Mid Security Engineer – Splunk

Remote (US), 1099, W2

As a Splunk Security Engineer, you will be responsible for assisting with the deployment, and maintenance of the Splunk Security Information Event Management (SIEM) solution within a 24x7x365 federal security operation. The Splunk Engineer will aid in the analysis of our client’s business requirements / systems /networks and translate those specifications into a SIEM design that provides an efficient and effective SIEM solution within a federal cloud environment.

Requirements

  • Must be a US Citizen
  • 3+ years of Splunk Eng. / administration experience
  • 2+ years of management of Splunk within a Federal environment
  • Understanding of enterprise environments, specifically cloud-based & hybrid cloud environments
  • Knowledge of security frameworks including such as MITRE ATT&CK, OWASP, & NIST
  • Hands-on troubleshooting, analysis, & technical expertise to resolve incidents &/or service requests
  • Strong written communication skills & the ability to articulate technical security analysis to a non-technical audience
  • Understanding of possible attack activities such as network reconnaissance probing/ scanning, DDOS, malicious code activity, etc.
  • Compliance with DoD 8570.01 and DoD 8140.01 (CISSP, CEH, CySA+ **, GICSP, SSCP, CHFI, CFR, Cloud+, CND)

Bonus Points

Join ClearedCollab

Apply for this Job

Upload your CV/resume or any other relevant file. Max. file size: 1 MB.