Splunk Sr Principal - TS/SCI w/Poly

General Dynamics Information TechnologyAnnapolis Junction, MD
1d$187,000 - $253,000Onsite

About The Position

Splunk Sr Principal Deliver simple solutions to complex problems as a Splunk Sr Principal at GDIT. Here, you’ll tailor cutting-edge solutions to the unique requirements of our clients. With a career in application development, you’ll make the end user’s experience your priority and we’ll make your career growth ours. At GDIT, people are our differentiator. As a Splunk Sr Principal you will help ensure today is safe and tomorrow is smarter. Our work depends on Systems Engineer joining our team. The Digital Services SIEM Team requires an experienced Splunk Sr Principal to system engineer to perform all aspects of Splunk Enterprise and ITSI administration, maintenance, and operation of global enterprise solution used for complex Splunk applications, dashboards and reports. Duties include: monitoring Splunk infrastructure system health and data feeds; install, and configuration of Splunk Indexers, Forwarders, Deployment Servers and Search-Heads; onboarding new data; supporting cybersecurity and operations teams and driving complex Splunk dashboard deployments/reports and working side by side with the customers to solve their unique problems across a variety of use cases HOW A SYSTEMS ENGINEER WILL MAKE AN IMPACT: ● Ensure the Splunk infrastructure functions properly with PKI-based authentication, corporate authorization services, firewalls, and SSL/TLS communications. ● Contribute to development and ongoing improvement of industry best practices and standards for maintaining data analytics enterprise technologies. ● Assist with installing, testing, and deploying hotfixes/patches for Splunk app/product releases to manage enterprise vulnerabilities. ● Assist with development of knowledge articles, documentation, and work instructions used by the Splunk, server, desktop and Information System Security teams, and Tier 2/3 Help Desk technicians.

Requirements

  • Education: Technical Training, Certification(s) or Degree
  • Experience: 8+ years of related experience
  • Technical skills: Experience managing user authentication within Splunk to include Role and Attribute Based Access Controls (RBAC\ABAC), authentication with Lightweight Directory Access Protocol and Active Directory (LDAP\AD), and managing access via HEC tokens. Experience implementing and managing Apps within Splunk.
  • Security clearance level: TS/SCI w/Poly
  • US citizenship required
  • 8750 Minimum: Security+ OR Network+ Certification
  • 40 hours/week; Day-shift, M-F work hours; available for after hours on call.
  • Location: On Site

Nice To Haves

  • Experience reviewing network, host and firewall security logs.
  • Experience with using scripting languages such as CSS, HTML, JavaScript, Python, and shell scripting to automate tasks and manipulate data.
  • Experience managing integrations with technical add-ons with a relevant experience integrating DBConnect.
  • Experience with Splunk Machine Learning Toolkit (MLTK), solid knowledge of RMF, Trellix ePO, NESSUS, SCAP, and vulnerability scanning is highly preferred.
  • Expert understanding in data analytics, Hadoop, MapReduce, visualization is a plus.
  • Programming experience PowerShell or Python is preferred.
  • Experience using ServiceNow ticketing system, broad operations or development experience.
  • Strong organization, communication, and collaboration skills and be customer-focused and results oriented.

Responsibilities

  • Ensure the Splunk infrastructure functions properly with PKI-based authentication, corporate authorization services, firewalls, and SSL/TLS communications.
  • Contribute to development and ongoing improvement of industry best practices and standards for maintaining data analytics enterprise technologies.
  • Assist with installing, testing, and deploying hotfixes/patches for Splunk app/product releases to manage enterprise vulnerabilities.
  • Assist with development of knowledge articles, documentation, and work instructions used by the Splunk, server, desktop and Information System Security teams, and Tier 2/3 Help Desk technicians.

Benefits

  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Community: Award-winning culture of innovation and a military-friendly workplace
  • Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match.
  • To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
  • To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available.
  • We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service