Senior Splunk Engineer
Critical SolutionsAbout the role
Senior Splunk Engineer
Location: Ashburn, Virginia
Full-time, Onsite
Clearance Required: Must be a US citizen and be able to favorably pass a (BI) Background Investigation to join this program
JOB DESCRIPTION
Critical Solutions has an immediate need for a Senior Splunk Engineer to support a Federal Program in Ashburn, VA.
The Splunk Engineer will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security premium app, spanning security, performance, and operational roles.
PRIMARY ROLES & RESPONSIBILITIES
- Recognize and on-board new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data.
- Editing and maintaining Splunk configuration files and apps in Linux environment
- Assist with providing engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security premium app, spanning security, performance, and operational roles.
- Work closely with Cybersecurity Engineering team members and interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards
- Communicate and interact with management as necessary
BASIC QUALIFICATIONS
- Must be a US citizen and be able to favorably pass a (BI) Background Investigation to join this program
- A minimum of a Bachelor's degree coupled with 7+ years of experience in the Information Technology arena.
- 4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
- 3+ Years of experience in Linux and SQL/ODBC interfaces
- 2+ Years of experience in app interface development, using REST APIs
- Previous project management experience
- ITIL Change & Configuration Management
- Experience with Ansible and GIT
- Ability to follow Change & Configuration Management
- Knowledge of Cloud Services such as AWS, Azure, Office365
- Experience in automating Splunk Deployments
- Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure
- Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision
- Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell
- Must have Splunk Certified Architect Certification or Splunk Certified Administrator Certification. In additional to one of the following certifications:
- CCIE Security
- Cisco Certified Network Professional (CCNP)
- CCNP Security
- CCSP - Certified Cloud Security Professional
- CEH - Certified Ethical Hacker
- Certified Data Administrator Professional
- Certified Implementation Engineer Specialist
- Splunk Certified Architect
- Certified Storage Associate
- CISSP - Certified Information Systems Security
- CompTIA Advanced Security Practitioner (CASP)
- Converged Infrastructure Specialist
- CSSLP - Certified Secure Software Lifecycle Professional
- ECSP - EC-Council Certified Secure Programmer
- GCIH - Incident Handler
- GCWN - Windows Security Administrator
- GICSP -Cyber Security Professional
- GISF - Security Fundamentals
- GISP - Security Professional
- GSSP - Secure Software Programmer
- MCSE - Microsoft Certified Solutions Expert (Server)
- RHCA - Red Hat Certified Architect
- RHCE - Red Hat Certified Engineer
- SEI (Software Engineering I
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s