About The Position

Splunk Enterprise and Enterprise Security Administrator Location: Suitland, MD Clearance Required: Active TS/SCI Leidos is seeking a Splunk Enterprise and Enterprise Security Administrator to maintain the NAVINTEL SIEM environment, engineer detection logic, develop dashboards, and support SOC operations to support our customer in Suitland, MD .

Requirements

  • Bachelor’s degree in CS, IT, IA or related area with 8+ years of experience or a Master’s degree with 6+ years of experience. Additional experience may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Demonstrated experience supporting Computer Network Defense (CND) operations and technologies.
  • 6+ years professional experience in Splunk, Splunk Add-ons and Apps, and Splunk TA and Universal Forwarder installation, integration, configuration, administration, maintenance, and performance of RMF functions.
  • Deep experience with Splunk Enterprise/ES, search processing language (SPL), CIM mapping, dashboards, and Linux administration.
  • Experience supporting SOC workflows and SIEM tuning.
  • DoD 8570 CSSP Infrastructure Support certification category (e.g., CEH, CySA+, CASP+, CISSP).

Responsibilities

  • Administer Splunk Enterprise, Enterprise Security, CIM compliance, correlation searches, RBAs, dashboards, and data models.
  • Onboard new data sources and ensure quality, parsing, and normalization.
  • Support incident response, threat hunting, detection engineering, and content governance.
  • Produce operational reports, posture summaries, dashboards, and detection documentation.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service