Senior Splunk SOAR Administrator - TS/SCI, SIEM Expert

G2IT, LLC.

Suitland (MD)

On-site

USD 130,000 - 190,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

G2IT, LLC. in Suitland, MD seeks a Splunk SOAR Administrator to provide engineering, operations, and technical support for SIEM platforms supporting threat detection and incident management for a government program. The role emphasizes automation and secure operations.

The ideal candidate holds a TS/SCI clearance, IAT Level III (CISSP), and 6–10+ years in CND and Splunk-related work, with strong collaboration across teams and adherence to standards such as MITRE ATT&CK and NIST guidelines.

Qualifications

  • Bachelor's degree or higher in CS/IT/Info Assurance with 8+ years of relevant experience; or Master's with 6+ years.
  • Active TS/SCI security clearance.
  • Active IAT Level III certification (e.g., CISSP).
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years of experience with Splunk including Add-ons, Apps, TAs, and Universal Forwarder.
  • Expert knowledge of Splunk products (Enterprise, Enterprise Security, SOAR).
  • Strong SDLC experience; analytical and problem-solving skills.
  • Excellent verbal and written communication skills.

Responsibilities

  • Design, deploy, and maintain backend architecture.
  • Administer the SOAR platform with configurations and integrations.
  • Develop and maintain automated SOAR playbooks for alert triage and response.
  • Integrate SOAR with Splunk ES, ticketing systems, and threat feeds.
  • Manage clustering, replication, indexing performance, and licensing.
  • Apply DISA STIGs, SRGs, and NAVINTEL baselines.
  • Maintain version control, approval workflows, and playbook governance.
  • Configure secure transmission of Audit.XML records and troubleshoot transmissions.
  • Implement incident response workflows aligned with MITRE ATT&CK, NIST SP 800-61, HGCC procedures.

Skills

Splunk
SOAR administration
Security operations
Incident response
Communication skills
Networking basics

Education

Bachelor's degree in CS/IT/Info Assurance
Master's degree in related field
10+ years LAN/WAN experience in lieu of degree

Tools

Splunk Add-ons
Splunk Apps
Universal Forwarder
SIEM integration

Job description

G2IT, LLC. in Suitland, MD seeks a Splunk SOAR Administrator to provide engineering, operations, and technical support for SIEM platforms supporting threat detection and incident management for a government program. The role emphasizes automation and secure operations.

The ideal candidate holds a TS/SCI clearance, IAT Level III (CISSP), and 6–10+ years in CND and Splunk-related work, with strong collaboration across teams and adherence to standards such as MITRE ATT&CK and NIST guidelines.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk SOAR Administrator - SIEM & Threat Response
Senior Splunk SOAR Administrator - SIEM & Threat Response

G2it, Llc. • Suitland (MD), Northern (KY)

Hybrid
USD 120,000 - 150,000
Senior Splunk SOAR Administrator TS/SCI
Senior Splunk SOAR Administrator TS/SCI

Via Logic LLC • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk SOAR Administrator New Suitland, Maryland, United States
Splunk SOAR Administrator New Suitland, Maryland, United States

G2it, Llc. • Suitland (MD), Northern (KY)

Hybrid
USD 120,000 - 150,000
Splunk SOAR Engineer | TS/SCI Clearance
Splunk SOAR Engineer | TS/SCI Clearance

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk SOAR Administrator
Splunk SOAR Administrator

G2IT, LLC. • Suitland (MD)

On-site
USD 130,000 - 190,000
Senior Splunk ES Admin — TS/SCI SIEM & SOC
Senior Splunk ES Admin — TS/SCI SIEM & SOC

Via Logic LLC • Suitland (MD)

On-site
USD 108,000 - 195,000
Lead Splunk ES Admin | TS/SCI | SOC Ops - Suitland
Lead Splunk ES Admin | TS/SCI | SOC Ops - Suitland

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
Splunk Enterprise & Enterprise Security Admin (TS/SCI)
Splunk Enterprise & Enterprise Security Admin (TS/SCI)

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
TS/SCI Splunk Administrator – Security Analytics Expert
TS/SCI Splunk Administrator – Security Analytics Expert

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Senior Splunk & SIEM Analyst – DISA Environment (Hybrid)
Senior Splunk & SIEM Analyst – DISA Environment (Hybrid)

Spatial Front, Inc • Crystal City (TX)

Hybrid
USD 100,000 - 150,000