Sr. Splunk Engineer

Ashburn, VA, USA

OneZero Solutions

OneZero Solutions is an 8(a), Service-Disabled Veteran-Owned Small Business (SDVOSB) that is problem-solving and solutions-oriented. OneZero specializes in cybersecurity operations, information assurance, computer network operations, solutions...

View all jobs at OneZero Solutions

Apply now Apply later

We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time employees receive an extremely competitive benefits package that includes health/dental/vision/life insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at: https://www.onezerollc.com/careers/

Title: Sr. Splunk Engineer

Location: Ashburn, VA

Clearance: Secret

The selected candidate will provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment servers, heavy/universal forwarders and Splunk Enterprise Security premuim app, spanning security, performance, and operational roles.

The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.

The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required interact with senior management, as necessary.

Knowledge of Cloud Services such as AWS, Azure, Office365

Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell

Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program.

Minimum of a Bachelor's degree coupled with 7+ years' experience in the Information Technology arena.
- 4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
- 3+ Years experience in Linux and SQL/ODBC interfaces
- 2+ Years experience in app interface development, using REST API's
- Previous project management experience.
- ITIL Change & Configuration Management
- Experience with Ansible and GIT

Ability to follow Change & Configuration Management

Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure

Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision

Knowledge of Cloud Services such as AWS, Azure, Office365

Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell

Splunk Certified Architect Certification

CCIE Security
Cisco Certified Network Professional (CCNP)
CCNP Security
CCSP - Certified Cloud Security Professional
CEH - Certified Ethical Hacker
Certified Data Administrator Professional
Certified Implementation Engineer Specialist
Splunk Certified Architect
Certified Storage Associate
CISSP - Certified Information Systems Security
CompTIA Advanced Security Practitioner (CASP)
Converged Infrastructure Specialist
CSSLP - Certified Secure Software Lifecycle Professional
ECSP - EC-Council Certified Secure Programmer
GCIH - Incident Handler
GCWN - Windows Security Administrator
GICSP -Cyber Security Professional
GISF - Security Fundamentals
GISP - Security Professional
GSSP - Secure Software Programmer
MCSE - Microsoft Certified Solutions Expert (Server)
RHCA - Red Hat Certified Architect
RHCE - Red Hat Certified Engineer
SEI (Software Engineering Institute)
SSCP - Systems Security Certified Practitioner
VCA (Certified Associate)
VCAP (Certified Advanced Professional)
VCDX (Certified Design Expert)
VCIX (Implementation Expert)
VCP (Certified Professional)
MS 365 Certified: Security Administrator
Microsoft Certified Azure Security Engineer (Associate)
Splunk Enterprise Certified Architect
Splunk Enterprise Certified Administrator
Splunk Core Certified Consultant
Splunk SOAR Certified Automation Developer
Splunk Certified Developer
AWS Certified Solutions Architect - Associate
AWS Certified DevOps Engineer - Professional
Swimlane Certified SOAR Developer

Preferred Qualifications

Experience in SQL
- Experience in other systems and network management products.
- Current or former completed Splunk training
- Prior experience a in Splunk professional services role
- Automation/orchestration of Splunk with in a Cloud environment

- Experience in other systems and network management products.
- Current or former completed Splunk training
- Prior experience a in Splunk professional services role
- Automation/orchestration of Splunk with in a Cloud environment

Splunk Certified Administrator Certification

Experience in automating Splunk Deployments

OneZero Solutions, LLC is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access www.onezerollc.com/careers as a result of your disability.

To request an accommodation, please contact us at recruiting@onezerollc.com or call (202) 987-2580.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Ansible APIs Automation AWS Azure Bash Business Intelligence CASP+ CCIE CCNP CCSP CEH CISSP Clearance Clearance Required Cloud CompTIA CSSLP DevOps GCIH GICSP ITIL Linux PowerShell Python Red Hat REST API SOAR SOC Splunk SQL SSCP Swimlane Windows

Perks/benefits: Career development Health care Insurance

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.