Splunk SIEM Data Ingestion Engineer

Booz Allen Hamilton

Virginia, Northern (MN, KY)

Hybrid

USD 99,000 - 225,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Booz Allen Hamilton in the United States is seeking a Splunk SIEM Data Onboarding Engineer to design, deploy, and manage our Splunk environment, ensuring reliable data ingestion, analysis, and visualization for security operations.

You will build dashboards, implement data pipelines, and collaborate across teams while maintaining best practices for data retention and security. This role requires TS/SCI clearance and hands-on Splunk architecture experience.

Qualifications

  • 2+ years managing and configuring Splunk.
  • 2+ years Splunk architecture incl. indexers, search heads, forwarders, deployment server.
  • 2+ years building pipelines to parse, normalize, enrich, mask or dedupe, route data to Splunk.
  • 2+ years Linux and Windows administration.
  • Active TS/SCI clearance; willingness to take a polygraph exam.
  • Degree or experience options outlined in the ad; candidate may substitute 10+ years experience.

Responsibilities

  • Design, deploy, and manage Splunk infrastructure.
  • Develop and maintain Splunk dashboards, queries, and alerts.
  • Integrate Splunk with data sources for comprehensive ingestion.
  • Monitor and troubleshoot Splunk performance issues.
  • Collaborate with cross-functional teams to gather requirements and provide Splunk solutions.
  • Implement and enforce best practices for Splunk data management and retention.
  • Provide user training and support for Splunk-related activities.

Skills

Splunk admin
Splunk architecture
Data onboarding
Linux administration
Windows administration
TS/SCI clearance
DoD 8570 IAT III
Networking basics
Regex skills
SPL
Python
PowerShell
Git
Ansible
Cribl

Education

Associate degree + 5+ years IT
Bachelor’s degree + 3+ years IT
Master’s degree + 1+ years IT
10+ years experience in lieu of a degree

Tools

Splunk
Cribl
REST API
Git
Ansible
Python
PowerShell

Job description

Booz Allen Hamilton in the United States is seeking a Splunk SIEM Data Onboarding Engineer to design, deploy, and manage our Splunk environment, ensuring reliable data ingestion, analysis, and visualization for security operations.

You will build dashboards, implement data pipelines, and collaborate across teams while maintaining best practices for data retention and security. This role requires TS/SCI clearance and hands-on Splunk architecture experience.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Splunk SIEM Data Ingestion Engineer
Splunk SIEM Data Ingestion Engineer

Booz Allen Hamilton • Washington

On-site
USD 99,000 - 225,000
Splunk SIEM Data Onboarding Specialist
Splunk SIEM Data Onboarding Specialist

Booz Allen Hamilton • Norfolk (VA)

On-site
USD 99,000 - 225,000
Elastic Data Engineer - SIEM & Security Ops
Elastic Data Engineer - SIEM & Security Ops

Booz Allen Hamilton • Washington

On-site
USD 78,000 - 176,000
Splunk SIEM Data Onboarding Engineer
Splunk SIEM Data Onboarding Engineer

Booz Allen Hamilton • Norfolk (VA)

On-site
USD 99,000 - 225,000
Senior Splunk SIEM Data Onboarding Engineer
Senior Splunk SIEM Data Onboarding Engineer

Huxley • Town of Belgium (WI)

On-site
USD 120,000 - 160,000
Splunk SIEM Data Onboarding Engineer
Splunk SIEM Data Onboarding Engineer

Booz Allen Hamilton • Washington

On-site
USD 99,000 - 225,000
Splunk Engineer | TS/SCI Clearance & Enterprise Monitoring
Splunk Engineer | TS/SCI Clearance & Enterprise Monitoring

CDW LLC. • North Dakota

On-site
USD 190,000 - 240,000
Splunk Architect: Enterprise SIEM & Analytics Lead
Splunk Architect: Enterprise SIEM & Analytics Lead

Fuse Engineering • Fort Meade (MD)

On-site
USD 120,000 - 150,000
Senior Splunk ES Admin — TS/SCI SIEM & SOC
Senior Splunk ES Admin — TS/SCI SIEM & SOC

Via Logic LLC • Suitland (MD)

On-site
USD 108,000 - 195,000
TS/SCI Splunk Engineer: Data Analytics & Monitoring
TS/SCI Splunk Engineer: Data Analytics & Monitoring

CDW • North Dakota

On-site
USD 190,000 - 240,000