Sr. Splunk / SIEM Engineer (TS Required)

augustschell

Alexandria (VA)

Hybrid

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

August Schell is seeking a Senior Splunk/SIEM Engineer in Alexandria, VA, to support a Department of Defense customer. This hybrid role involves deploying and maintaining large-scale Splunk environments, requiring strong problem-solving and communication skills.

The ideal candidate needs a Bachelor’s degree in computer science and at least five years of experience in Splunk administration. A current Splunk Administrator Certification and an Active Top Secret clearance are mandatory.

Qualifications

  • 5+ years of experience in Splunk administration or engineering roles.
  • Must hold a current Splunk Administrator Certification.
  • Active Top Secret clearance is required.

Responsibilities

  • Deploy and maintain complex Splunk clusters.
  • Develop advanced Splunk dashboards and queries.
  • Collaborate with cybersecurity teams for integration.

Skills

Troubleshooting complex systems
Creating custom dashboards
Managing Splunk clusters
Cybersecurity experience
Problem-solving skills

Education

Bachelor’s degree in computer science or related field

Tools

Splunk
Ansible
Terraform

Job description

Position Summary

August Schell is seeking a Senior Splunk/SIEM Engineer with advanced hands‑on experience in designing, deploying, and maintaining large‑scale Splunk environments. This role requires strong technical capabilities in troubleshooting complex system issues, creating custom dashboards, and managing Splunk clusters aligned with best practices. The candidate will support a Department of Defense customer from the Mark Center in Alexandria, VA (hybrid role).

Minimum Qualifications
  • Bachelor’s degree in computer science, Information Systems, Information Assurance or other relevant field.
  • At least five (5) years of experience in Splunk administration or engineering roles.
  • Knowledge of Splunk architecture, deployment models, and indexing best practices.
  • At least ten (10) years of overall Cybersecurity experience.
  • At least five (5) years of SIEM experience.
  • Experience with vulnerability scanning, STIGs, database tuning, and network virtualization technologies.
  • Proficiency in creating custom dashboards and advanced queries.
  • Must hold a current Splunk Administrator Certification.
  • Must possess a valid DoD 8570 IAT-II certification (ex. Security+).
  • Active Top Secret clearance is required; must be able to maintain a Top Secret clearance.
  • Strong problem‑solving skills and ability to work independently or within a team.
  • Excellent written and verbal communication skills.
Stand Out With
  • DoD 8570 CSSP Analyst Certification desired.
  • Familiarity with DevOps and automation tools such as Ansible or Terraform.
  • Knowledge of compliance frameworks and reporting (RMF, NIST 800‑53).
  • Experience with Enterprise Security (ES) and/or ITSI modules within Splunk.
  • Experience with Elastic.
  • Familiarity with Linux and Windows server environments.
Essential Duties and Responsibilities
  • Deploy, configure, and maintain complex Splunk clusters across varied hardware platforms.
  • Develop and optimize advanced Splunk dashboards and queries to support mission‑critical operations.
  • Troubleshoot and resolve issues within large‑scale, complex Splunk environments.
  • Implement best practices for indexing, data transformation, and system architecture.
  • Collaborate with cybersecurity and network teams to integrate Splunk with enterprise monitoring solutions.
  • Support vulnerability and STIG scanning operations and interpret outputs for system compliance.
  • Manage virtual environments including VRFs and VLAN.
  • Perform system updates, patching, and ensure compliance with DoD cybersecurity requirements.
  • Document configurations and operational procedures for audit and continuity purposes.
Physical Demands and Work Environment
  • Prolonged periods of sitting at a desk and working on a computer.
  • Work is primarily performed on‑site (Alexandria, VA) at the customer site 3 days a week; remote work permitted 2 days a week.
  • Standard in‑office conditions apply, though the role may require adapting to secure or compliance‑sensitive environments as needed.
  • Minimal distractions and noise levels typical of a secure government office and/or home office apply.
Note

This job description in no way states or implies that these are the only duties to be performed by the employee(s) of this position. Employees will be required to follow any other job‑related instructions and to perform any other job‑related duties requested by any person authorized to give instructions or assignments. All duties and responsibilities are essential functions and requirements and are subject to possible modification to reasonably accommodate individuals with disabilities.

Equal Employment Opportunity

August Schell Enterprises Inc. is an Equal Employment Opportunity Employer. We are committed to providing a workplace that is free from discrimination and harassment based on race, color, religion, sex (including pregnancy, sexual orientation or gender identity), national origin, age, marital status, disability, protected veteran status or any other characteristic protected by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk/SIEM Engineer - DoD (Hybrid, TS)
Senior Splunk/SIEM Engineer - DoD (Hybrid, TS)

augustschell • Alexandria (VA)

Hybrid
USD 100,000 - 130,000
Splunk Consulting Engineer (Top Secret) - Onsite, DC
Splunk Consulting Engineer (Top Secret) - Onsite, DC

August Schell • Washington

On-site
USD 120,000 - 170,000
Splunk Consulting Engineer (Top Secret) - Onsite, DC
Splunk Consulting Engineer (Top Secret) - Onsite, DC

augustschell • Washington

On-site
USD 140,000 - 190,000
Splunk Consulting Engineer (Top Secret) - Onsite, DC
Splunk Consulting Engineer (Top Secret) - Onsite, DC

AUGUST SCHELL ENTERPRISES, INC. • Washington

On-site
USD 100,000 - 130,000
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • College Park (MD)

On-site
USD 80,000 - 110,000
Free Platinum-Level Medical/Dental/Vision coverage
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+2
Splunk Consulting Engineer (Top Secret) - Onsite, DC
Splunk Consulting Engineer (Top Secret) - Onsite, DC

August Schell • Washington

On-site
USD 100,000 - 130,000
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • Chesapeake (VA)

On-site
USD 110,000 - 160,000
Free Platinum-Level Medical/Dental/Vis
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+4
Cybersecurity Engineer 4 - SIEM / Splunk Engineer
Cybersecurity Engineer 4 - SIEM / Splunk Engineer

Kinsley Power Systems • Columbus (OH)

On-site
Security Information Event Manager (SIEM) Administrator
Security Information Event Manager (SIEM) Administrator

castaliasystems • Waipahu (HI)

On-site
USD 120,000 - 124,000
Splunk EngineerFull-timeEmployees work in a hybrid mode
Splunk EngineerFull-timeEmployees work in a hybrid mode

Ashburn Consulting LLC • Leesburg (VA)

On-site
USD 120,000 - 150,000