Onsite SIEM Data Onboarding Engineer

Posted yesterday

Apply now

About the role

  • Design and manage Splunk infrastructure and dashboards while collaborating with teams to gather requirements. Providing training and solutions to ensure comprehensive data ingestion and performance.

Responsibilities

  • Design, deploy, and manage Splunk infrastructure
  • Develop and maintain Splunk dashboards, queries, and alerts
  • Monitor and troubleshoot Splunk performance issues
  • Collaborate with cross-functional teams to gather requirements
  • Implement and enforce best practices for Splunk data management and retention
  • Provide user training and support for Splunk-related activities

Requirements

  • 2+ years of experience in managing and configuring Splunk
  • 2+ years of experience in Splunk architecture, including indexers and search heads
  • 2+ years of experience configuring Cribl sources and building pipelines
  • 2+ years of experience authoring props.conf and transforms.conf
  • 2+ years of experience in Linux and Windows administration
  • 1+ years of experience with Cribl Redmap or JavaScript functions
  • 1+ years of experience with regex and Splunk REST API
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience, or Bachelor’s degree and 3+ years, or Master’s degree and 1+ years, or 10+ years of experience in lieu of degree
  • DoD 8570 IAT Level II certification

Benefits

  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program

Job title

SIEM Data Onboarding Engineer

Job type

Experience level

JuniorMid level

Salary

$99,000 - $225,000 per year

Degree requirement

Associate's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job