SIEM Data Onboarding Engineer managing and configuring Splunk infrastructure. Collaborating with teams to develop dashboards and ensure data ingestion solutions for operations.
Responsibilities
Design, deploy, and manage Splunk infrastructure
Develop and maintain Splunk dashboards, queries, and alerts
Integrate Splunk with various data sources to ensure comprehensive data ingestion
Monitor and troubleshoot Splunk performance issues
Collaborate with cross-functional teams to gather requirements and provide Splunk solutions
Implement and enforce best practices for Splunk data management and retention
Provide user training and support for Splunk-related activities
Requirements
2+ years of experience in managing and configuring Splunk
2+ years of experience configuring Cribl sources, destinations, routes and collectors
2+ years of experience authoring and maintaining props.conf, transforms.conf, inputs.conf, and outputs.conf
2+ years of experience in Linux and Windows administration
1+ years of experience with Cribl Redmap or JavaScript functions
1+ years of experience with regex for field extraction and event breaking
1+ years of experience with Splunk REST API for automation
Active TS/SCI clearance
Associate’s degree and 5+ years of experience supporting IT projects or Bachelor’s degree and 3+ years of experience supporting IT projects or Master’s degree and 1+ years of experience supporting IT projects or 10+ years of experience supporting IT projects in lieu of a degree
DoD 8570 IAT Level II certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND certification
Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support certification within 60 days of start date
Benefits
health, life, disability, financial, and retirement benefits
Senior Elastic Stack Data Integration Engineer designing and maintaining data ingestion pipelines for Missile Defense Agency. Focused on building resilient and scalable Logstash architectures.
Senior Security Integration Engineer supporting Missile Defense Agency through Elastic Stack integration and optimization of security data. Leading customer engagements and technical discussions while mentoring junior team members.
Design and manage Splunk infrastructure and dashboards while collaborating with teams to gather requirements. Providing training and solutions to ensure comprehensive data ingestion and performance.
Solutions Architect for Illinois State Police in the Department of Innovation & Technology. Responsible for designing and overseeing integrated systems and applications to support DoIT/ISP.
Senior Manager_RMCA Solution Architect at Vodafone focusing on SAP FICA and RMCA solutions. Driving complex international projects in a collaborative work culture.
Staff Electrical Systems Integration Engineer leading the design of hardware systems for lighting. Collaborating with cross - functional teams ensuring seamless performance throughout product lifecycle.
Solution Architect leading data architecture solutions for construction technology integration at QTS. Focusing on advanced analytics, cost control, and performance insights across data assets.
CRM Solution Architect at QTS Data Centers designing and implementing Salesforce solutions. Driving digital transformation initiatives and mentoring future leaders within the CRM ecosystem.
Solutions Architect Platform shaping application technologies in support of INTEGRIS Health caregivers. Leading design, development, and implementation of clinical and business systems.