Senior Splunk Admin (TS/SCI) – CND & Enterprise Security

G2IT, LLC.

Suitland (MD)

On-site

USD 120,000 - 180,000

Full time

10 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

G2IT is seeking an experienced Splunk Administrator (Level 3) to support enterprise cybersecurity, monitoring, and data analytics environments. The candidate will have hands-on Splunk admin experience, develop SPL queries, dashboards, and alerts, and support RMF and CIM compliance in DoD/IC contexts.

Required are TS clearance eligibility, 10+ years in LAN/WAN across Windows/Unix, 6+ years in Splunk, and proficiency with Python, AWS, and RMF.

Qualifications

  • Active TS clearance with TS/SCI eligibility
  • 10+ years LAN/WAN in Windows and Unix/Linux environments
  • 8+ years CND experience
  • 6+ years Splunk administration and optimization
  • Expert Splunk Enterprise & apps (ES, SOAR, UEBA, ITSI)
  • Experience with Splunk Add-ons, Apps, TAs, and Universal Forwarders

Responsibilities

  • Install, configure, administer, maintain and optimize Splunk environments
  • Support Splunk Enterprise and ES/SOAR/UEBA/ITSI
  • Develop SPL queries, dashboards, reports, alerts
  • Perform log ingestion, parsing, normalization, analysis
  • Maintain CIM compliance and data mapping
  • Automate tasks with Python scripting
  • Support AWS and RHEL environments
  • Communicate complex cybersecurity issues to stakeholders

Skills

Splunk administration
SPL queries
Python scripting
RMF compliance
Technical documentation
Cybersecurity briefing
Strong communication

Education

Bachelor's degree in CS/IT/IA
Master's degree preferred
15+ years experience alternative to degree

Tools

Splunk Enterprise
AWS
RHEL/Windows
SQL
Python

Job description

G2IT is seeking an experienced Splunk Administrator (Level 3) to support enterprise cybersecurity, monitoring, and data analytics environments. The candidate will have hands-on Splunk admin experience, develop SPL queries, dashboards, and alerts, and support RMF and CIM compliance in DoD/IC contexts.

Required are TS clearance eligibility, 10+ years in LAN/WAN across Windows/Unix, 6+ years in Splunk, and proficiency with Python, AWS, and RMF.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk Administrator (Level 3)
Splunk Administrator (Level 3)

G2IT, LLC. • Suitland (MD)

On-site
USD 120,000 - 180,000
Senior Splunk Admin - Enterprise Data & Dashboards
Senior Splunk Admin - Enterprise Data & Dashboards

GCyber • Washington

On-site
USD 120,000 - 160,000
Paid leave
Parental leave
401(k) matching
+3
Senior CND Engineer - Splunk & Threat Detection (TS/SCI)
Senior CND Engineer - Splunk & Threat Detection (TS/SCI)

Mission Technologies, a division of HII • Springfield (VA)

On-site
USD 85,000 - 185,000
TS/SCI Splunk Administrator - Defensive Cyber Operations
TS/SCI Splunk Administrator - Defensive Cyber Operations

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • College Park (MD)

On-site
USD 80,000 - 110,000
Free Platinum-Level Medical/Dental/Vision coverage
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+2
Splunk Engineer (TS/SCI)
Splunk Engineer (TS/SCI)

Beyond SOF • Reston (VA)

On-site
USD 120,000 - 180,000
Cyber Security Analyst
Cyber Security Analyst

Makoa • Arlington (VA), Northern (KY)

Hybrid
USD 110,000 - 160,000
Senior Splunk Admin III - Data, Security & Dashboards
Senior Splunk Admin III - Data, Security & Dashboards

Abacus Technology • Montgomery (AL)

On-site
USD 80,000 - 100,000
TS/SCI Splunk Engineer - Security Analytics & Defense
TS/SCI Splunk Engineer - Security Analytics & Defense

ENS Solutions, LLC • Washington

On-site
USD 120,000 - 180,000
Free Platinum-Level Medical/Dental/VIs
401k from Day 1
PTO + 11 federal holidays
+4
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates Inc. • Richmond (VA)

On-site
USD 110,000 - 160,000