Cybersecurity Engineer 4 - SIEM / SPLUNK Engineer with Security Clearance
Why This Role Stands Out
This hybrid role offers a fantastic opportunity to advance your career in cybersecurity by engineering and enhancing critical SIEM/Splunk environments for a significant federal program. You'll thrive here if you possess strong Splunk administration skills, a passion for threat detection, and an active DoD Secret clearance, allowing you to make a tangible impact on national security. Apply today to join a leading organization and leverage your expertise in a dynamic and secure environment.
Quick Overview
Job Description
Job Description
Performs a variety of routine project tasks applied to specialized information assurance problems. Tasks involve integration of electronic processes or methodologies to resolve total system problems, or technology problems as they relate to IA requirements. Analyzes information security requirements. Applies analytical and systematic approaches in the resolution of problems of workflow, organization, and planning. Provides security engineering support for planning, design, development, testing, demonstration, integration of information systems.
Analyzes threat information gathered from logs, Intrusion Detection Systems (IDS), intelligence reports, vendor sites, and a variety of other sources. Creates customized dashboards using Security Information and Event Management (SIEM) tool Splunk ES to elevate high threat items to incident responders. Administration knowledge of the Splunk ES and backend database infrastructure related to upgrades and daily maintenance is essential. Provide analysis and make recommendations in line with the roles of CERT Incident Handlers (IH) and site Information Assurance Managers (IAM).
Develop ES rules, reports, dashboards, data monitors, active channels, trends and use cases to identify threats and optimize data mining across DLA. Will research, plan, install, configure, troubleshoot, maintain and backup all components in the DLA Splunk Enterprise Log Management (ELM) architecture.
Required Qualifications • Seven (7) years of relevant IT experience • DOD Secret Clearance • Must be eligible for IT I • Relevant certification meeting DOD 8570/8140 IAT level III; candidate must possess one of the following certifications: CASP+ CE, CCNP Security, CISA, CISSP, GCED, GCIH CCSP • Relevant certification meeting DOD 8570/8140 CND-IS; candidate must possess one of the following certifications: CND, GICSP, GCED, CySA+ or Security+
- Computing Environment: Linux+, Splunk Administrator • Experience creating custom dashboards and reports in Splunk using threat data. • Experience in the integration and sustainment of Splunk Core and Splunk Enterprise Security (ES).
Similar jobs
- SP
Sr. Classified Cyber Assurance Analyst
NewSpaceX
Washington, DC🇺🇸$130k - $195k/yrRemoteYesterdaySplunkComplianceTriageTechnology - DC
Security Analyst/Technical Support Analyst
NewData Capital Inc
Richmond, VA🇺🇸On-siteYesterdayActive DirectorySSOMFA+1Technology - GE
IT Security Specialist
Genesis10
Charlotte, NC🇺🇸$67 - $75/hrOn-site3 days agoSplunkTechnology - NG
Industrial Security Analyst with Security Clearance
Northrop Grumman
Redondo Beach, CA🇺🇸$75.8k - $113.8k/yrHybrid3 weeks agoTechnology - EG
Security Engineer, Incident Response
NewEliassen Group
Burbank, CA🇺🇸$55 - $64/hrOn-siteYesterdayAWSAzureGoogle Cloud+1Technology - BL
Information Assurance Specialist III (Information Security Analy with Security Clearance
By Light
Butlerville, IN🇺🇸Hybrid3 days agoComplianceRisk Management