Splunk Engineer/Architect

Splunk Engineer/Architect


Position Location:  Fayetteville, NC; Tampa, FL; Crystal City, VA; and other National Capital Region locations.

 
Required Certification: Current Splunk Certified Architect Certification
Clearance Required: TS/SCI This role requires the ability to design, architect and implement Splunk solutions in support of cybersecurity and IT operations analysts and data scientists.  Customers may exist within the government (Federal, state, or local) and may require a US Government personnel security clearance.  This role’s focus is primarily on engineering, architecting, maintaining, and monitoring a large Splunk deployment in a distributed and clustered environment.  A key aspect of this job will be to help build and direct the Splunk technical capability.  The successful candidate will have experience in architecting, implementing, and using Splunk solutions and applications to integrate data feeds and create content in a distributed computing environment. The candidate must have robust Splunk experience and be able to work collaboratively with diverse end users and a geographically distributed team

Responsibilities / Duties:


•    Designs new Splunk deployments based on customer requirements; aid customers in refining existing Splunk deployments while
applying Splunk best practices
•    Deploys Splunk in clustered and non-clustered environments (based on customer needs; includes indexer clusters and search
head clusters)
•    Manages Splunk knowledge objects (Apps, Dashboards, Saved Searches, Scheduled Searches, Alerts)
•    Deploys Splunk Enterprise Security in support of Security Operations Center activities at customer sites
•    Develops custom Splunk apps to meet customer needs in a variety of domains: IT security, financial, IT ops, human resources,
physical security, etc

.
Required Skills:


Must have strong Linux system administration and engineering skills; must be very comfortable administering servers from the
command line and working with configuration files. (Ansible Automation, Python, CentOS 7, RHEL 7)
• Strong skills with a scripting language; Python preferred, JavaScript and/or Perl also valuable • Comfortable working with bash, PowerShell, and batch scripts; ability to develop scripts in these languages to support Splunk
deployments • Strong experience and expertise engineering Splunk solutions for a variety of customers • Experience in building Splunk Technology Add-ons and configuring field extractions for various data sources • Experience deploying/managing Splunk indexer clusters and search head clusters • Deployment experience with Splunk Enterprise Security and/or Splunk IT Service Intelligence premium solutions • Strong understanding of the underlying Splunk infrastructure and components (lookups, modular inputs, standard inputs,
relationships between varying configuration files, etc.) • Experience working with other big data analytics solutions (Elastic Stack, Palantir, HP ArcSight, etc.) is a plus • Ability to work collaboratively with a globally distributed team • Strong sense of self-motivation; ability to identify problems and develop solutions • Ability and willingness to learn new things • Willingness to travel up to 50% throughout the year to customer locations • Hands-on experience with Linux-based operating systems to include CentOS, Red Hat, and Kali Linux • Hands-on system engineering experience: designing, building and troubleshooting experience
• System troubleshooting experience • Build and configuration management experience to include Patch Management experience • Creative problem solving • Ability to remain on task - self-motivated and a strong communicator

Education / Certification Requirements:


•    Current Splunk Certified Architect Certification required; Splunk Accredited Engineer (formerly Splunk Certified Consultant  II)
highly desired
•    DoD 8570 certification in the IAT Level III and/or CNDSP tier (CISSP or CASP, and CEH) or obtain within six months of
employment
•    3+ years experience with Splunk in a distributed, enterprise environment
•    7+ years experience in a technical IT position involving systems administration and/or systems engineering
•    Bachelor’s degree in related IT field, or equivalent experience

Must hold a TS/SCI clearance


NOTE: To all recruitment and staffing agencies: SOFTACT does not accept agency resumes or soliciting of your services. Please do not
forward resumes to our jobs alias, SOFTACT employees or any other company location. SOFTACT is not responsible for any fees
related to unsolicited resumes or staffing services. Do not attempt to solicit your services. Thank you.
 
 

Leave your comments

Post comment as a guest

0
terms and conditions.

Comments