Overview
Skills
Job Details
Responsibilities:
Create consolidated data sets aligned with the Common Information Model (CIM) from multiple sensor sources
Aggregate data by asset type (hardware, software, data) and align it with business-oriented systems
Tag new data for inclusion in Reusable Data Assets for IO and CDM dashboards
Translate raw key-value data into standardized formats for consumption
Transform existing data for compatibility with ServiceNow and CDM Elastic ingestion requirements
Design and implement data pipelines connecting multiple systems to reusable data assets
Integrate Splunk with ServiceNow, CDM Elastic, and the Reusable Data Asset model
Build and manage data warehouses and models, including tagging, pipeline creation, and ETL processes
Configure Splunk to support event actions, action menus, and adaptive responses
Recommend improvements for data onboarding and normalization processes
Monitor web portals, databases, and log files for system performance and security issues
Design dashboards to track traffic, performance metrics, errors, and warnings
Develop and maintain Splunk solutions for day-to-day operations
Troubleshoot complex integration challenges and debug issues
Collaborate with stakeholders to drive cloud adoption strategies
Ensure compliance with Continuous Diagnostics and Mitigation (CDM) technical requirements
Address a range of security concerns, including network architecture, firewalls, and data access
Maintain and optimize SIEM infrastructure for improved data ingestion and processing
Basic Qualifications:
Bachelor s degree and 8+ years of experience, or
Master s degree and 5+ years of experience, or
11+ years of experience in lieu of a degree
Proven experience with Splunk, data analytics, and big data technologies
Strong background in engineering, physics, mathematics, or related technical fields
Skilled in coding and developing for unstructured and semi-structured data
Experience in cybersecurity application development and SIEM tools
Familiar with cloud-based infrastructure and data processing frameworks
Public Trust clearance eligibility is required
Must be able to work onsite in Woodlawn, MD, 5 days/week
Preferred Qualifications:
Security certifications such as CISSP, CISM, or CompTIA Security+
Experience building and integrating data pipelines
Familiarity with regulatory compliance standards and cybersecurity frameworks