Splunk Security Engineer

TekSynapRockville, MD
1h$137,000 - $155,000Remote

About The Position

We are seeking a Splunk Security Engineer to join our team supporting the Nuclear Regulatory Commission in Rockville, MD. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at www.TekSynap.com. Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration.

Requirements

  • Bachelor’s Degree and a Minimum 10 years of relevant experience with Security Information andEvent Management
  • Experience in architecture, design, support, maintenance, and expansion of an enterprise logmanagement/SIEM infrastructure in a highly resilient configuration
  • Experience in monitoring an enterprise log management/SIEM server and agent infrastructure forcapacity planning and system optimization
  • Experience in deployment, configuration and maintenance of log forwarder agents across avariety of UNIX and Windows platforms
  • Experience in collaboration with a variety of IT stakeholders in design and maintenance ofproduction-quality log management/SIEM reports and dashboards to support data analysis andvisualization
  • Experience in creation and maintenance of documentation related to log management/SIEMinfrastructure configuration and operational processes
  • Advanced system administration skills with Linux operating systems
  • 5+ years of experience with Splunk
  • Must successfully pass a drug screening
  • Must be able to successfully obtain a Public Trust
  • Telework (must be local to the DC, Maryland, Virginia area)

Nice To Haves

  • Experience with Crbil
  • Expereince creating Identity models in SIEM
  • Experience with Splunk SOAR and UBA tools
  • Knowledge of regular expression, scripting and application development languages (e.g., Pythons, Perl, JavaScript, Linux shell scripting)

Responsibilities

  • Administer the Splunk based log management system and analyze the current loggingcapabilities
  • Ensure the Agency Information Security systems administered by the Team are sending allrequired logs to the log management system
  • Maintain the Log Management and Security Information and Event Management system to collectand aggregate IDS/IPS data from network sensors, raw data from collection agents, firewalls(including but not limited to Layer 7 Application Firewalls), proxy servers, DLP, antivirus/endpointprotection software, and vulnerability scanner elements
  • Tune the SIEM and IDS/Intrusion Prevention System (IPS) events to minimize false positives
  • Enroll NRC network and systems information into the SIEM tool, using information from theVulnerability and Compliance Scanning System (VCSS) and input from ISSOs, and perform assetcategorization and privatization
  • Tune the capabilities as practicable to improve efficiency and ensure that reporting capabilities ofthe log management system are working properly
  • Validate that agency log retention requirements are configured properly within the agency’s logmanagement system
  • Identify shortfalls in the current capability and identify systems that are not sending logs to theagency log management system
  • Recommend improvements to current processes
  • Provide technical guidance to administrators of other IT systems to ensure their logs are sent tothe agency’s log management system
  • Configure agency’s log management system role-based access controls so that logs for specificsystems can only be accessed by designated administrators

Benefits

  • health
  • dental
  • vision
  • 401K
  • life insurance
  • short-term and long-term disability plans
  • vacation time
  • holidays

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Number of Employees

1,001-5,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service