Job Description
Job Description
Key Elements of this Role :
- May need to be on location in the DMV area
- Must have a TS clearance or higher
- Must have a SCCC (Splunk Core Certified Consultant)
Who We Are :
At Qmulos, we’re not just about cybersecurity and compliance, we’re about making them smarter and faster, in this digital world! We’ve created innovative platforms like Q-Compliance and Q-Audit that help organizations across all sectors stay ahead of evolving threats. We use Splunk’s powerful analytics to deliver insights that enhance security and streamline risk management, transforming legacy compliance programs into modern, agile solutions. But what really sets us apart is our stellar culture, which stands as the cornerstone of our success. Our team thrives on collaboration, creativity, and a shared passion for making a real difference. Join us, and be part of a team that’s not only driving change in the industry but having a blast while doing it!
Summary :
A Senior Splunk Engineer excels at their job, exceeding expectations in multiple functional areas. These engineers are very knowledgeable in Splunk Core, and have enough experience and skill to support other and troubleshoot issues in unfamiliar environments on short notice.
Senior Splunk Engineers are highly regarded by customers, and willingly accept corporate assignments that provide new challenges for the individual, and business opportunities for Qmulos. They are model Qmulites who contribute to corporate and cultural aspects of Qmulos.
These engineers will be asked to support engagements of various length, and must therefore be adaptable and organized to efficiently and effectively move from one customer to the next. Typically, a Senior Splunk Engineer must have on the job experience with, and be Accredited in at least 1 Premium Splunk Application (ES, ITSI, UBA, SOAR, Cloud).
Responsibilities :
Enable customer success by providing a well-rounded consulting experience from project kickoff through completion.Operate and maintain the Splunk log management infrastructure and leverage knowledge on a number of security technologies, information security, and networking.Comprehensive experience in interacting with clients, providing security focused log collection solutions using Splunk.Develop security focused content for complex client Splunk deployments, with focus on creation of complex detection, alerting logic and log source on-boarding using custom methods or Splunk common information model (CIM).Develop advanced reports to meet the requirements of key stakeholders and scalable security management tools and processes.Conduct research in areas, including security principles, host and network-based security technologies, machine learning algorithms, and mitigation methods.Automate Splunk deployments, integrations, testing of enterprise systems and services.Create and optimize correlation searches as an (SPL) expert.Establish regular, effective, comprehensive reporting for services engagements in accordance with customer requirementsStrong organizational and time management skillsWillingness to travel if required.Experience configuring a Splunk Premium Application (ES, ITSI, UBA, SOAR, Cloud)A successful track record of supporting multiple long term engagements, and seeing significant tasks through from beginning to endReceived positive commendation from customers for a job well doneOne or more Splunk Premium App Accreditations (ES, ITSI, UBA, SOAR, Cloud)Qmulos Products Accreditations (Q-Compliance and Q-Audit)Required Skills / Abilities :
U.S. Citizenship or Permanent Resident status REQUIRED5+ years of technical consulting or big data analytics experience2+ years of hands-on experience with Splunk, network security and system security, supporting security information and event management tools (SIEMs)2+ years of experience with rule and advanced logic creation within SplunkKnowledge of Splunk and JIRA best practicesExperience with Linux and Windows operating systemsExperience with using scripting languages to automate tasks and manipulate dataExperience with working in a large enterprise environmentExperience with integrating solutions in a multi-vendor environment, including SaaS environmentsExperience with regular expressionsKnowledge of enterprise system and network logging, with a focus on security event loggingKnowledge of Splunk common information model (CIM)Ability to work independently in fast-paced, structured and unstructured environmentsSplunk User, Power User, Administrator Certifications (Ability to achieve Splunk Core Certified Consultant)2+ years of experience in security operationsExperience with enterprise-scale operations and maintenance environmentsExperience with command-line interfaceExperience with Splunk APIExperience with PythonExperience with various security tools, including Wireshark, Nessus, Nmap, Burp, Proxy, or Snort (preferred)Experience with SPL, SQL, and other related search languagesKnowledge of networking protocolsAbility to be a Splunk language (SPL) expertFamiliarity with concepts and implementation of SyslogdKnowledge of virtualization and container tools, including VMware, Parallels, VirtualBox, OpenStack, and DockerKnowledge of configuration management tools, including Ansible, Puppet, Chef, and SaltStackBA or BS degree in CS, IT, Engineering, or a related field; or equivalent professional experience. Advanced degree is a plus.Industry recognized security certifications (security, networking, etc)- preferredWorking knowledge of Splunk Cloud solutionWorking knowledge of AWSActive or ability to keep Top Secret Security ClearanceSalary Range & Benefits
The annual base salary range for this full-time position in the United States is $120,000 - $160,000 and is a good faith estimate only.
In addition to compensation, Qmulos provides a competitive benefits package; including health insurance coverage (medical, dental, and vision), short-term and long-term disability insurance, life insurance, 401(k) retirement benefits, company paid holidays and paid time off (PTO), phone allowances, and tuition reimbursement.
EOE
Qmulos is an equal opportunity employer. Consistent with applicable law, all qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances.
#LI - Remote