Senior Splunk SOAR Administrator - SIEM & Threat Response

G2it, Llc.

Suitland, Northern (MD, KY)

Hybrid

USD 120,000 - 150,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

G2IT LLC in Suitland, MD is seeking a Splunk SOAR Administrator to join our team supporting the HGCC for the Office of Naval Intelligence. You will provide engineering, operations, and technical support for SIEM platforms, enabling threat detection, compliance, and incident management.

You will design, deploy, and maintain the SOAR backend, integrate with Splunk Enterprise Security, and automate playbooks for alert triage and response, while adhering to DoD cybersecurity baselines and

Qualifications

  • Active TS/SCI security clearance.
  • Active IAT Level III certification (e.g., CISSP).
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years experience with Splunk include Add-ons, Apps, TAs, and Universal Forwarder.
  • Expert knowledge of Splunk products: Enterprise, Enterprise Security, and SOAR.
  • Long SDLC experience; strong problem solving and communication skills.

Responsibilities

  • Design, deploy, and maintain EAC backend architecture.
  • Administer the SOAR platform, including configuration, asset integrations, and custom fields.
  • Develop and maintain automated SOAR playbooks for alert triage and response.
  • Integrate SOAR with Splunk Enterprise Security and ticketing systems.
  • Manage clustering, replication, indexing performance, and license usage.
  • Apply DISA STIGs, SRGs, and NAVINTEL baselines.
  • Maintain version control, approval workflows, and playbook governance.
  • Configure secure transmission of Audit.XML records to IC partners via ITS.
  • Implement incident response workflows aligned with MITRE ATT&CK and NIST SP 800-61.
  • Travel may be required between NMIC and CONUS/OCONUS locations.

Skills

CND engineering
SDLC
Analytical skills
Communication skills

Education

Bachelor's degree in Computer Science/Information Technology/Information Assurance or related discipline
Master's degree with 6+ years of relevant experience
15+ years experience in lieu of degree

Tools

Splunk
Splunk Enterprise
Splunk Enterprise Security
Splunk SOAR
Universal Forwarder

Job description

G2IT LLC in Suitland, MD is seeking a Splunk SOAR Administrator to join our team supporting the HGCC for the Office of Naval Intelligence. You will provide engineering, operations, and technical support for SIEM platforms, enabling threat detection, compliance, and incident management.

You will design, deploy, and maintain the SOAR backend, integrate with Splunk Enterprise Security, and automate playbooks for alert triage and response, while adhering to DoD cybersecurity baselines and

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk SOAR Administrator - TS/SCI, SIEM Expert
Senior Splunk SOAR Administrator - TS/SCI, SIEM Expert

G2IT, LLC. • Suitland (MD)

On-site
USD 130,000 - 190,000
Senior Splunk SOAR Administrator TS/SCI
Senior Splunk SOAR Administrator TS/SCI

Via Logic LLC • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk SOAR Administrator New Suitland, Maryland, United States
Splunk SOAR Administrator New Suitland, Maryland, United States

G2it, Llc. • Suitland (MD), Northern (KY)

On-site
USD 120,000 - 150,000
Splunk SOAR Administrator
Splunk SOAR Administrator

G2IT, LLC. • Suitland (MD)

On-site
USD 130,000 - 190,000
TS/SCI Splunk SOAR Administrator — Mission‑Critical Ops
TS/SCI Splunk SOAR Administrator — Mission‑Critical Ops

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk SOAR Engineer | TS/SCI Clearance
Splunk SOAR Engineer | TS/SCI Clearance

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk SOAR Administrator
Splunk SOAR Administrator

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Senior Splunk ES Admin — TS/SCI SIEM & SOC
Senior Splunk ES Admin — TS/SCI SIEM & SOC

Via Logic LLC • Suitland (MD)

On-site
USD 108,000 - 195,000
Senior Splunk & SIEM Analyst – DISA Environment (Hybrid)
Senior Splunk & SIEM Analyst – DISA Environment (Hybrid)

Spatial Front, Inc • Crystal City (TX)

Hybrid
USD 100,000 - 150,000
Senior Splunk SIEM Engineer — Day or Swing (On-Site)
Senior Splunk SIEM Engineer — Day or Swing (On-Site)

Spatial Front, Inc. • United States

Hybrid
USD 110,000 - 150,000