)
VCDX (Certified Design Expert)
VCIX (Implementation Expert)
VCP (Certified Professional)
MS 365 Certified: Security Administrator
Microsoft Certified Azure Security Engineer (Associate)
Splunk Enterprise Ce

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

OneZero Solutions

View company profile →