P

Splunk Enterprise Security Engineer

Peraton
Full-time
On-site
Woodlawn, Maryland, United States
$104,000 - $166,000 USD yearly

Responsibilities

We are looking to add a Splunk Enterprise Security Engineer to our team of professionals.

 

What you''ll do:

  • Alert use case development
  • Splunk Enterprise Security administration and management
  • Configure notable event actions, action menus and Adaptive Responses
  • Data onboarding and data ingestion normalization recommendations
  • Strong knowledge of security risk procedures, security patterns, authentication technologies and security attack pathologies
  • Develop, evaluate, and document, specific metrics for management purpose
  • Write complex code to install and manage the Splunk enterprise development
  • Performing maintenance and optimization of existing clustered Splunk deployments
  • Create Dashboards to monitor the traffic volumes, response times, errors, and warnings across various data centers
  • Monitor the web portals, log files and databases
  • Provide debugging and monitoring capabilities
  • Design and Develop Splunk for routine use
  • Solve complex Integration challenges and debug complex configuration issues
  • Consult with stakeholders to establish, maintain and refresh their strategic direction in cloud adoption
  • Become knowledgeable on the CDM technical requirements for the federal government’s CDM program. Understand your role in CDM activities.
  • Involved in a wide range of security issues including architectures, firewalls, electronic data traffic, and network access.
  • Design, manage, and maintain enterprise SIEM infrastructure to improve data ingestion processes, including architectural work on data pipelines to ensure optimal flow of data.
  • Maintenance, configuration and implementing products, appliances and devices on the enterprise network
  • This position is based out of Woodlawn, MD - you must reside close enough to office in case customer requests you to work on site.

Qualifications

Basic Qualifications:

 

  • Bachelor’s degree and 8 years of experience or 12 years of experience in lieu of a degree
  • At least 4 years’ experience using customer-focused Splunk Enterprise Security SIEM engineering background - SME knowledge of ES v4.7
  • At least 4 years’ experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments
  • At least 4 years of experience with:
    • In-depth knowledge of designing, upgrading, maintaining and implementing network devices on a large-scale enterprise
    • Direct experience with Splunk Engineering and data integration
    • Prior SIEM data modelling experience on similar platform at scale (>50 servers)
    • Scripting and development skills in Python/Perl with deep comprehension of regular expressions
    • Coordination and communication with other remotely deployed team members
    • Developing documentation with processes and procedures
    • Proposing, implementing automation features in a large enterprise environment
  • At least 3 years of experience with Linux and SQL/ODBC interfaces
  • At least 2 years of experience in app interface development, using REST API’s
  • Hold active Splunk Core Certifications of at least Splunk Architect
  • Minimum of 3 year of experience in developing and tailoring reporting from network security tools.
  • Must be able to obtain and maintain a US Public Trust clearance
  • Must reside close to Woodlawn, MD for days in office. This role is hybrid.

Preferred Qualifications:

  • Experience with Splunk Common Information Model (CIM) and Enterprise Analytic
  • Strong problem-solving abilities with an analytic and qualitative eye for reasoning under pressure.
  • Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision
  • Knowledge of Cloud Services such as AWS, Azure, Office365
  • Ability to script in one more of the following computer languages Python, Bash, Visual Basic or Powershell
  • Experience in automating Splunk Deployments and orchestration with in a Cloud environment

 

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position based on experience and other factors.