SIEM Engineer / Splunk Certified Administrator - Security Clearance Required

WOOD Consulting Services, Inc
Annapolis Junction, Maryland
Full-time

Overview

SIEM (Security Information & Event Management) Engineer / Splunk Certified Admin

woodcons.com

Security Clearance Requirements :

This position requires candidates to be U.S. Citizens and possess a TS / SCI Security Clearance with an appropriate Polygraph.

Updated within the last five (5) years.

Responsibilities

The selected candidate will be responsible for configuring the collection, parsing, correlation, and visualization of events for a critical operational system.

She / he will demonstrate strong skills in system administration, log management, event correlation, and threat detection and will support building and maintaining a system that analyzes collected data and derives facts, inferences, and projections to determine if the systems being monitored are operating normally.

The individual will work on a team responsible for configuring the systems which support analysts and end users. The successful candidate will support the collection and extraction of data used to refine existing and new reports, analytics, and dashboards, and will be involved with the drafting and creation of reports and dashboards based on end user requirements.

She / he will also support the integration of resources across teams to better define the audit data being collected to eliminate false positives and false negatives from the data.

Qualifications

Basic Qualifications

  • Must have Splunk Enterprise Certified Admin Certificate or higher.
  • At least 8 years of related experience.
  • At least 2 years of experience with one or more of the following : StealthWatch, TripWire, Zenoss, ArcSight, Splunk.
  • Experience in design, implementation, and support of Splunk core components, including : indexers, forwarders, search heads, and cluster managers.
  • Experience with configuration and administration of Splunk ingestion and forwarding for new and existing applications and data.
  • Experience with troubleshooting Splunk dataflow issues between the various Splunk core components.
  • Experience configuring and deploying data collection for a variety of operating systems and networking platforms.
  • Experience creating Dashboards and Analytics within SIEM tools.
  • Experience working with monitoring systems supporting auditing, incident response, and system health.
  • Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting steps.
  • The ability to troubleshoot issues with log feeds, search time, and field extractions.
  • The ability to troubleshoot problems related to data solutions.

Preferred Qualifications

  • Bachelor's Degree in Computer Science, Engineering, Information Assurance, or a related discipline.
  • Network Security Operations Center (SOC) experience.
  • Experience and talent in data visualization.
  • Experience creating workflows for Incident Response within a SIEM Tool.
  • Security+ Certification.
  • GIAC Certified Incident Handler Certification.
  • GIAC Cyber Threat Intelligence Certification.
  • Cybersecurity certifications.
  • Formal SIEM training.
  • Experience working on an Agile team / program.

WOOD is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

30+ days ago
Related jobs
Promoted
Northrop Grumman
Baltimore, Maryland

Requisition ID: R10164124 * *Category:* Engineering * *Location:* Baltimore, Maryland, United States of America * *Clearance Type:* Secret * *Telecommute:* No- Teleworking not available for this position * *Shift:* 1st Shift (United States of America) * *Travel Required:* Yes, 10% of the Time * *Rel...

Promoted
SAIC
Linthicum Heights, Maryland

As an Information Assurance Engineer, you will identify, analyze, and recommend potential network and security architectures for the underlying infrastructure, on which the customer will develop, test, and operate lifecycle of physical production from ordering through production and distribution. We...

Promoted
Nightwing
Annapolis Junction, Maryland

As a prospective employee of Nightwing, you’ll have the chance to contribute to our continued success and shape the future of our cybersecurity, intelligence, and services offerings. The Systems Administrator will provide support for implementation, troubleshooting and maintenance of Information Tec...

Promoted
Northrop Grumman
Fort Meade, Maryland

Requisition ID: R10162777 * *Category:* Information Technology * *Location:* Fort Meade, Maryland, United States of America * *Clearance Type:* Polygraph * *Telecommute:* No- Teleworking not available for this position * *Shift:* 1st Shift (United States of America) * *Travel Required:* Yes, 10% of ...

Promoted
Lockheed Martin
Annapolis Junction, Maryland

TKO provides systems engineering, software development, data science and cloud development and engineering services to the Cyber Infrastructure Solutions customer. Bachelor’s degree in Computer Science or related discipline from an accredited college or university is required, plus twenty (20) years...

Promoted
Absolute Business Solutions Corp (ABSC)
Linthicum Heights, Maryland

Experience Required for this Role:. Education Required for this Role:. ABSC’s employees – including software developers, multi-disciplined intelligence analysts, technology protection engineers, program support personnel, and specialists in cloud, data science, AI/ML, and cyber – diligently support ...

Promoted
Lockheed Martin
Hanover, Maryland

As a cyber security professional at Lockheed Martin, you’ll protect the networks that our citizens and the world depend upon each minute: Financial assets. Here, you’ll work with cybersecurity experts on the forefront of threat protection and proactive prevention. ...

Northrop Grumman
Linthicum Heights, Maryland

Requisition ID: R10164523 * *Category:* Engineering * *Location:* Linthicum, Maryland, United States of America * *Clearance Type:* Secret * *Telecommute:* No- Teleworking not available for this position * *Shift:* Days (United States of America) * *Travel Required:* Yes, 10% of the Time * *Relocati...

Career Development Partners
Linthicum Heights, Maryland

Bachelor’s degree in Electrical Engineering or Computer Engineering from an accredited college or university is required. Bachelor’s degree in Electrical Engineering or Computer Engineering from an accredited college or university is required. Development of NSA TYPE 1 security products using NSA IA...

V2X
Columbia, Maryland

We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. V2X’s National Security Solutions (NSS) has an immediate opportunity for a Senior Staff Officer with a background in Special Access Program (SAP) business operations. V2X’s National Sec...