Unleash Your Potential
At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customer’s success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.
If this sounds like an environment where you can thrive, keep reading!
We are in search of a Splunk Administrator to join our Defense Enclave Services cybersecurity team at the customer site at Fort Meade, MD.
Leidos has an exciting opportunity for a Splunk Administrator primarily supporting DMA. In this role, a successful candidate will be a Splunk Subject Matter Expert (SME) providing Splunk administration support, including operation and maintenance of the log aggregation and Security Information and Event Management (SIEM) platform for DMA and/or other organizations supported under the DES contract. The Splunk Administrator will perform systems analysis, modify and update systems and related data ingestion parameters based on results of analysis, deploy applications and tools, perform testing of deployed applications and tools, and communicate updates to Cybersecurity Lead and customers, as required.
•Currently possess a DoD Secret security clearance with the ability to obtain and maintain a TS/SCI. (US Citizenship required)
•Establish and maintain configuration and technical support, assist in the technical design process, and provide guidance/direction to customer on how to best get value from Splunk products.
•Maintain, upgrade and troubleshoot SPLUNK servers, clusters and management systems.
•Install, upgrade and maintain required SPLUNK applications and add-ons.
•Provide performance and license tuning for systems and troubleshoot SPLUNK components across multiple network environments.
•Provide solution engineering support to ensure systems and components meet current and future standards.
•Develop, create, deploy, and manage custom SPLUNK monitors, alerts and dashboards.
•Monitor SPLUNK for cluster status, health status, and other issues, and resolve as needed.
•Follow approved DoD, STIG standards and DoD IAVA requirements.
•Manage patching and updates of Splunk hosts and/or Splunk application software.
•Monitor and audit configurations and participate in the Change Management process to ensure that unauthorized changes do not occur.
•Perform data ingestion and visualization for Splunk.
•Build and integrate contextual data into notable events.
•Build dashboards highlighting data anomalies and key trends. Design, develop, recommend, and implement Splunk dashboards and alerts in support of the Incident Response team.
•Develop advanced scripts for the manipulation of data to support analyst requirements.
•Provide recommendations and implement changes to optimize Splunk in the environment.
•Perform integration activities to connect with 3rd party software APIs.
•Recommend innovative solutions to management and key stakeholders.
•Manage automating Splunk deployments and orchestration.
•Bachelor’s degree and 8+years of relevant experience; additional years of experience may be substituted in lieu of a degree.
•At least five (5) years of experience with Splunk implementing and administering Splunk and Splunk Enterprise Security.
•Experience developing in Bash, Perl, Shell, Powershell, SQL, D3, HTML, XML, CSS, Bash, JAVA and/or Python scripts.
•Experience writing Splunk queries in Splunk Programming Language (SPL).
•Certified Splunk Enterprise Administrator.
•8570 IAT-II certification.
•5+ years hands-on experience implementing and administering security solutions, including developing related documentation and artifacts.
•Analytical ability, problem-solving skills, and ability to break down complex problems into actionable steps.
•Experience must include a wide range of work in creating diagrams and documentation with all components that comprise IT systems including network topology.
•Excellent knowledge and experience with regard to IAM, NDR, EDR, SIEM, AI/ML, and other cybersecurity tools and related applications.
•Experience selecting effective methods, techniques, and evaluation criteria to achieve desired outcomes.
•Understanding of federal cybersecurity guidance such as FISMA NIST SP 800-37 - Guide for Applying the Risk Management Framework to Federal Information Systems: a Security Life Cycle Approach and NIST 800-137 - Information Security Continuous Monitoring (ISCM) for Federal Information Systems and Organizations.
Nice to have’s
•Robotic Process Automation/Intelligent Automation experience.
•Certified Splunk Enterprise Security Administrator.
•Certified Splunk SOAR Automation developer.
•Additional certifications demonstrating cybersecurity/technical mastery.
External Referral Eligible
Pay Range:Pay Range $97,500.00 - $150,000.00 - $202,500.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Leidos is a Fortune 500® technology, engineering, and science solutions and services leader working to solve the world’s toughest challenges in the defense, intelligence, civil, and health markets. The company’s 46,000 employees support vital missions for government and commercial customers. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $14.4 billion for the fiscal year ended December 30, 2022. For more information, visit www.Leidos.com.
Pay and Benefits
Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available here.
Securing Your Data
Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at [email protected].
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission.
Commitment to Diversity
All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.