Splunk Administrator

Overview

On Site
Full Time

Skills

Data Analysis
Training
Documentation
Data Integrity
Management
Dashboard
Computer Science
Information Security
Effective Communication
Collaboration
Conflict Resolution
Problem Solving
Onboarding
Microsoft Windows
Computer Hardware
Network
Log Management
Computer Networking
TCP/IP
DNS
Dragon NaturallySpeaking
Terraform
Ansible
Red Hat Enterprise Linux
Linux
RHCSA
Splunk
Elasticsearch
Amazon Web Services
CISSP
DoD
FedRAMP
Scripting
Python
Windows PowerShell
Bash
Regulatory Compliance
NIST SP 800 Series

Job Details

Location: Candidate can be remote but if within 30 miles of the Herndon office they will be required to be on site 3 days a week (can increase based on business needs).

Job Title: Splunk Admin

Job Description: As a Splunk Administrator at NS2, you will be entrusted with the critical role of managing and optimizing our Splunk infrastructure. This role involves configuring, maintaining, and troubleshooting Splunk infrastructure, ensuring the reliability, availability, and performance of our data analytics platform. You will work closely with cross-functional teams to design and implement monitoring solutions that enhance the visibility and security of our IT environment.

Key Responsibilities:
Install, configure, and maintain Splunk infrastructure, including forwarders, indexers, and search heads.
Perform regular system upgrades and patching to maintain security and performance.
Monitor system performance and troubleshoot issues to ensure optimal functionality of Splunk.
Collaborate with IT and security teams to integrate Splunk with other systems and applications.
Provide technical Splunk support and training to end-users and stakeholders.
Develop and maintain documentation for system configurations, processes, and procedures.
Implement and manage data ingestion processes, ensuring data integrity and availability.
Develop and manage Splunk dashboards, reports, alerts, and visualizations.

Minimum Qualifications
Bachelor's degree in Computer Science, Information Security, or related field or equivalent professional experience
Splunk Enterprise Certified Administrator
Effective communication and collaboration skills
Problem-solving skills and the ability to think strategically about security
Continuous learning mindset
Experience with data onboarding, parsing, and indexing in Splunk
Minimum 5 years of hands-on experience in Splunk Administration
Minimum 3 years of hands-on experience with AWS
The below ideal core competencies and experience should align candidates for success in the NS2 Environments:
Proficient in both Linux and Windows environments
Hardware, software, and network-level troubleshooting skills
Log management and parsing strategies
Familiarity with networking concepts and protocols (e.g., TCP/IP, DNS, etc.)
Exposure to infrastructure as Code (IaC) tools like Terraform and Ansible

Candidates with the following relevant certifications and experience will be given preferential consideration:
Red Hat Enterprise Linux certifications, such as RHCSE or RHCSA
Experience with Splunk Enterprise Security (ES)
AWS Certified Solutions Architect or SysOps Administrator
CISSP certification
Infrastructure automation experience
Prior DoD or FedRAMP experience
Programming/scripting experience e.g.: Python, PowerShell, Bash, etc.
Familiarity with security compliance frameworks and regulations such as NIST 800-171 or 800-53

#LI-BP1
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.