Talent.com
Splunk Engineer

Splunk Engineer

CredenceRosslyn, VA, US
2 days ago
Job type
  • Full-time
  • Quick Apply
Job description

Credence is one of the largest privately held technologies services company in the country, repeatedly recognized as a top place to work, and have been on the Inc. 5000 Fastest Growing Private Companies list for the last 12 years. We practice servant leadership and believe that by focusing on the success of our clients, team members, and partners, we all achieve greater success.

At Credence, we support our clients’ mission-critical needs, powered by technology. We provide cutting-edge solutions, including AI / ML, enterprise modernization, and advanced intelligence capabilities, to the largest defense and health federal organizations. Through partnership and trust, we increase mission success for warfighters and secure our nation for a better future.

Position Summary

Credence has an immediate need for a Splunk Engineer with demonstrated experience designing, implementing, deploying, and managing complex Splunk environments for highly complex federal organizations. The ideal candidate must be experienced in customizing Splunk to meet specific use cases and requirements, develop and maintain Splunk dashboards, and create reports tailored to the needs of different teams and stakeholders.  The successful candidate will be responsibilities for providing oversight, monitoring indexing performance, search performance, and data ingest. Must have demonstrated experience supporting remediation of discovered threats and provide incident response capabilities when necessary as well as remain up-to-date with the latest Splunk features, enhancements, and industry trends, managing relationships with Splunk vendors to stay informed about new products and offerings.  The successfull candidate will analyze and conduct research to determine a cyber criminal’s capabilities, intentions, and attack approaches, including those with multiple phases.Will support and manage remediation of any discovered threats, and providing incident response capabilities when necessary.

Responsibilities include, but are not limited to the duties listed below

  • Create, manage, and support automation solutions for Splunk orchestration
  • Use the SIEM, EDR, IDS, and other tools to conduct cyber threat hunts
  • Rapidly respond to incidents to minimize risk exposure and ensure system availability; proactively monitor internal and external-facing environments
  • Identify attacker tools, tactics, and procedures to develop indicators of compromise. Form and articulate expert opinions based on findings and analysis
  • Seek opportunities to automate detection and remediation and reduce response times for incidents
  • Provide incident response support and coordination, including investigating security incidents and coordinating with other teams to contain and remediate the incident.
  • Leverage Splunk to create advanced search queries and reports to monitor system performance, security threats, and operational metrics.
  • Collaborate and support inquiries from cross-functional internal and external stakeholders such as system administrators, compliance, and data engineering teams, to ensure documentation is complete and in compliance with information security policies
  • Manage and support the development of security operations playbooks to ensure threat detection, monitoring, response, and forensics activities align with best practices, minimize gaps in detection and response, and provide comprehensive mitigation of threats
  • Evaluate third-party products and services to verify they meet security and compliance requirements
  • Familiarity with log management, event correlation, and data analysis concepts.
  • Drive improvements in technical architecture, standards, and processes to meet company objectives and best security practices
  • Develops technical solutions to verify compliance with required technical controls autonomously
  • Present findings / reports to stakeholders on a weekly basis
  • Perform log analysis, parsing, indexing, and analyzing machine data logs to extract actionable insights.
  • Perform upgrades and patch management to keep Splunk environments up-to-date and secure.
  • Design intuitive and customizable dashboards to visualize data trends.

Requirements

  • Active Secret security clearance required.
  • Masters Degree from an accredited university or equivalent combination of education in Computer Science, Information Technology, or a related field with 5 to 7 years of experience
  • Equivalent combination of education, technical training and certification  (CISSP, C|EH, GIAC GREM, GCTI, GCFR, GCFA, Splunk Certified Cybersecurity Defense Analyst, Splunk Enterprise Security Certified Admin) and / or work experience; knowledgeable about configuring Splunk for security and compliance requirements, including FISMA, SOC 2, HIPAA, and GDPR.
  • Experience in building Splunk Technology Add-ons and configuring field extractions for various data sources
  • Strong experience working with Splunk, including architecting and implementing Splunk solutions in large-scale environments.
  • Proficiency in SPL (Search Processing Language) for creating complex queries, reports, and dashboards in Splunk.
  • Experience in designing, developing, testing, troubleshooting, deploying, and maintaining Splunk solutions, reporting, alerting, and dashboards
  • Extensive knowledge of a tier Splunk installation : indexers, forwarders, search heads, clusters
  • Experience analyzing system, network, and application logs for attack techniques at all stages of the cyber kill chain
  • Experience with more than one or more enterprise-scale EDR and SIEM tool
  • Experience consuming and analyzing Cyber Threat Intelligence for actionable takeaways.
  • Strong analytical and critical thinking skills to identify and address complex data and system issues.
  • Strong problem-solving skills to investigate and resolve Splunk platform and data ingestion issues.
  • Strong communicator and collaborator, able to work closely with cross-functional teams.
  • Knowledgeable in using scripting languages (e.g., Python) and Splunk's built-in scripting to automate routine tasks.
  • Detail-oriented with a strong commitment to documenting configurations, processes, and best practices.
  • Familiarity with ServiceNow cloud offering and log ingestion to Splunk.
  • Create a job alert for this search

    Splunk Engineer • Rosslyn, VA, US

    Related jobs
    Splunk Systems Engineer, Senior

    Splunk Systems Engineer, Senior

    Independent SoftwareAnnapolis Junction, MD, US
    Full-time
    Quick Apply
    As a Splunk Engineer, you will lead the administration, maintenance, and optimization of Splunk Enterprise and ITSI platforms in a global enterprise environment. You’ll manage data ingestion, ...Show moreLast updated: 30+ days ago
    Splunk Traveling Engineer (Secret) DC, MD, VA

    Splunk Traveling Engineer (Secret) DC, MD, VA

    August SchellRockville, MD, US
    Full-time
    Quick Apply
    August Schell offers 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex IT difficulties ...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Operations Splunk Engineer

    Cyber Operations Splunk Engineer

    BOOZ, ALLEN & HAMILTON, INC.Alexandria, VA, US
    Full-time +1
    Cyber Operations Splunk Engineer.Support enterprise vulnerability management and cyber defense operations.Provide cyber operations monitoring and notification capabilities, to include developing an...Show moreLast updated: 30+ days ago
    • Promoted
    Splunk Cybersecurity Engineer

    Splunk Cybersecurity Engineer

    Booz Allen HamiltonWashington, DC, United States
    Full-time +1
    Your growth matters to us - explore our career development opportunities.BE EMPOWERED TO SUCCEED : Connect with others in our people-first culture and enhance our collective ingenuity.SUPPORT YOUR W...Show moreLast updated: 30+ days ago
    • Promoted
    Platform Engineer (Hybrid) - 22190

    Platform Engineer (Hybrid) - 22190

    EnlightenColumbia, Maryland, US
    Full-time
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Show moreLast updated: 30+ days ago
    • Promoted
    ICAM Systems Administrator

    ICAM Systems Administrator

    LeidosUpper Marlboro, MD, US
    Full-time
    Federal Law Enforcement Agency.The ICAM Systems Administrator will be responsible for the management, configuration, and support of enterprise-level Active Directory, Azure AD, and Okta environment...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Electrical Engineer (EMI Support)

    Electrical Engineer (EMI Support)

    LeidosUpper Marlboro, MD, US
    Full-time
    The applicant shall join the Leidos Gibbs & Cox Survivability Department as an Electrical Engineer to the naval ship design team located in Washington, D. The applicant must work well in a team ...Show moreLast updated: 6 hours ago
    • Promoted
    Platform Engineer (Hybrid) - 22954

    Platform Engineer (Hybrid) - 22954

    EnlightenColumbia, Maryland, US
    Full-time
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Show moreLast updated: 30+ days ago
    • Promoted
    F5 Load Balance Network Engineer

    F5 Load Balance Network Engineer

    LeidosFrederick, MD, US
    Full-time
    At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communiti...Show moreLast updated: 12 days ago
    • Promoted
    GCP AI Vertex Engineer

    GCP AI Vertex Engineer

    PerficientColumbia, MD, US
    Full-time
    We are seeking a highly skilled and execution-driven GCP AI Architect / Engineer to lead the design and implementation of cutting-edge AI solutions. This role demands deep expertise in Google Cloud Pl...Show moreLast updated: 1 day ago
    Splunk Front End Engineer

    Splunk Front End Engineer

    Network Designs Inc.Washington, DC, USA
    Full-time
    Quick Apply
    NDi) is a leading Federal contractor that specializes in designing, developing, and delivering information technology and network solutions for government customers. Founded in 1985, NDi's firmly de...Show moreLast updated: 30+ days ago
    • Promoted
    Platform Engineer (Hybrid) - 25120

    Platform Engineer (Hybrid) - 25120

    EnlightenColumbia, Maryland, US
    Full-time
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Show moreLast updated: 30+ days ago
    • Promoted
    Structural Engineer I or II

    Structural Engineer I or II

    Kline Engineering & Consulting, LLCManassas, VA, US
    Full-time
    KLINE is looking for a Structural Engineer I or Structural Engineer II to join our Miami office.This is an immediate opportunity for someone ready to take the next step in their career and help des...Show moreLast updated: 6 days ago
    • Promoted
    HVAC MECHANIC II

    HVAC MECHANIC II

    MelwoodUpper Marlboro, MD, US
    Full-time
    Located in Fort Meade, Maryland, the core working hours are 7 : 00 am to 4 : 00 pm, Monday through Friday.State of Maryland Journeyman License required Master license preferred possession of a valid ap...Show moreLast updated: 7 days ago
    • Promoted
    Platform Engineer (Hybrid) - 23248

    Platform Engineer (Hybrid) - 23248

    EnlightenColumbia, Maryland, US
    Full-time
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Show moreLast updated: 30+ days ago
    Splunk Engineer

    Splunk Engineer

    Columbia Technology PartnersAnnapolis Junction, MD, USA
    Full-time
    Quick Apply
    Columbia Technology Partners is searching for a Senior Systems Engineer to serve as Splunk Engineer supporting the Enterprise Management team on one of our mission-critical programs.Ensuring the Sp...Show moreLast updated: 30+ days ago
    • Promoted
    Cloud Engineer III- Hybrid Webster, MA

    Cloud Engineer III- Hybrid Webster, MA

    Motion RecruitmentArlington, VA, US
    Full-time
    Our client is seeking an experienced Cloud Engineer to design, implement, and maintain secure, scalable cloud infrastructure. In this role, you’ll partner with engineering teams to optimize cl...Show moreLast updated: 8 days ago
    • Promoted
    AWS Cloud Engineer (Hybrid) - 22868

    AWS Cloud Engineer (Hybrid) - 22868

    EnlightenColumbia, Maryland, US
    Full-time
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Show moreLast updated: 30+ days ago