Splunk Cybersecurity SME

Clearance Level
None
Category
Cyber and IT Risk Management
Location
Remote, Working from the USA
Key Skills For Success

REST API Development

Search Processing Language (SPL)

Splunk Enterprise Security

REQ#: RQ214225
Public Trust: MBI (T2)
Requisition Type: Pipeline
Your Impact

Own your opportunity to work alongside federal civilian agencies. Make an impact by providing services that help the government ensure the well being of U.S. citizens.

Job Description

Advance your career while impacting our national security in cyber as a Splunk Cyber Security Subject Matter Expert (SME) at GDIT. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government.

MEANINGFUL WORK AND PERSONAL IMPACT
As a Splunk Cyber Security (SME), the work you’ll do at GDIT will be impactful to the mission of USPS. You will play a crucial role on our team to analyze design, develop, implement, and support code for our government customer, the United States Postal Service.

  • Responsible for designing, deploying, and maintaining on-premises and cloud based Splunk environments to support enterprise-level monitoring, alerting, and reporting
  • Deep expertise in Splunk system architecture, design, implementation, configuration and operational support in a hybrid on-prem Unix/Linux and cloud-based environment
  • Collaborate across DevOps, Security, and IT teams to optimize performance, ensure data integrity, system availability and support mission-critical operations
  • Hands-on experience with a large enterprise wide Splunk environment is mandatory
  • Off-hours and weekend efforts for systems maintenance, upgrades and support may be required from time to time


WHAT YOU’LL NEED TO SUCCEED
Bring your cyber expertise and drive for innovation to GDIT.
The Splunk Cyber Security (SME) must have:

  • Education:
    • Bachelor's Degree in Computer Science or related technical discipline, preferred but not required.
    • NOTE: If resources do not have a relevant college degree, an additional 4 years of relevant work experience is required.
  • Experience:
    • 5+ Years of Splunk Experience Required
    • Manages knowledge objects (fields, extractions, tags, event types, lookups, workflow actions, aliases, macros, and so on) – through automations, scripting, management server functions; to include .conf and .cfg files in scope of the last four Splunk Enterprise versions
    • Experience with Splunk deployment and configuration management in large-scale environments
    • Proficiency in writing complex Splunk queries, dashboards, and alerts using SPL (Search Processing Language)
    • Experience with REST APIs for Splunk and external system integration
    • Ability to analyze and troubleshoot complex data ingestion and parsing issues
    • Designing and developing an automations workflow and dashboard interface for such
    • Self-starter with a service-oriented mindset who will take action, find ways to solve problems, and move projects to conclusion independently
    • Strong problem-solving skills and the ability to translate research insights into practical solutions that address real-world challenges.
    • Strong communication and collaboration skills with the ability to articulate complex technical concepts to both technical and non-technical audiences.
    • Experience in mentoring and guiding junior researchers or team members
  • Preferred Experience:
    • Ability to leverage the Splunk AI Assistant and other AI tools to increase accuracy and efficiency of task and other deliverables
    • Advanced knowledge of Unix/Linux and/or Windows systems administration and troubleshooting
    • Strong scripting skills in Bash, Python, JavaScript, SQL and PowerShell for automation and integration tasks
    • Experience with Splunk upgrades, patching, and performance tuning
    • Proficiency in integrating Splunk with cloud platforms (AWS, GCP, Azure)
    • Understanding of security and compliance requirements and implementation of role-based access controls (RBAC) in Splunk
    • Strong knowledge of logging standards and best practices across application and infrastructure layers
    • Extensive knowledge of defense-in-depth principles, Network and Security architecture, network topology, IT device integrity, and common security elements.
    • Executes new projects as well as data and user onboarding
    • Strong understanding of IT and Cyber industry standards and technologies to include such controls governed by NIST, FISMA, and FedRamp
    • Experience installing and utilizing and developing with the Splunk App for Data Science and Deep Learning.
    • Experience installing and utilizing and developing with the Splunk SOAR Automation toolset
    • Experience or background in the Cybersecurity, Systems/Network Administration or Observability industry
  • Security clearance level:
    • Ability to obtain and maintain a Public Trust clearance and successfully pass a thorough Government background screening process requiring the completion of detailed forms and fingerprinting
    • This position has a U.S. residency requirement. The USPS security clearance process requires the selected candidate to have resided in the U.S. (including U.S. Territories) for the last five years as follows: U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 6 months consecutively in the last 3 years (unless they meet certain exceptions). Non-U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 90 days consecutively in the last 3 years.
  • Role requirements:
    • Remote

GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Flexibility: Full-flex work week to own your priorities at work and at home ***remove if ineligible***
  • Community: Award-winning culture of innovation and a military-friendly workplace


OWN YOUR OPPORTUNITY
Explore a career in cyber at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your focus on defending and protecting what matters.

#zxc726 #Splunk

Work Requirements
Years of Experience

5 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

Travel Required

Less than 10%

Salary and Benefit Information

The likely salary range for this position is $147,292 - $199,278. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
View information about benefits and our total rewards program.

About Our Work

We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans