Dieses Stellenangebot ist nicht mehr verfügbar
Splunk Content Developer
Leidos
- Arlington, Texas, United States
- Arlington, Texas, United States
Über
Responsibilities
Conceptualize, design, build, and maintain current and future customer‑supported tools and platforms
Manage multiple assignments, changing priorities, and work independently with little oversight
Develop data storage, access, and retention strategies for a large IT enterprise using industry standards and best practices to advise customer executive‑level stakeholders
Design, build, implement, and administer Splunk infrastructure in on‑prem and cloud environments
Create, manage, and support automation solutions for Splunk deployment and orchestration in on‑prem and cloud environments
Work with existing and custom Splunk applications and add‑ons to fulfill customer needs
Provide engineering and design support for a distributed Splunk environment comprising heavy forwarders, indexers, and search head servers across security, performance, and operational roles
Onboard data to Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from various sources
Normalize data to ensure CIM compliance and develop data models to accelerate queries, dashboards, and correlation searches
Work closely with stakeholders to solve technical problems at the network, system, and application levels
Conduct periodic architectural reviews of Splunk and related systems to assess effectiveness and propose optimal installation alternatives as required
Develop and manage comprehensive documentation, artifacts, procedures, and processes for optimal Splunk infrastructure management
Basic Qualifications
Bachelor's Degree and 8‑12 years of experience in system administration, database administration, network engineering, software engineering, or software development with a concentration in Cybersecurity. Additional years of experience and Cyber certifications may be considered in lieu of a degree.
8‑12 years of experience with Linux and Windows system administration or an expert understanding of operating systems and common operating environments.
8+ years of experience with Splunk in distributed deployments.
Excellent written and oral skills, ability to work closely with multiple customers, manage expectations, and track engagement scope.
Experience implementing FISMA, NIST, NSA, and other information security, cybersecurity, and CDM‑related industry policies, procedures, guidelines, standards, and best practices.
Expert‑level knowledge and ability with Splunk Enterprise Security or integration with other Security Information and Event Management (SIEM) platforms.
Extensive experience with advanced configuration of Splunk including Indexer Clustering and Search Head Clustering.
Proficiency in data onboarding activities including routing, parsing, and normalizing events to the Splunk Common Information Model (CIM).
Proficiency onboarding data using Splunk‑developed add‑ons for Windows, Linux, and common third‑party devices and applications.
Experience onboarding data into Splunk via forwarder, scripted inputs, TCP/UDP, and modular inputs from a variety of sources.
Proficiency managing Splunk using the Splunk command‑line interface and configuration files.
Experience collaborating with separate engineering teams to configure data sources for Splunk integration.
Intermediate understanding of SQL and common SQL dialects.
Proficiency implementing and onboarding data in Splunk DB Connect.
Experience with Splunk performing systems administration, including installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting.
General networking and security troubleshooting (firewalls, routing, NAT, etc.).
Splunk architecture/design, implementation, and troubleshooting experience.
Experience managing, maintaining, and administering multi‑site indexer cluster.
Proficiency developing log ingestion and aggregation strategies per Splunk best practices.
Perform integration activities to configure, connect, and pull data with third‑party software APIs.
Experience implementing and optimizing Splunk data models.
Proficiency in regular expressions.
Scripting and development skills (Bash, Python, or PowerShell).
Ability to autonomously prioritize and successfully deliver across a portfolio of projects.
Department of Homeland Security ESOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program.
Preferred Certifications
Splunk Certified Consultant
Splunk Certified Architect
CASP
GCWN
GISF
GSSP
GICSP
CCNP
CCNP Security
CCIE Security
CEH
ENSA
ECSP
MCSE
VCP
BCAP
VCIX
VCDX
RHCA
RHCE
Pay Range $107,900.00 – $195,050.00
Benefits Competitive compensation, Health and Wellness programs, Income Protection, Paid Leave, and Retirement options.
Commitment to Non‑Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
#J-18808-Ljbffr
Sprachkenntnisse
- English
Hinweis für Nutzer
Dieses Stellenangebot wurde von einem unserer Partner veröffentlicht. Sie können das Originalangebot einsehen hier.