- Company Name
- August Schell
- Job Title
- Sr. Splunk SME/Engineer (TS Required)
- Job Description
-
**Job Title**
Sr. Splunk SME/Engineer (TS Required)
**Role Summary**
Design, deploy, and maintain mission‑critical, large‑scale Splunk environments for a Department of Defense customer. Lead cluster configuration, data ingestion optimization, and advanced analytics dashboarding while ensuring compliance with DoD security and vulnerability scanning standards. Collaborate with cybersecurity and network teams to integrate Splunk into enterprise monitoring and reporting frameworks.
**Expectations**
* Active Top Secret clearance (required).
* 10+ years of Splunk administration/engineering experience with extensive architecture, deployment, and indexing expertise.
* Active 8570 IAT Level II certification (e.g., Security+).
* Current Splunk Administrator Certification.
* Strong problem‑solving, independent and team‑oriented.
* Excellent communication skills for documentation and stakeholder interaction.
**Key Responsibilities**
* Deploy, configure, and maintain complex Splunk clusters across heterogeneous hardware.
* Design, build, and refine custom dashboards and queries to support mission‑critical operations.
* Troubleshoot and resolve performance, data ingestion, and scalability issues in large environments.
* Implement indexing best practices, data transformation, and system architecture enhancements.
* Integrate Splunk with enterprise security tools, such as ES, ITSI, and vulnerability scanning systems.
* Manage virtual networking (VRFs, VLANs), system updates, patching, and compliance with DoD cybersecurity requirements.
* Document configurations, operational procedures, and audit trails for continuity and compliance.
**Required Skills**
* Advanced Splunk architecture, deployment models, and indexing.
* Proficiency in SPL, dashboards, and advanced query creation.
* Experience with vulnerability scanning, STIG compliance, and database tuning.
* Familiarity with Linux and Windows server environments.
* Knowledge of DevOps tools (Ansible, Terraform) and compliance frameworks (RMF, NIST 800‑53).
* Ability to work autonomously and collaboratively in secure environments.
**Required Education & Certifications**
* Bachelor’s degree in Computer Science, Information Systems, Information Assurance, or a related field.
* 10+ years of Splunk administration/engineering experience.
* Active Splunk Administrator Certification.
* 8570 IAT Level II certification (or equivalent).
* Active Top Secret clearance.
Alexandria, United states
On site
Senior
18-12-2025