
Senior Splunk Engineer
Posted Aug 4

Posted Aug 4
This is a fully remote position, open to applicants in United States.
• Engineer, design, implement, integrate, enhance, and sustain the Splunk SIEM infrastructure along with associated applications, integrations, apps, and interfaces.
• Implement Splunk products, applications, reports, alerts, and dashboards utilizing SDLC methodologies and industry best practices.
• Enhance infrastructure efficiency by linking additional enterprise data sources to Splunk Enterprise.
• Create change-management strategies and lead the prototyping and testing of new features and solutions.
• Oversee and monitor Linux-based on-premises server infrastructure, including configuration and software updates.
• Develop, maintain, and optimize both internal and external SIEM components.
• Supervise the optimization, operation, and health of Splunk components and data-source connections.
• Offer technical consulting, advanced technical design, specifications, and planning support.
• Guide Tier II technicians and facilitate technical discussions related to SIEM and SIEM data connections.
• Share expertise with junior security architects and engineers while recommending training opportunities.
• Implement industry best practices and innovative concepts to consistently enhance the Splunk environment.
• Support federal clients by providing troubleshooting, documentation, system remediation, and operational suggestions.
• Bachelor's degree in Computer Science, Management of Information Systems, Cybersecurity, or a related Math or Science field.
• At least six (6) years of experience in IT infrastructure, networking, architecture, administration, or security.
• Six (6) years of Splunk proficiency, including a minimum of three (3) years focused on large-scale enterprise solutions.
• Certified Splunk Architect certification is mandatory.
• Capability to obtain, maintain, and access classified information at the Public Trust level.
• Senior-level expertise in SIEM front-end and back-end operations and configurations.
• Extensive knowledge of Splunk Enterprise Security and CIM compliance.
• Profound understanding of Splunk Risk Based Alerting (RBA).
• Comprehension of data flows and interconnections among various systems within network environments.
• In-depth knowledge of Linux-centric system back-end engineering and administration.
• Significant experience with SIEM systems and security event correlation.
• Familiarity with Splunk premium applications, including Enterprise Security.
• Experience in architecting, developing, deploying, and configuring tailored technical add-ons.
• Ability to work independently with minimal supervision while providing accurate and detailed documentation.
• Strong troubleshooting, written, verbal, and communication skills.
• Experience in Perl, Linux shell scripting, and Regex is highly desirable.
• Additional Splunk certifications, CEH, CySA+, GSEC, CISM, CCNA, Security+, Server+, Linux+, or Cloud+ are advantageous.
• Medical insurance
• Dental insurance
• Vision insurance
• Company life insurance
• Short-Term and Long-Term Disability Insurance
• 401(k) with immediate vesting
• Professional Development Assistance
• Legal Aid Assistance Program
• Family Planning / Fertility Assistance
• Personal Time Off (PTO)
• Observance of Federal Holidays
• Employee Assistance Program (EAP)
• Training and Development Opportunities
Flagler Health
VF Corporation
Burlington Helping Burlington
Magnus Medical
Get handpicked remote jobs straight to your inbox weekly.