Cyber Defense
Information Assurance
Information Technology Security
System Security
Systems Engineering
Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise to protect our country from threats.
Enterprise Logging Solution Lead
The U.S. Customs and Border Protection (CBP) Cyber Security Directorate (CSD) is leading one of the most comprehensive, mission critical cybersecurity operations in the federal government—protecting the digital infrastructure that safeguards America’s borders. This multifaceted program spans 24/7/365 Security Operations Center (SOC) monitoring, advanced threat intelligence, forensics, incident response, cloud and network security engineering, zero trust modernization, vulnerability assessment, and enterprise-wide risk and compliance activities. Key Leads on this program will guide teams at the forefront of national security, supporting sophisticated cyber operations that defend vital systems, enable secure mission execution, and counter rapidly evolving threats. You will find this work uniquely impactful, fast-paced, and deeply collaborative, offering the opportunity to lead high performing technical teams, shape CBP’s cybersecurity strategy, and contribute directly to the protection of the nation.
MEANINGFUL WORK AND PERSONAL IMPACT
As the Enterprise Logging Solution (ELS) Lead, you will:
Guide the evolution of CBP’s enterprise-wide SIEM and logging architecture, one of the most critical capabilities supporting 24/7 SOC operations.
Shape how CBP ingests, analyzes, and operationalizes massive volumes of security telemetry across cloud and on-prem environments, enabling threat detection, audit readiness, and real time security insights.
Engineer advanced logging pipelines, lead implementations of new data sources, develop dashboards used by mission owners and executives, and modernize SIEM capabilities that directly support national security operations.
WHAT YOU’LL NEED TO SUCCEED
Secret with Top Secret eligibility clearance required.
Minimum of five (5) last years of experience serving as a senior Certified Splunk Administrator or Architect.
Understanding and practical experience in applying project management principles.
Experience with interconnected, heterogeneous systems.
Strong understanding of industry standards and technologies with experience in the application supporting a Federal Government security operations organization.
Experience in an enterprise IT environment as an applications or systems administrator working in Windows and Linux environments.
Experience with Linux or Windows scripting languages and automation.
Strong networking background and security background.
Experience with cloud orchestration tools and a strong understanding of Amazon Web Services cloud.
One of the following certifications (listed in order of preference): Certified Splunk Architect (II) or Certified Information System Security Professional (CISSP)
EDUCATION AND EXPERIENCE
OWN YOUR OPPORTUNITY
Explore a career in cyber security at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your passion for securing the mission.
5 + years of related experience
* may vary based on technical training, certification(s), or degree
Certified Information Systems Security Professional (CISSP) | International Information System Security Certification Consortium (ISC2) - International Information System Security Certification Consortium (ISC2)
Splunk Enterprise Certified Architect | Splunk - Splunk
10-25%
U.S. Citizenship Required
The likely salary range for this position is $136,000 - $184,000. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.
We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.
Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.
Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans