Splunk Administrator

2652 Arlington VA, United States

āš ļø We'll shut down after Aug 1st - try foošŸ¦ for all jobs in tech āš ļø

Apply now Apply later

The Digital Modernization team within Leidos' DISA IT is seeking a Splunk Administrator to work within the CESO environment.

With the CESO program, the Defense Information System Agency (DISA) is looking to transform the existing Secure Web Services (SWS) environment, which provides secure information sharing to the community, into a more mature service offering to meet the DoD and intelligence communities. Ā As part of this task order, Leidos will manage the commercial cloud migration and disestablishment of legacy systems, fully automate the continuous development & continuous integration environment, fourth estate consolidation, professionalize services – ITIL/DevSecOps based processes, improve the customer experience 1st call resolution, and achieve development of a service catalog for Defense Working Capital Fund (DWCF) Model.

Primary Responsibilities:

  • Design efficient and reusable reports and dashboards to integrate multiple mission applications’ health, performance and operational data systems into Splunk
  • Utilize REST API, SplunkJS Stack, and other developer tools to integrates customer applications with the Splunk platform
  • Direct and monitor reporting in Splunk dashboards to reflect compliance status of all directed information assurance vulnerability alerts and bulletins, Computer Tasking Orders, and other compulsory cyber security directives.
  • Create front-end automated data visualization services using Splunk
  • Develop viewable Splunk dashboards to provide visibility into ingested log dataĀ 
  • Develop alerts that trigger/activate on configured setting to deploy or sends aĀ note/email/attachmentsĀ to a particulate destination email or groupsĀ 
  • Develop security rules (alerts) that trigger on anomalous activities or threat detectionsĀ 

Basic Qualifications:

  • Bachelor's degree and 4+ years of prior relevant experience. Additional experience may be considered in lieu of degree.
  • Active Top Secret security clearance (With ability to hold TS/SCI) is required prior to start.Ā Candidate may be asked to obtain CI/POLY in future.
  • DoD 8570 IAM II certificationĀ is required.
  • Splunk Enterprise Certified Architect. Equivalent certification or higher
  • Excellent written and oral communications skills and be able to appropriately present highly technical material to both technical and non-technical audiences

Preferred Qualifications:

  • Experience configuring and maintaining the tool in a multi-tenant environment
  • Knowledge of programming languages such as Python, Java, JavaScript, C#
  • Experience with AWS Cloud tools and services.

Original Posting:

July 21, 2025

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $85,150.00 - $153,925.00

The Leidos pay range for this job level is a general guideline onlyĀ and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Apply now Apply later
Job stats:  0  0  0
Category: Admin Jobs

Tags: APIs AWS C Clearance Cloud Compliance DevSecOps DISA DoD DoDD 8570 IAM ITIL Java JavaScript Python REST API Security Clearance Splunk Top Secret TS/SCI

Perks/benefits: Equity / stock options

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.