Enable America Jobs

Enable America Logo

Job Information

GCyber Splunk Administrator in Arlington, Virginia

GCyber is hiring a Splunk Administrator, to support the Compartmented Enterprise Services Office (CESO). With the CESO program, the Defense Information System Agency (DISA) is looking to transform the existing Secure Web Services (SWS) environment, which provides security information sharing to the community, into a more mature service offering to meet the DoD and intelligence communities.

Due to the nature of work this role entails, telecommuting is not allowed and will require the employee to report full-time onsite.

As a Splunk Administrator, you will:

 

  • Design efficient and reusable reports and dashboards to integrate multiple mission applications' health, performance and operational data systems into Splunk.

  • Utilize REST API, SplunkJS Stack, and other developer tools to integrates customer applications with the Splunk platform.

  • Direct and monitor reporting in Splunk dashboards to reflect compliance status of all directed information assurance vulnerability alerts and bulletins, Computer Tasking Orders, and other compulsory cyber security directives.

  • Create front-end automated data visualization services using Splunk.

  • Develop viewable Splunk dashboards to provide visibility into ingested log data.

  • Develop alerts that trigger/activate on configured setting to deploy or sends a note/email/attachment to a particulate destination email or groups.

  • Develop security rules (alerts) that trigger on anomalous activities or threat detections.

    Minimum Qualifications and Experience:

  • Active Top Secret Clearance required to start, ability to hold TS/SCI. Obtaining and maintaining CI/Poly will be required in the future.

  • BS and 4+ years of prior relevant experience. Additional experience may be considered in lieu of degree.

  • DoD 8570 IAT II certification (i.e., Security+, CySA+, CCNA-Security, CND, GICSP, GSEC, SSCP)

  • Splunk Enterprise Certified Architect or equivalent certification or higher.

  • Excellent written and oral communications skills and be able to appropriately present highly technical material to both technical and non-technical audiences.

  • Experience configuring and maintaining the tool in a multi-tenant environment.

  • Knowledge of programming languages such as Python, Java, JavaScript, C#

  • Experience with AWS Cloud tools and services.

    GCyber is an Equal Opportunity Employer. This means you don’t have to worry about whether your application process will be fair. We consider all applicants without regard to race, color, religion, age, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, veteran status, or disability.   

    For future job notifications please follow GCyber on LinkedIn. https://linkedin.com/company/gcyber

     

Powered by JazzHR

DirectEmployers