Splunk Engineer/Architect

    • Peraton
  • Washington, DC
  • Posted 11 days ago | Updated 11 days ago

Overview

On Site
USD 146,000.00 - 234,000.00 per year
Full Time

Skills

Enterprise networks
Software security
Security QA
Code review
Technical writing
Incident management
Operating systems
Cyber security
Computer science
Information systems
Software engineering
Computer engineering
Endpoint protection
Network security
Cloud security
System administration
Splunk
Leadership
Nexus
Adobe AIR
SAFE
Elasticsearch
Orchestration
Automation
Regulatory Compliance
Software development
SIEM
Design
IDS
IPS
Data
Network
Sensors
Firewall
Proxies
Servers
DLP
Antivirus
Dashboard
Middleware
Business analytics
DNS
Testing
Microsoft Windows
Linux
Editing
System on a chip
NOC
Virtualization
DoD
SCA
Insurance
Financing

Job Details

About Peraton
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Responsibilities

We are seeking a Security Splunk Architect/Engineer to support a Navy enterprise network within the Engineering and Cyber Divisions. The candidate's primary responsibility is to maintain and enhance the existing Splunk infrastructure in the enterprise. Further projects will involve the implementation of Splunk Enterprise Security (ES) and Security Orchestration, Automation, and Response (SOAR) and other vendor solutions.

Implements, tests, and operates advanced software security techniques in compliance with technical reference architecture.
Performs on-going security testing and code review to improve software security.
Troubleshoots and debugs issues that arise.
Provides engineering designs for new software solutions to help mitigate security vulnerabilities.
Contributes to all levels of the architecture and maintains technical documentation.
Consults team members on secure coding practices. Develops a familiarity with new tools and best practices.
Designing, implementing, and maintaining SIEM and SOAR solutions.
Design and implement threat detection, automate incident response processes, integration of various security tools with SIEM and SOAR platforms via APIs
Maintain SIEM applications to collect and aggregate IDS and IPS data from network sensors, raw data from collection agents, firewalls, proxy servers, DLP, antivirus, vulnerability scanner elements, and other security-relevant devices.
Utilize expertise in Splunk "Search" language, Splunk Dashboards, Reports, Lookup Tables, and Summary Indexes. Build Splunk dashboards that take inputs from various data sources such as application logs / operating system logs / middleware logs / network feeds etc. and identify / highlight anomalous activities on the dashboards by their severity levels.
Perform troubleshooting and provide assistance with the creation of Splunk search queries and dashboards.
Qualifications

Requires a BA or BS (Cyber Security, Computer Science, Information Systems, Software Engineering, Computer Engineering, or related field); relevant experience may be a substitute for education.
Requires at least five (5) years of professional experience
Requires an active TS/SCI
Requires experience with importing data in Splunk from various sources: endpoint security, network security (Firewalls, IPS/IDS, DNS, Proxy, etc.), data and application security, cloud security and technologies
Requires experience with performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting of Splunk
Requires experience with designing, implementing, configuring, operating, or testing IT systems or security infrastructure
Requires experience building dashboards highlighting the key trends of the data
Requires proficiency within a Windows and Linux environment, editing and maintaining Splunk configuration files and apps
Experience in working in a Splunk clustered environment supporting SOC or NOC environment required
Experience with virtualization technologies required
Preferred Certifications:

Splunk Architect, Splunk Admin

DoD 8570 Level 3 Certification

Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan.

Target Salary Range

$146,000 - $234,000. This represents the typical salary range for this position based on experience and other factors.

SCA / Union / Intern Rate or Range

EEO
An Equal Opportunity Employer including Disability/Veteran.

Our Values

Benefits
At Peraton, our benefits are designed to help keep you at your best beyond the work you do with us daily. We're fully committed to the growth of our employees. From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way.

Paid Time-Off and Holidays
Retirement
Life & Disability Insurance
Career Development
Tuition Assistance and Student Loan Financing
Paid Parental Leave
Additional Benefits
Medical, Dental, & Vision Care