Talent.com
Splunk Engineer

Splunk Engineer

CredenceRosslyn, VA, US
Hace 2 días
Tipo de contrato
  • A tiempo completo
  • Quick Apply
Descripción del trabajo

Credence is one of the largest privately held technologies services company in the country, repeatedly recognized as a top place to work, and have been on the Inc. 5000 Fastest Growing Private Companies list for the last 12 years. We practice servant leadership and believe that by focusing on the success of our clients, team members, and partners, we all achieve greater success.

At Credence, we support our clients’ mission-critical needs, powered by technology. We provide cutting-edge solutions, including AI / ML, enterprise modernization, and advanced intelligence capabilities, to the largest defense and health federal organizations. Through partnership and trust, we increase mission success for warfighters and secure our nation for a better future.

Position Summary

Credence has an immediate need for a Splunk Engineer with demonstrated experience designing, implementing, deploying, and managing complex Splunk environments for highly complex federal organizations. The ideal candidate must be experienced in customizing Splunk to meet specific use cases and requirements, develop and maintain Splunk dashboards, and create reports tailored to the needs of different teams and stakeholders.  The successful candidate will be responsibilities for providing oversight, monitoring indexing performance, search performance, and data ingest. Must have demonstrated experience supporting remediation of discovered threats and provide incident response capabilities when necessary as well as remain up-to-date with the latest Splunk features, enhancements, and industry trends, managing relationships with Splunk vendors to stay informed about new products and offerings.  The successfull candidate will analyze and conduct research to determine a cyber criminal’s capabilities, intentions, and attack approaches, including those with multiple phases.Will support and manage remediation of any discovered threats, and providing incident response capabilities when necessary.

Responsibilities include, but are not limited to the duties listed below

  • Create, manage, and support automation solutions for Splunk orchestration
  • Use the SIEM, EDR, IDS, and other tools to conduct cyber threat hunts
  • Rapidly respond to incidents to minimize risk exposure and ensure system availability; proactively monitor internal and external-facing environments
  • Identify attacker tools, tactics, and procedures to develop indicators of compromise. Form and articulate expert opinions based on findings and analysis
  • Seek opportunities to automate detection and remediation and reduce response times for incidents
  • Provide incident response support and coordination, including investigating security incidents and coordinating with other teams to contain and remediate the incident.
  • Leverage Splunk to create advanced search queries and reports to monitor system performance, security threats, and operational metrics.
  • Collaborate and support inquiries from cross-functional internal and external stakeholders such as system administrators, compliance, and data engineering teams, to ensure documentation is complete and in compliance with information security policies
  • Manage and support the development of security operations playbooks to ensure threat detection, monitoring, response, and forensics activities align with best practices, minimize gaps in detection and response, and provide comprehensive mitigation of threats
  • Evaluate third-party products and services to verify they meet security and compliance requirements
  • Familiarity with log management, event correlation, and data analysis concepts.
  • Drive improvements in technical architecture, standards, and processes to meet company objectives and best security practices
  • Develops technical solutions to verify compliance with required technical controls autonomously
  • Present findings / reports to stakeholders on a weekly basis
  • Perform log analysis, parsing, indexing, and analyzing machine data logs to extract actionable insights.
  • Perform upgrades and patch management to keep Splunk environments up-to-date and secure.
  • Design intuitive and customizable dashboards to visualize data trends.

Requirements

  • Active Secret security clearance required.
  • Masters Degree from an accredited university or equivalent combination of education in Computer Science, Information Technology, or a related field with 5 to 7 years of experience
  • Equivalent combination of education, technical training and certification  (CISSP, C|EH, GIAC GREM, GCTI, GCFR, GCFA, Splunk Certified Cybersecurity Defense Analyst, Splunk Enterprise Security Certified Admin) and / or work experience; knowledgeable about configuring Splunk for security and compliance requirements, including FISMA, SOC 2, HIPAA, and GDPR.
  • Experience in building Splunk Technology Add-ons and configuring field extractions for various data sources
  • Strong experience working with Splunk, including architecting and implementing Splunk solutions in large-scale environments.
  • Proficiency in SPL (Search Processing Language) for creating complex queries, reports, and dashboards in Splunk.
  • Experience in designing, developing, testing, troubleshooting, deploying, and maintaining Splunk solutions, reporting, alerting, and dashboards
  • Extensive knowledge of a tier Splunk installation : indexers, forwarders, search heads, clusters
  • Experience analyzing system, network, and application logs for attack techniques at all stages of the cyber kill chain
  • Experience with more than one or more enterprise-scale EDR and SIEM tool
  • Experience consuming and analyzing Cyber Threat Intelligence for actionable takeaways.
  • Strong analytical and critical thinking skills to identify and address complex data and system issues.
  • Strong problem-solving skills to investigate and resolve Splunk platform and data ingestion issues.
  • Strong communicator and collaborator, able to work closely with cross-functional teams.
  • Knowledgeable in using scripting languages (e.g., Python) and Splunk's built-in scripting to automate routine tasks.
  • Detail-oriented with a strong commitment to documenting configurations, processes, and best practices.
  • Familiarity with ServiceNow cloud offering and log ingestion to Splunk.
  • Crear una alerta de empleo para esta búsqueda

    Splunk Engineer • Rosslyn, VA, US

    Ofertas relacionadas
    Splunk Systems Engineer, Senior

    Splunk Systems Engineer, Senior

    Independent SoftwareAnnapolis Junction, MD, US
    A tiempo completo
    Quick Apply
    As a Splunk Engineer, you will lead the administration, maintenance, and optimization of Splunk Enterprise and ITSI platforms in a global enterprise environment. You’ll manage data ingestion, ...Mostrar másÚltima actualización: hace más de 30 días
    Splunk Traveling Engineer (Secret) DC, MD, VA

    Splunk Traveling Engineer (Secret) DC, MD, VA

    August SchellRockville, MD, US
    A tiempo completo
    Quick Apply
    August Schell offers 30 years of experience in providing our customers innovative solutions and engineering services to their most challenging needs. We thrive on navigating complex IT difficulties ...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Splunk Front End Engineer

    Splunk Front End Engineer

    Network Designs Inc.Washington, DC, US
    A tiempo completo
    NDi) is a leading Federal contractor that specializes in designing, developing, and delivering information technology and network solutions for government customers. Founded in 1985, NDi's firml...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Splunk Cyber Software Engineer

    Splunk Cyber Software Engineer

    VMR Strategic SolutionsAnnapolis Junction, MD, US
    A tiempo completo
    Location : Annapolis Junction, Md.VMR Strategic Solutions, LLC seeks a Splunk Cyber Software Engineer to be part of our exciting team supporting a robust, world-wide communications network, providin...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Splunk Engineer 3

    Senior Splunk Engineer 3

    T-Rex SolutionsFort Meade, MD, US
    A tiempo completo
    Are you ready to make a significant impact by supporting critical national security infrastructure? T-Rex Solutions is looking for a highly skilled Senior Splunk Engineer 3 to join our dynamic team...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    SENIOR SPLUNK ENGINEER

    SENIOR SPLUNK ENGINEER

    Zermount, IncArlington, VA, US
    A tiempo completo
    MILITARY FRIENDLY & PREFERRED - HOH SPONSOR.Zermount seeks a Senior Splunk Engineer who is accomplished at architecting the platform, recognizing and onboarding new data sources, deploying func...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Cyber Operations Splunk Engineer

    Cyber Operations Splunk Engineer

    BOOZ, ALLEN & HAMILTON, INC.Alexandria, VA, US
    A tiempo completo +1
    Cyber Operations Splunk Engineer.Support enterprise vulnerability management and cyber defense operations.Provide cyber operations monitoring and notification capabilities, to include developing an...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Splunk Cybersecurity Engineer

    Splunk Cybersecurity Engineer

    Booz Allen HamiltonWashington, DC, United States
    A tiempo completo +1
    Your growth matters to us - explore our career development opportunities.BE EMPOWERED TO SUCCEED : Connect with others in our people-first culture and enhance our collective ingenuity.SUPPORT YOUR W...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Splunk Engineer

    Splunk Engineer

    Columbia Technology PartnersAnnapolis Junction, MD, US
    A tiempo completo
    Columbia Technology Partners is searching for a Senior Systems Engineer to serve as Splunk Engineer supporting the Enterprise Management team on one of our mission-critical programs.Ensuring the Sp...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Splunk Engineer

    Senior Splunk Engineer

    QMULOS LLCChantilly, VA, US
    A tiempo completo +1
    May need to be on location in the DMV area.Must have a TS clearance or higher.Must have a SCCC (Splunk Core Certified Consultant). At Qmulos, we’re not just about cybersecurity and compliance,...Mostrar másÚltima actualización: hace 19 días
    • Oferta promocionada
    ICAM Systems Administrator

    ICAM Systems Administrator

    LeidosUpper Marlboro, MD, US
    A tiempo completo
    Federal Law Enforcement Agency.The ICAM Systems Administrator will be responsible for the management, configuration, and support of enterprise-level Active Directory, Azure AD, and Okta environment...Mostrar másÚltima actualización: hace 6 días
    • Oferta promocionada
    • Nueva oferta
    Electrical Engineer (EMI Support)

    Electrical Engineer (EMI Support)

    LeidosUpper Marlboro, MD, US
    A tiempo completo
    The applicant shall join the Leidos Gibbs & Cox Survivability Department as an Electrical Engineer to the naval ship design team located in Washington, D. The applicant must work well in a team ...Mostrar másÚltima actualización: hace 2 horas
    • Oferta promocionada
    Platform Engineer (Hybrid) - 22954

    Platform Engineer (Hybrid) - 22954

    EnlightenColumbia, Maryland, US
    A tiempo completo
    Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber ca...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    F5 Load Balance Network Engineer

    F5 Load Balance Network Engineer

    LeidosFrederick, MD, US
    A tiempo completo
    At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communiti...Mostrar másÚltima actualización: hace 12 días
    • Oferta promocionada
    Splunk Engineer - Consultant Certified / ES Accreditation Required (R-00064)

    Splunk Engineer - Consultant Certified / ES Accreditation Required (R-00064)

    True Zero TechnologiesHerndon, VA, US
    A tiempo completo
    True Zero Technologies, a veteran-owned small business, was founded on the principle that the purposeful enablement of people and technology in an organization directly ties to the quality of its o...Mostrar másÚltima actualización: hace 13 días
    • Oferta promocionada
    Splunk Security Engineer

    Splunk Security Engineer

    Input Technology SolutionsOxon Hill, MD, US
    A tiempo completo
    Input Technology Solutions is seeking an experienced.Splunk Engineering team in National Harbor, MD! The ideal candidate will assist with the designing, implementing, and maintaining of DHS' Sp...Mostrar másÚltima actualización: hace 23 días
    • Oferta promocionada
    Structural Engineer I or II

    Structural Engineer I or II

    Kline Engineering & Consulting, LLCManassas, VA, US
    A tiempo completo
    KLINE is looking for a Structural Engineer I or Structural Engineer II to join our Miami office.This is an immediate opportunity for someone ready to take the next step in their career and help des...Mostrar másÚltima actualización: hace 6 días
    • Oferta promocionada
    Cloud Engineer III- Hybrid Webster, MA

    Cloud Engineer III- Hybrid Webster, MA

    Motion RecruitmentArlington, VA, US
    A tiempo completo
    Our client is seeking an experienced Cloud Engineer to design, implement, and maintain secure, scalable cloud infrastructure. In this role, you’ll partner with engineering teams to optimize cl...Mostrar másÚltima actualización: hace 8 días