SIEM Data Onboarding Engineer - Active TS/SCI with CI Poly
The Splunk Engineer is responsible for managing and enhancing our Splunk environment to ensure seamless data ingestion, analysis, and visualization. This role demands a deep understanding of Splunk architecture, data onboarding, and user management to support business needs and security operations.
- Design, deploy, and manage Splunk infrastructure
- Develop and maintain Splunk dashboards, queries, and alerts
- Integrate Splunk with various data sources to ensure comprehensive data ingestion
- Monitor and troubleshoot Splunk performance issues
- Collaborate with cross-functional teams to gather requirements and provide Splunk solutions
- Implement and enforce best practices for Splunk data management and retention
- Provide user training and support for Splunk-related activities
Requirements
- 2+ years of experience in managing and configuring Splunk, 2+ years of experience in Splunk architecture: indexers, search heads, forwarders, deployment server and 1+ year with Splunk REST API for automation and operational tasks
- 2+ years configuring Cribl sources, destinations, routes and collectors
- 2+ years building pipelines to parse, normalize, enrich, mask/dedup, and route data to Splunk and other targets and
- 2+ years authoring/maintaining props.conf, transforms.conf, inputs.conf, outputs.conf and packaging Apps/TAs
- 2+ years in Linux and Windows administration: file paths, services, permissions, and log locations
- 1+ year with basic familiarity with Cribl Redmap/JavaScript functions
- 1+ year with regex skills for field extraction and event breaking
- Active TS/SCI clearance; willingness to take a polygraph exam
- Associate’s degree and 5+ years of experience supporting IT projects and activities, OR Bachelor’s degree and 3+ years of experience supporting IT projects and activities, OR Master’s degree and 1+ years of experience supporting IT projects and activities, OR 10+ years of experience supporting IT projects and activities in lieu of a degree
- DoD 8570 IAT Level II certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND certification
- Must obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification prior to start date
Additional Qualifications:
- 1 year experience with DISA STIGs or other organizational hardening standards working in regulated environments
- 2+ years Networking fundamentals: TCP/UDP, TLS, syslog transport, firewall ports and common transport issues
- 2+ years in basic troubleshooting with tools such as tcpdump/wireshark, basic vi/vim usage, setfacl, SELinux
- Knowledge of common log formats: syslog, Windows Event, JSON, CSV, XML
- Proficient in SPL for validation, troubleshooting and basic dashboards.
- Experience with scripting languages such as Python, Bash, or PowerShell
- Strong communication skills
- Load-Balancer fundamentals
- Knowledge of Git for code version control
- Knowledge of Ansible playbooks
- Knowledge of Python scripting
Benefits
Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.
Why ENS?
- Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
- 401k Contribution from Day 1
- PTO + 11 Paid Federal Holidays
- Long & Short Term Disability Insurance
- Group Term Life Insurance
- Tuition, Certification & Professional Development Assistance
- Workers’ Compensation
- Relocation Assistance
Recommended Jobs
Business Development Director - Airbus Space Products
Business Development Director - Airbus Space Products page is loaded## Business Development Director - Airbus Space Productslocations: Herndon Area, VAtime type: Full timeposted on: Posted Todaytime l…
Certified Medical Assistant CMA- Orthopedic Clinic- Days - VCU Health - Richmond, Virginia, United States
**$2500 Sign-On Bonus for offers accepted by February 28, 2026. Terms and Conditions apply** This position supports the Orthopedic Clinic at the Adult Outpatient Pavilion. While we are primarily loo…
Counterintelligence Cyber Threat Analyst
MANTECH seeks a motivated, career and customer-oriented Counter Intelligence Cyber Threat Analyst to join our team in Springfield, VA or St. Louis, MO. Responsibilities include but are not lim…
Data Scientist
Job Title: Data Scientist LOCATION: ARLINGTON VA / WASHINGTON DC (DUE TO CUSTOMER REQUIREMENTS YOU MUST BE LOCATED IN THE GREATER WASHINGTON DC AREA) Workplace: Hybrid Clearance Required: Mu…
Senior Associate, Card & Expense
Overview Senior Associate, Card & Expense The Payment and Travel Solutions (PATS) team at Capital One is seeking a dedicated and disciplined process professional who excels in a team environme…
Principal Product Designer AI-driven SaaS & Geospatial
A leading technology firm in Virginia is seeking a Principal Product Designer to lead complex and strategic design initiatives. The role involves advocating user-centered design solutions and driving …
Associate Veterinarian
Veterinarian position in VA, South of Washington DC Our client is an AAHA-accredited, multi-doctor practice in Virginia. This is a 24/7 multi doctor General and Emergency Practice. This 15 veter…
Dishwasher
HomeGrown is different from any other restaurant job. We’ve taken the idea of everyday kindness and made a part of everything we do: The Schedule : We arrive to work early, but we're off by at leas…
Field Chief Technology Officer
Field Chief Technology Officer page is loaded## Field Chief Technology Officerlocations: Chantilly, VAtime type: Full timeposted on: Posted Todayjob requisition id: REQ-3266# **Field Chief Technology …
Senior Director, Cardiovascular & Interventional Radiology
A leading nonprofit healthcare provider in Virginia is seeking a Director of Cardiovascular and Interventional Radiology. The role involves collaborating with medical directors, overseeing service del…