Senior Splunk Administrator

GCyber

Washington (District of Columbia)

On-site

USD 120,000 - 160,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Paid leave
Parental leave
401(k) matching
Healthcare coverage
Professional development
Commuter benefits

Job summary

GCyber is seeking a Senior Splunk Administrator to support a high-profile government customer. This hands-on role covers data ingestion, dashboard development, and resolving issues when data is not properly parsed.

The position requires active DoD Top Secret/SCI clearance and IAT II certification, with 5+ years of hands-on Splunk experience in distributed environments. On-site DC area work with GCyber benefits and career development opportunities.

Qualifications

  • Active DoD Top Secret/SCI clearance required.
  • Active IAT II certification (e.g., Security+, CySA+, CCNA-Security, GSEC, CND, GICSP, SSCP).
  • Bachelor’s degree or equivalent in a relevant field.
  • 5+ years of Splunk administration or engineering experience.
  • Hands-on experience with distributed enterprise Splunk environments.

Responsibilities

  • Administer and monitor enterprise Splunk environments incl. indexer clusters, search head clusters, forwarders, deployers, and monitoring consoles.
  • Troubleshoot missing, delayed, duplicated, or misparsed data across ingestion paths.
  • Configure Splunk inputs, outputs, indexes, sourcetypes, routing, and event parsing.
  • Build and maintain dashboards, reports, alerts, and saved searches for ops and security visibility.
  • Define dashboard requirements with stakeholders and present results clearly.
  • Develop and optimize SPL searches for dashboards, validation, and reporting.
  • Diagnose issues across forwarders, queues, certificates, network, indexing, and permissions.

Skills

Splunk administration
DoD TS/SCI clearance
IAT II certification
Data ingestion & parsing
Dashboard development
Troubleshooting Splunk

Education

Bachelor’s degree in Computer Science / Cybersecurity / Computer Engineering / Information Technology

Job description

GCYber is seeking a Senior Splunk Administrator, to support a high-profile government customer. This is a hands‑on administration role responsible for data ingestion, dashboard development, and resolving issues when data is missing, delayed, duplicated, or incorrectly parsed.

As the Senior Splunk Administrator, you will:
  • Administer and monitor an enterprise Splunk environment, including indexer clusters, search head clusters, heavy and universal forwarders, deployment servers, deployers, cluster managers, and monitoring consoles.
  • Troubleshoot missing, delayed, duplicated, incorrectly parsed, or incorrectly routed data across the complete ingestion path.
  • Configure and maintain Splunk inputs, outputs, indexes, sourcetypes, routing, filtering, timestamp extraction, and event parsing.
  • Build and maintain Splunk dashboards, reports, alerts, and saved searches that provide useful operational and cybersecurity visibility.
  • Work with stakeholders to define dashboard requirements, identify the right data, and present results in a clear and actionable format.
  • Develop and optimize SPL searches that support dashboards, data validation, troubleshooting, trend analysis, and operational reporting.
  • Diagnose issues involving forwarders, blocked queues, certificates, network connectivity, indexing, permissions, dashboards, and search logic.
Minimum Qualifications and Experience
  • Active DoD Top Secret/SCI clearance
  • Active IAT II certification (i.e., Security+, CySA+, CCNA‑Security, GSEC, CND, GICSP, SSCP)
  • Bachelor’s Degree in Computer Science, Cybersecurity, Computer. Engineering, Information Technology, or equivalent degree
  • 5+ years of Splunk administration or engineering experience.
  • Hands‑on experience supporting a distributed enterprise Splunk environment
  • Experience with indexer clusters, search head clusters, heavy forwarders, universal forwarders, deployment servers, and related Splunk components.
  • Splunk certification preferred
Our Benefits

GCyber is committed to the well‑being and development of every employee. Our benefits are designed to support your personal and professional goals, from health and wellness programs to retirement savings and career development opportunities. Highlights include:

  • 26 Days of Paid Leave + Annual PTO Increase
  • An extra day of paid leave for every year of employment with GCyber
  • Paid Parental Leave
  • Additional Leave Allowances for Military Duty, Jury Duty, and Bereavement Leave
  • 401(k) Matching
  • 100% Company‑funded Disability Insurance
  • 90% Company‑Funded Health, Dental, and Vision Insurance, with contributions to insurance benefits for spouses, children, and family members
  • Training and Professional Development Plans
  • Commuter Benefits Plan
  • Parking and Transportation Allowance
Equal Opportunity Employer

GCyber is an Equal Opportunity Employer. This means you don't have to worry about whether your application process will be fair. We consider all applicants without regard to race, color, religion, age, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, veteran status, or disability.

Stay in Touch

For future job notifications please follow GCyber on LinkedIn. https://linkedin.com/company/gcyber

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk Admin - Enterprise Data & Dashboards
Senior Splunk Admin - Enterprise Data & Dashboards

GCyber • Washington

On-site
USD 120,000 - 160,000
Paid leave
Parental leave
401(k) matching
+3
Sr. Splunk Administrator
Sr. Splunk Administrator

Core4ce Careers • United States

Remote
USD 100,000 - 130,000
401(k) with company match
Comprehensive health coverage
Unlimited training access
+3
Senior Splunk Engineer
Senior Splunk Engineer

Xpect Solutions, Inc. • Washington

On-site
USD 120,000 - 150,000
Competitive Medical, Dental, and Vision plan
Retirement Savings Plan
Life Insurance
+3
Senior Cyber Security Engineer (Splunk)
Senior Cyber Security Engineer (Splunk)

CACI International Inc • Chantilly (VA)

On-site
USD 103,000 - 219,000
Comprehensive healthcare
Flexible time off
Continuing education support
Splunk Detection Engineer
Splunk Detection Engineer

Boston Government Services • Los Alamos (NM)

Hybrid
USD 120,000 - 180,000
Health Insurance
401K
Paid Vacation
+4
Senior Security Engineer - Splunk
Senior Security Engineer - Splunk

Uvcyber • National Harbor (MD)

Hybrid
USD 140,000 - 190,000
401(k) employer match
Medical, Dental, Vision
DTO program
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Peraton • Washington

On-site
USD 120,000 - 150,000
Senior Cybersecurity Engineer
Senior Cybersecurity Engineer

Alaka`ina Foundation Family of Companies • Arlington (VA)

On-site
USD 90,000 - 120,000
401(k) plan with company match
Medical, dental, disability, and life insurance coverage
Tuition reimbursement
+2
Splunk Engineer - Mid
Splunk Engineer - Mid

Via Logic LLC • Ashburn (VA)

On-site
USD 108,000 - 195,000
Sr. Splunk / SIEM Engineer (TS Required)
Sr. Splunk / SIEM Engineer (TS Required)

augustschell • Alexandria (VA)

Hybrid
USD 100,000 - 130,000