SITEC - Splunk Data Engineer - MacDill AFB

Peraton

United States

On-site

USD 104,000 - 166,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Peraton is seeking a Splunk Data Engineer to design, deploy, and maintain comprehensive data ingestion pipelines within the enterprise Splunk environment across DoW networks. The role emphasizes edge processing, tagging schemas, and secure transport to support advanced threat hunting and compliance.

The candidate will develop TAs, ensure data fidelity, and collaborate with architects to optimize licensing and performance while documenting data flows and schemas for onboarded sources.

Qualifications

  • Minimum 12 years with HS degree, 10 years with AS/AA, 8 years with BS/BA, 6 years with MS/MA.
  • Experience with DoD enterprise networks and Zero Trust.
  • Knowledge of DoD compliance and data telemetry.

Responsibilities

  • Engineer, configure, and maintain data onboarding pipelines into the Splunk deployment.
  • Implement and optimize Splunk Forwarders and Edge Processors for data routing and masking.
  • Design standardized data tagging and CIM mappings for security tool readiness.
  • Develop custom add-ons to parse and enrich mission data sources.
  • Troubleshoot data parsing, event breaking, and time-stamping issues.
  • Collaborate with architects and engineers to establish secure transport (Syslog/HEC).
  • Design data reduction and edge-filtering policies to optimize licensing.
  • Maintain technical docs including data flow diagrams and ingestion matrices.

Skills

Splunk
Data ingestion pipelines
Edge processing
Syslog/HEC
Data tagging CIM
Python/PowerShell

Education

High School Diploma or equivalent
Associate degree
Bachelor's degree
Master's degree

Tools

Kafka
Apache NiFi
syslog-ng
Rsyslog
Splunk

Job description

Responsibilities

Peraton requires Systems Engineers to support the Special Operation Command Information Technology Enterprise Contract (SITEC) - 3 EOM.

This position is located at MacDill AFB in Florida.

The purpose of the Special Operations Forces Information Technology Enterprise Contract (SITEC) 3 Enterprise Operations and Maintenance (EOM) Task Order (TO) is to provide USSOCOM, its Component Commands, its Theater Special Operations Commands (TSOCs), and its deployed forces with Operations and Maintenance (O&M) services to maintain Network Operations (NetOps); maintain systems and network infrastructure; provide end user and common device support; provide configuration, change, license, and asset management; conduct training, and perform Install, Move, Add, Change (IMACs) services. The responsibilities and tasks associated with each requirement play a pivotal role to USSOCOM, the CIO/J6 organization, and ultimately the end-user who operate around the globe 24x7x365.

The Splunk Data Engineer will serve as a technical subject matter expert focused on the visibility and analytics capabilities supporting the enterprise Zero Trust architecture. This role is responsible for engineering, deploying, and maintaining comprehensive data ingestion pipelines into the enterprise Splunk environment across Department of War (DoW) networks. The engineer will design and implement robust data onboarding processes, engineer edge processing solutions (e.g., Splunk Edge Processor, Heavy Forwarders) for data filtering and transformation, and establish standardized data tagging schemas. By leveraging enterprise logging and telemetry platforms, the engineer will ensure high-fidelity data lineage, optimal storage tiering, and compliant telemetry integration to support advanced threat hunting and compliance reporting.

  • Engineer, configure, and maintain robust data onboarding pipelines to ingest structured and unstructured telemetry into the enterprise Splunk deployment.
  • Implement and optimize Splunk Universal Forwarders, Heavy Forwarders, and Splunk Edge Processors to manage data routing, filtering, and masking at the enterprise edge.
  • Design and implement standardized data tagging and field extraction schemas, mapping incoming data sources to the Splunk Common Information Model (CIM) to ensure downstream security tool readiness.
  • Develop custom technology add-ons (TAs) to parse, clean, and enrich non-standard mission data sources prior to ingestion.
  • Troubleshoot and resolve complex data parsing, event breaking, and time-stamping issues to guarantee search performance and minimize ingest-to-search latency.
  • Collaborate with enterprise architects and network engineers to establish secure, encrypted, and highly available transport pathways (e.g., Syslog, or HEC) into Splunk.
  • Design and implement data reduction strategies and edge-filtering policies to optimize Splunk licensing costs while retaining critical logs in accordance with DoD compliance mandates.
  • Maintain comprehensive technical documentation, including data flow diagrams, ingestion matrices, and data taxonomy schemas for all onboarded sources.
Qualifications
  • Min 12 years with HS degree, 10 years with AS/AA degree, 8 years with BS/BA, 6 years with MS/MA
  • DoD 8570 IAT II Certification
  • DoD TS/SCI clearance
Desired Qualifications
  • Must be with DoW 8140 compliant under the Work Role Code 451 - Systems Administrator Intermediate - Intermediate level or higher by 1 Oct 26.
  • Previous experience operating within Department of War (DoW) or DoD enterprise network environments.
  • Deep understanding of the DoD Zero Trust Strategy, specifically focusing on the Data visibility, tagging, and analytics pillars.
  • Experience with scripting languages (e.g., Python, PowerShell) to automate data classification tasks and tool API integrations.
  • Hands‑on experience with pipeline middleware and syslog aggregation tools, such as Apache Kafka, Apache NiFi, syslog-ng, or Rsyslog.
  • Demonstrated experience configuring and scaling Splunk Edge Processors or Heavy Forwarders to filter, mask, and route high-volume telemetry at the enterprise edge.
Peraton Overview

Peraton is a next‑generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

All

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SITEC - Splunk (UEBA) Engineer - MacDill AFB
SITEC - Splunk (UEBA) Engineer - MacDill AFB

Peraton • United States

On-site
USD 86,000 - 138,000
SITEC - Data Engineer - Camp H.M. Smith, HI
SITEC - Data Engineer - Camp H.M. Smith, HI

Peraton • United States

On-site
USD 112,000 - 179,000
SITEC - Splunk Data Engineer - MacDill AFB
SITEC - Splunk Data Engineer - MacDill AFB

Peraton • Tampa (FL)

On-site
USD 104,000 - 166,000
Overtime
Shift differential
Discretionary bonuses
SITEC - Data Engineer - Camp H.M. Smith, HI
SITEC - Data Engineer - Camp H.M. Smith, HI

Peraton • Waipahu (HI)

On-site
USD 112,000 - 179,000
External Job Posting Title SITEC - Data Engineer - Camp H.M. Smith, HI
External Job Posting Title SITEC - Data Engineer - Camp H.M. Smith, HI

Peraton • Hawaii

On-site
USD 112,000 - 179,000
SITEC - Network Engineer (C2C)- MacDill AFB
SITEC - Network Engineer (C2C)- MacDill AFB

Peraton • United States

On-site
USD 104,000 - 166,000
SITEC - Network Engineer (C2C)- MacDill AFB
SITEC - Network Engineer (C2C)- MacDill AFB

Peraton • Tampa (FL)

On-site
USD 104,000 - 166,000
External Job Posting Title SITEC - Cyber Threat Detection Engineer - MacDill AFB
External Job Posting Title SITEC - Cyber Threat Detection Engineer - MacDill AFB

Peraton • Town of Florida (NY), Northern (KY)

Hybrid
USD 80,000 - 128,000
SITEC - Network Security Administrator - MacDill AFB
SITEC - Network Security Administrator - MacDill AFB

Peraton • United States

On-site
USD 80,000 - 128,000
SITEC - Segmentation Engineer - MacDill AFB
SITEC - Segmentation Engineer - MacDill AFB

Peraton • United States

On-site
USD 135,000 - 216,000