Splunk Systems Administrator

Client Solution Architects

Pensacola (FL)

On-site

USD 90,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Client Solution Architects seeks a Splunk Systems Administrator to support a Navy client onsite in Pensacola, FL. The role focuses on secure Splunk administration across classified and unclassified environments, with emphasis on Zero Trust architecture and incident response capabilities.

You will implement, monitor, and optimize Splunk, correlate data, and ensure high availability while adhering to DISA STIGs and security policies.

Qualifications

  • Active Secret clearance is required.
  • CompTIA Security+ or Bachelor’s degree in a related field.
  • Meets U.S. Navy Cybersecurity Workforce (CSWF) requirements.
  • Minimum 3+ years of systems administration experience including implementation of DISA STIGs.
  • Hands-on experience administering Splunk Enterprise in distributed environments.
  • Familiar with Zero Trust concepts (identity-centric security, continuous verification, least privilege).
  • Experience onboarding and normalizing logs from multiple sources (AD, firewalls, EDR, cloud).
  • Experience with automation and scripting (Python, Bash, PowerShell); Linux administration and hardening.

Responsibilities

  • Administer and maintain Splunk Enterprise across classified and unclassified environments with high availability and security.
  • Architect and implement Splunk solutions supporting Zero Trust principles.
  • Integrate diverse log sources for comprehensive visibility aligned with Zero Trust.
  • Develop and optimize correlation searches, alerts, and dashboards for security and operations.
  • Support Zero Trust framework deployment via telemetry for identity, device posture, and access control validation.
  • Enhance Splunk ITSI services to match security posture and operations insight.
  • Collaborate to map Splunk capabilities to NIST 800-207 Zero Trust Architecture.
  • Provide advanced Splunk user support, including searches, data onboarding, and dashboards.
  • Harden Linux systems per DISA STIGs and organizational policies.
  • Automate admin, data ingestion, and security workflows with scripting.",

Skills

Secret Clearance
Zero Trust concepts

Education

Bachelor’s degree in a related field
CompTIA Security+

Tools

Splunk Enterprise
Splunk ITSI
DISA STIGs
Python
Bash
PowerShell
AWS
Azure
GovCloud

Job description

Description

CSA is currently seeking a Splunk Systems Administrator to support our Navy client onsite in Pensacola, FL.

Job Type

Full-time

For nearly 50 years, CSA has delivered integrated technology and operational support services to meet the defense and federal sector's most complex enterprise needs. Working from operations centers and shipyards to training sites and program offices, CSA deploys experienced teams, innovative tools and proven processes to advance federal missions.

CSA has an excellent opportunity for an experienced, self-directed Systems Administrator to support and enhance our Splunk environment with a strong emphasis on Zero Trust architecture and secure system design. This role requires deep technical expertise in data systems, cybersecurity practices, and secure system administration within classified and unclassified environments. The ideal candidate will play a critical role in advancing our organization’s Zero Trust maturity by leveraging Splunk as a central security analytics and monitoring platform.

How Your Role Will Make An Impact
  • Administer and maintain Splunk Enterprise deployments across classified and unclassified environments, ensuring high availability, performance, and security.
  • Architect and implement Splunk solutions that support Zero Trust principles, including continuous monitoring, least privilege access, and micro-segmentation visibility.
  • Integrate diverse log sources (endpoints, network devices, identity systems, cloud services) to enable comprehensive visibility aligned with Zero Trust architecture.
  • Develop and optimize correlation searches, alerts, and dashboards to detect anomalous behavior, insider threats, and policy violations.
  • Support implementation of Zero Trust frameworks by enabling telemetry for identity, device posture, and access control validation.
  • Manage and enhance services within Splunk IT Service Intelligence (ITSI) to align operational intelligence with security posture.
  • Collaborate with cybersecurity teams to map Splunk capabilities to frameworks such as NIST 800-207 (Zero Trust Architecture).
  • Provide advanced support to Splunk users, including search development, data onboarding, and dashboard creation for security and operational use cases.
  • Harden and secure Linux-based systems in accordance with DISA STIGs and organizational security policies.
  • Automate system administration, data ingestion, and security workflows using scripting languages such as Python, Bash, or PowerShell.
  • Participate in incident response and threat hunting activities using Splunk as a primary investigative tool.
Requirements
What You Will Need to Join Our Award-Winning Team:
  • Clearance: Must possess and maintain an active Secret Clearance or have the ability to obtain and maintain one.
  • Certification: CompTIA Security+ (Sec+) or qualifying Bachelor’s degree in a related field.
  • Meet U.S. Navy Cybersecurity Workforce (CSWF) requirements.
  • Minimum of 3+ years of experience in systems administration, including implementation of DISA STIGs.
  • Hands-on experience administering Splunk Enterprise in distributed environments (indexers, search heads, forwarders).
  • Familiarity with Zero Trust concepts, such as identity-centric security, continuous verification, and least privilege access.
  • Experience onboarding and normalizing logs from multiple data sources (e.g., Active Directory, firewalls, EDR tools, cloud platforms).
  • Experience with automation and scripting (Python, Bash, or PowerShell).Working knowledge of Linux system administration and security hardening.
What Sets You Apart
  • Active Secret clearance
  • Experience implementing or supporting Zero Trust Architecture (ZTA) in a DoD or federal environment.
  • Familiarity with frameworks such as NIST 800-207, RMF, and MITRE ATT&CK.
  • Experience with Splunk Enterprise Security (ES) and/or ITSI.
  • Knowledge of identity and access management (IAM), multi-factor authentication (MFA), and endpoint security integration.
  • Splunk certifications (e.g., Splunk Enterprise Certified Admin, Splunk Core Certified Power User).
  • Experience with cloud platforms (AWS, Azure, or GovCloud) and their integration into Splunk.
Physical Requirements

While performing the duties of this job, the employee is regularly required to:

  • Sit for extended periods of time and work at a computer workstation
  • Use hands and fingers to operate keyboards, mice, and other input devices
  • Communicate effectively, both verbally and in writing
  • Specific vision abilities required may include close vision, distance vision, depth perception, and the ability to adjust
  • Stand, walk, bend, or reach; Access equipment located in data centers, offices, or under desks
  • Lift and/or move equipment weighing up to 25 pounds

Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions, in accordance with the Americans with Disabilities Act (ADA).

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Splunk Systems Administrator
Splunk Systems Administrator

CSA Global LLC • Pensacola (FL)

On-site
USD 95,000 - 160,000
Zero-Trust Splunk Admin - Secret Clearance, Pensacola
Zero-Trust Splunk Admin - Secret Clearance, Pensacola

CSA Global LLC • Pensacola (FL)

On-site
USD 95,000 - 160,000
Splunk Systems Administrator - Zero Trust Security Engineer
Splunk Systems Administrator - Zero Trust Security Engineer

Client Solution Architects • Pensacola (FL)

On-site
USD 90,000 - 130,000
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • College Park (MD)

On-site
USD 80,000 - 110,000
Free Platinum-Level Medical/Dental/Vision coverage
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+2
Senior Splunk Security Engineer
Senior Splunk Security Engineer

Unity Technologies Corporation • Columbus (OH)

On-site
USD 110,000 - 160,000
Senior Principal Cyber Security Engineer
Senior Principal Cyber Security Engineer

International Association of Plumbing and Mechanical Officials (IAPMO) • Chantilly (VA), Northern (KY)

Hybrid
USD 120,000 - 180,000
Splunk Cyber Security SME
Splunk Cyber Security SME

PlanIT Group, LLC • Reston (VA)

On-site
USD 120,000 - 160,000
Senior Splunk Security Engineer
Senior Splunk Security Engineer

Unity Technologies Corporation • Richmond (VA)

On-site
USD 110,000 - 140,000
Senior Splunk Cyber Security Engineer
Senior Splunk Cyber Security Engineer

MANTECH • Chantilly (VA)

On-site
USD 120,000 - 150,000
Cybersecurity Analytics Systems Administrator
Cybersecurity Analytics Systems Administrator

Peraton • Tampa (FL)

On-site
USD 66,000 - 106,000
Health, dental, vision
401(k)
PTO and company holidays
+1