Cybersecurity Analytics Systems Administrator

Peraton

Tampa (FL)

On-site

USD 66,000 - 106,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health, dental, vision
401(k)
PTO and company holidays
EAP

Job summary

Peraton is seeking a Cybersecurity Analytics Systems Administrator to support enterprise security data and analytics platforms at Macdill AFB, ensuring SIEM environments are available, secure, and reliable through administration, ingestion oversight, upgrades, and troubleshooting.

You will manage user access, configure Splunk and Microsoft Sentinel, administer RHEL systems, and assist analysts with dashboard issues while monitoring data integrity and performance across ingestion pipelines and

Qualifications

  • 12 years with HS degree
  • 10 years with AS/AA
  • 8 years with BS/BA
  • 6 years with MS/MA
  • DoD 8570 IAT II Certification
  • DoD 8140 compliant

Responsibilities

  • Administer user access with RBAC, index permissions, and configurations across Splunk Enterprise, Splunk ES, and Microsoft Sentinel workspaces
  • Maintain and administer underlying RHEL servers including OS-level user management, disk space, auditing, updates, and STIG hardening
  • Deploy and maintain data collection agents (Splunk UF/HF, Sentinel Monitor) to support data flow
  • Monitor platform health, indexer status, search head performance, disk utilization across hot/warm/cold storage
  • Run upgrades and TA updates, manage SSL/TLS certificates across deployment tiers
  • Troubleshoot ingestion issues, broken forwarder feeds, sourcetypes, and basic query performance
  • Perform backups of Splunk etc directory and Sentinel templates; verify restorations
  • Create alerts for unusual activity; maintain documentation and perform basic troubleshooting
  • Analyze data to identify patterns and trends; support users with system issues
  • Manage dashboard permissions and automatic PDF report generation; ensure dashboards load without permission errors
  • Monitor real-time ingestion rates and sourcetype volume; alert on data drops
  • Assist analysts with dashboard troubleshooting and fix broken filters or SPL/KQL syntax

Skills

RBAC
Splunk
Microsoft Sentinel
RHEL
SPL
KQL
SPL/KQL

Education

HS degree
AS/AA
BS/BA
MS/MA
DoD 8570 IAT II Certification

Tools

Splunk Universal/Heavy Forwarders
Sentinel Azure Monitor

Job description

Peraton is seeking a Cybersecurity Analytics Systems Administrator to support daily operations and ongoing health monitoring for enterprise security data and analytics platforms for SITEC 3 EOM. This onsite role at Macdill AFB, FL focuses on keeping centralized SIEM environments available, secure, and reliable through administration, ingestion oversight, upgrades, and troubleshooting.

The position is responsible for managing user access and platform configurations across Splunk and Microsoft Sentinel, administering the underlying Red Hat Enterprise Linux (RHEL) systems, and ensuring data collection agents and ingestion pipelines operate correctly. You will also support analysts by addressing routine issues in dashboards and queries while tracking operational performance and data integrity.

Key Responsibilities
  • Administer user access with RBAC, index permissions, and routine configurations across Splunk Enterprise, Splunk ES, and Microsoft Sentinel workspaces.
  • Maintain and administer underlying RHEL servers, including OS-level user management, disk space allocation, system auditing, package updates, and STIG hardening.
  • Deploy, configure, and maintain data collection agents such as Splunk Universal/Heavy Forwarders, Sentinel Azure Monitor, and syslog daemons to support dependable data flow.
  • Monitor platform operational health, including indexer status, search head performance, and disk utilization across hot/warm/cold storage tiering to prevent data loss or disruption.
  • Run scheduled upgrades and minor updates, including Splunk technology add-on (TA) updates and SSL/TLS certificate renewals across deployment tiers.
  • Troubleshoot ingestion failures and related issues such as broken forwarder feeds, missing sourcetypes, and basic search query performance problems submitted by analysts.
  • Perform scheduled configuration backups (for example, Splunk etc directory snapshots and Sentinel workspace templates) and verify restoration procedures.
  • Create alerts and notifications for unusual activity, including security breaches or system failures.
  • Maintain documentation of system configurations and changes, and perform basic troubleshooting to identify causes when issues occur.
  • Analyze data to identify patterns, trends, or other useful information.
  • Support users experiencing system problems or incorrect usage.
  • Manage dashboard permissions and schedule automated PDF report generation, ensuring dashboards load consistently without permissions-related errors.
  • Monitor real‑time ingestion rates and sourcetype volume, alerting on sudden data drops, silence gaps, or duplicate event streams across deployed inputs.
  • Assist security analysts with basic dashboard troubleshooting, updating broken filters, correcting simple SPL/KQL syntax errors, and validating input dropdown tokens.
Required Qualifications
  • Minimum experience based on education level: 12 years with HS degree, 10 years with AS/AA, 8 years with BS/BA, or 6 years with MS/MA.
  • DoW TS/SCI clearance.
  • DoD 8570 IAT II Certification.
  • Must be DoD 8140 compliant under Work Role Code 451 – Systems Administrator Intermediate (Intermediate level or higher).
Technologies
  • Splunk Enterprise, Splunk ES, Microsoft Sentinel
  • Red Hat Enterprise Linux (RHEL)
  • Splunk Universal/Heavy Forwarders, Sentinel Azure Monitor, syslog daemons
  • hot/warm/cold storage tiering, STIG, SSL/TLS
  • Splunk technology add-on (TA), SPL, KQL
Compensation and Benefits
  • Target salary range: USD 66,000 - 106,000 per year.
  • Medical, dental, vision, life, health savings account
  • Short/long term disability, EAP, parental leave
  • 401(k), paid time off (PTO) for vacation, and company paid holidays

Application window: estimated 30 days from the job posting date. During the review process, applicants may be required to participate in an on-camera interview and complete an identity verification step. Use of artificial intelligence tools during Peraton interviews is strictly prohibited unless the candidate has prior written authorization, and all interview responses must be the candidate’s own. Peraton is an Equal Opportunity Employer, including disability and protected veterans.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

External Job Posting Title SITEC - Cybersecurity Analytics Systems Administrator - MacDill AFB
External Job Posting Title SITEC - Cybersecurity Analytics Systems Administrator - MacDill AFB

Peraton • Town of Florida (NY), Northern (KY)

Hybrid
USD 66,000 - 106,000
SITEC - Cybersecurity Analytics Systems Administrator - MacDill AFB
SITEC - Cybersecurity Analytics Systems Administrator - MacDill AFB

Peraton • Tampa (FL)

On-site
USD 66,000 - 106,000
SITEC - Cybersecurity Analytics Systems Administrator - MacDill AFB
SITEC - Cybersecurity Analytics Systems Administrator - MacDill AFB

Peraton • Town of Florida (NY), Northern (KY)

Hybrid
USD 110,000 - 140,000
TS/SCI Splunk Engineer — Mission-Critical Analytics
TS/SCI Splunk Engineer — Mission-Critical Analytics

Peraton • Riverdale Park (MD)

On-site
USD 112,000 - 179,000
Heavily subsidized employee benefits
25 days of PTO annually
Attractive bonus plan
External Job Posting Title SITEC - Cyber Threat Detection Engineer - MacDill AFB
External Job Posting Title SITEC - Cyber Threat Detection Engineer - MacDill AFB

Peraton • Town of Florida (NY), Northern (KY)

Hybrid
USD 80,000 - 128,000
Senior Cybersecurity Analytics & SIEM Systems Engineer
Senior Cybersecurity Analytics & SIEM Systems Engineer

Peraton • Town of Florida (NY), Northern (KY)

Hybrid
USD 66,000 - 106,000
SITEC - Splunk Data Engineer - MacDill AFB
SITEC - Splunk Data Engineer - MacDill AFB

Peraton • Town of Florida (NY)

On-site
USD 104,000 - 166,000
External Job Posting Title SITEC - Network Security Administrator - MacDill AFB
External Job Posting Title SITEC - Network Security Administrator - MacDill AFB

Peraton • Town of Florida (NY)

On-site
USD 80,000 - 128,000
Splunk Engineer
Splunk Engineer

Peraton • Herndon (VA)

On-site
USD 112,000 - 179,000
Heavily subsidized benefits coverage
25 days PTO accrued annually
Attractive bonus plan
SITEC - Cyber Systems Operations Manager
SITEC - Cyber Systems Operations Manager

Peraton • Tampa (FL)

On-site
USD 104,000 - 166,000