As a Splunk Engineer you perform all aspects of Splunk Enterprise and ITSI administration maintenance and operation of global enterprise solutions used for complex Splunk applications dashboards and reports. Duties include monitoring Splunk infrastructure system health and data feeds; installing and configuring Splunk Indexers Forwarders Deployment Servers and SearchHeads; onboarding new data; supporting cybersecurity and operations teams and driving complex Splunk dashboard deployments/reports and working side by side with the customers to solve their unique problems across a variety of use cases.
Job Description / Requirements:
Ensure the Splunk infrastructure functions properly with PKIbased authentication corporate authorization services firewalls and SSL/TLS communications.
Contribute to developing and improving industry best practices and standards for maintaining data analytics enterprise technologies.
Assist with installing testing and deploying hotfixes/patches for Splunk app/product releases to manage enterprise vulnerabilities.
Assist with the development of knowledge articles documentation and work instructions used by the Splunk server desktop and Information System Security teams and Tier 2/3 Help Desk technicians.
MonFri Dayshift Available for after hours oncall
Preferred Skills:
Experience with Splunk Machine Learning Toolkit (MLTK)
Experience with scripting languages such as CSS HTML JavaScript and Python
Knowledge of RMF Trellix ePO NESSUS SCAP and vulnerability scanning
ServiceNow Ticketing System
Shell scripting to automate tasks and manipulate data
Experience managing user authentication within Splunk to include Role and Attribute Based Access Controls (RBACABAC) authentication with Lightweight Directory Access Protocol and Active Directory (LDAPAD) and managing access via HEC tokens is highly preferred. Experience implementing and managing Apps within Splunk is highly preferred.
Education and Experience:
High School diploma or equivalent with 25 years of experience or
Bachelors degree with 20 years of experience.
Experience managing user authentication within Splunk including RBAC/ABAC
Experience reviewing network host and firewall security logs
Certifications:
IAT Level 2
Clearance Required:Must possess an active TS/SCI with Full Scope Polygraph security clearance to be considered for this role
Independent Software is an Equal Opportunity Employer EOE M/F/D/V.
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.