Splunk Engineer

Meade, MD, US • Posted 9 days ago • Updated 2 days ago
Full Time
On-site
Fitment

Dice Job Match Score™

🛠️ Calibrating flux capacitors...

Job Details

Skills

  • Optimization
  • Analytics
  • STE
  • SSP
  • Network
  • Dashboard
  • Authentication
  • Account Management
  • Nagios
  • HP
  • HPNA
  • Performance Tuning
  • Management
  • Recovery
  • Collaboration
  • Auditing
  • Security Clearance
  • Splunk
  • Enterprise Architecture
  • SIEM
  • Regulatory Compliance
  • Reporting
  • Linux Administration
  • Onboarding
  • NetFlow
  • API
  • Scripting
  • Python
  • Bash
  • SPL

Summary

The Splunk Engineer is responsible for the design, implementation, optimization, and sustainment of enterprise logging, monitoring, and security analytics solutions. This role ensures Splunk environments meet availability, performance, compliance, and audit requirements .

Key Responsibilities
  • Architect, deploy, and maintain enterprise Splunk environments, including indexers, search heads, forwarders, and multi-region architectures.
  • Design, develop, and sustain custom Splunk dashboards and analytics supporting:
    • Security events, audit data, and user activity monitoring (UAM)
    • STE/STN compliance, vulnerability and compliance scans
    • Network/system observable events by SSP
    • Containerized application events by namespace
    • Mission metrics, outage tracking, and system/network utilization
  • Ensure Splunk dashboards and logging infrastructure maintain =93% operational availability monthly.
  • Develop and maintain dashboards for authentication events, privileged access, account management, role escalation, and container security events.
  • Integrate data from NetFlow/sFlow, Syslog, Cribl, Nagios, HP NNMi, HPNA, vulnerability scanners, and compliance tools.
  • Perform Splunk scaling, performance tuning, data onboarding, and index management.
  • Maintain log retention policies ensuring:
    • 30 days online searchable logs
    • 5 years, 11 months offline retention with restore capability
  • Provide Tier-4 support, including vendor escalation and coordination with Splunk engineering.
  • Advise architects and security accreditors on Splunk security configurations and audit capabilities.
  • Develop automation, parsing, and enrichment logic to reduce false positives and enhance alert fidelity.

Requirements

TS/SCI w/ Polygraph Clearance Required

Required Skills
  • Splunk Enterprise architecture and administration
  • Security logging, SIEM design, and compliance reporting
  • Linux systems administration
  • Data onboarding (Syslog, NetFlow, API ingestion)
  • Scripting (Python, Bash, SPL)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10241340
  • Position Id: 692b50f84e58aad09c880129b98b7a92
  • Posted 9 days ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Fort Meade, Maryland

2d ago

Full-time

Washington, District of Columbia

2d ago

Full-time

USD 170,000.00 - 239,000.00 per year

Laurel, Maryland

2d ago

Full-time

USD 225,000.00 - 235,000.00 per year

Fort Meade, Maryland

Yesterday

Full-time

Search all similar jobs