Splunk SOAR Administrator

Via Logic LLC

Suitland (MD)

On-site

USD 108,000 - 195,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Leidos is seeking a Splunk SOAR Administrator to join our team in Suitland, MD. You will provide engineering, operations, and technical support for SIEM platforms that support threat detection, compliance, and security incident management for the HGCC.

The role emphasizes designing, deploying, and maintaining SOAR backends; administering the SOAR platform; developing automated playbooks; and integrating with Splunk ES, ticketing systems, and threat feeds.

Qualifications

  • Active TS/SCI clearance is required.
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years of experience with Splunk, including Splunk Add-ons, Apps, Technology Add-ons (TAs), and Universal Forwarder.
  • Expert knowledge of Splunk Enterprise, Splunk Enterprise Security, and Splunk SOAR.
  • Significant experience with SDLC and strong analytical/problem-solving skills.

Responsibilities

  • Design, deploy, and maintain backend architecture for EAC.
  • Administer the SOAR platform, including configuration and integrations.
  • Develop and maintain automated SOAR playbooks for alert triage and response.
  • Integrate SOAR with Splunk ES, ticketing systems, and threat feeds.
  • Manage clustering, replication, indexing performance, and license usage.
  • Apply DISA STIGs and NAVINTEL IA baselines.
  • Maintain version control, approval workflows, and playbook governance.
  • Configure secure transmission of Audit.XML records to partners and troubleshoot transmissions.
  • Implement incident response workflows aligned with MITRE ATT&CK, NIST SP 800-61, and HGCC procedures.
  • Travel may be required between NMIC and other CONUS/OCONUS locations.

Skills

Analytical skills
Communication skills
Problem solving

Education

Bachelor's degree in CS/IT/IA or related field
Master's degree in related field

Tools

Splunk

Job description

Splunk SOAR Administrator

Location: Suitland, MD

Security Clearance: Active TS/SCI Required

Leidos is hiring a Splunk SOAR Administrator to join our team in Suitland, MD. In this role, you will provide engineering, operations, and technical support for Security Information and Event Management (SIEM) platforms that support threat detection, compliance, and security incident management for the Office of Naval Intelligence's Hopper Global Communications Center (HGCC). You will help develop and automate cybersecurity operations while supporting mission critical defensive cyber capabilities.

Primary Responsibilities
  • Design, deploy, and maintain EAC backend architecture.
  • Administer the SOAR platform, including configuration, asset integrations, and custom fields.
  • Design, develop, test, and maintain automated SOAR playbooks for alert triage, enrichment, and risk based response.
  • Integrate SOAR with Splunk Enterprise Security, ticketing systems, and threat intelligence feeds.
  • Manage clustering, replication, indexing performance, and license usage.
  • Apply DISA STIGs, SRGs, and NAVINTEL Information Assurance baselines.
  • Maintain version control, approval workflows, and playbook governance.
  • Configure and maintain the secure transmission of Audit.XML records to Intelligence Community partners through ITS and troubleshoot transmission failures.
  • Implement standard incident response workflows aligned with MITRE ATT&CK, NIST SP 800-61, and HGCC N62 Defensive Cyber Operations procedures.
  • Travel may be required between the National Maritime Intelligence Center (NMIC) and other designated CONUS and OCONUS locations in support of program requirements.
Required Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Information Assurance, or a related discipline with 8+ years of relevant experience, or a Master's degree with 6+ years of relevant experience. 15+ years of experience, including at least 10 years supporting LAN/WAN technologies, may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Active IAT Level III certification (such as CISSP).
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years of experience with Splunk, including Splunk Add-ons, Apps, Technology Add-ons (TAs), and Universal Forwarder.
  • Expert knowledge of Splunk, including Splunk Enterprise, Splunk Enterprise Security, and Splunk SOAR.
  • Significant experience with the System/Software Development Life Cycle (SDLC).
  • Strong analytical and problem solving skills.
  • Effective verbal and written communication skills.

NITESONI

DABAOPP1

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares.

Original Posting

August 4, 2026

Pay Range

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Securing Your Data

Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at LeidosCareersFraud@leidos.com.

If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SRE Cyber Tools - Splunk Admin.
SRE Cyber Tools - Splunk Admin.

Leidos • Norfolk (VA)

On-site
USD 108,000 - 195,000
Senior Splunk Engineer
Senior Splunk Engineer

Leidos • Arlington (VA)

On-site
USD 131,000 - 237,000
Senior Splunk Engineer
Senior Splunk Engineer

Leidos Inc • Arlington (VA)

On-site
USD 131,000 - 237,000
SRE Cyber Tools - Splunk Admin.
SRE Cyber Tools - Splunk Admin.

Leidos Inc • Norfolk (VA)

On-site
USD 110,000 - 195,000
Splunk Administrator
Splunk Administrator

Leidos Inc • Suitland (MD)

On-site
USD 108,000 - 195,000
SIEM(Security Information & Event Management) Engineer
SIEM(Security Information & Event Management) Engineer

Leidos • Maryland

On-site
USD 131,000 - 237,000
Paid Time Off
11 paid Holidays
401K with 6% company match
+5
Incident Responder
Incident Responder

Leidos • Suitland (MD)

On-site
USD 108,000 - 195,000
Senior Software Engineer
Senior Software Engineer

Leidos Inc • Laurel (MD)

On-site
USD 131,000 - 237,000
AIOps Engineer SME
AIOps Engineer SME

Leidos • Fort Belvoir (VA)

On-site
USD 131,300 - 237,350
Cyber Infrastructure Support Lead
Cyber Infrastructure Support Lead

Leidos Inc • Concord (MA)

On-site
USD 108,000 - 195,000