Browse
···
Log in / Register

Splunk Engineer - Active TS/SCI Required

Negotiable Salary

ENS Solutions, LLC

Washington, DC, USA

Favourites
Share

Description

You will work with an expert team focused on implementing and operating next-generation security solutions for government and commercial clients. You’ll use Splunk and integrate it with other state-of-the-art tools like HBSS, Enterprise Security Manager (ESM), Network Security Manager (NSM), NetFlow, and/or Intrusion Detection Systems (IDS) to monitor, detect, and analyze threats. You'll perform hands-on evaluation, implementation, and operation of leading security Cyber defense tools and technologies and apply in-depth defense strategies for large and complex networks to rapidly identify vulnerabilities and threats, prioritizing response actions, including developing effective countermeasures. You’ll support the risk management and security compliance of specified cyber security tools. You'll apply thought leadership to solving complex security challenges in a highly collaborative and innovative work environment. Requirements 3+ years of experience utilizing Splunk Enterprise Experience with deploying, configuring, and performing functional testing and data validation in a Splunk environment Experience with Splunk performing systems administration, including performing installation, configuration, monitoring system performance and availability, upgrades, and troubleshooting in Windows and Linux Server environments Experience creating custom dashboards, writing queries and generating reports, and setting up alerts and notifications Familiarity with DoD Risk Management Framework Top Secret/SCI clearance with the ability to obtain a Counter-Intelligence polygraph HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate’s degree and 5+ years of experience with supporting IT projects and activities, or Bachelor’s degree and 3+ years of experience with supporting IT projects and activities  DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP  Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification prior to start date Optional Qualifications: Ability to ingest and parse logs within Splunk Experience with fields abstraction Experience with data modeling using Splunk Experience with workflows and drilldown query Experience administering Splunk in distributed deployments Experience with performing site surveys, data gathering, and research and analysis regarding deploying and implementing security tools Splunk Certified Power User or other advanced Splunk Certification Experience with DevSecOps and Elasticsearch, Logstash & Kibana (ELK) Possession of excellent oral and written communication skills, including using presentation expertise to convey complex ideas to client and internal staff Possession of excellent problem-solving skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers’ Compensation Relocation Assistance

Source:  workable View Original Post

Location
Washington, DC, USA
Show Map

workable

You may also like

Workable
Global Analytics Engineer (US)
Philadelphia, PA, USA
SRA’s mission is to level up every day to protect our clients and their customers. This begins with our team members and their experience. SRA prides itself on maintaining a culture where team members have a shared sense of support and belonging, consistent with our It’s Personal company value. At SRA, we prioritize transparent career pathing, varied DEI programming and community groups, competitive benefits including mental health support, and an emphasis on a sustainable, healthy, and engaging work culture. SRA has twice been named a Best Place to Work by the Philadelphia Business Journal.  These Essential Functions, Requirements, and Skills are guidelines. If you are a candidate who does not meet this exact job description but can demonstrate excellent organization, attention to detail, professionalism, flexibility, and self-direction in your professional background, we hope you apply. SRA values a diverse workplace and strongly encourages people of all backgrounds to apply.   Summary/Objective     We are looking for a skilled Analytics Engineer to join our CyberSOC engineering team. The ideal candidate will have hands-on experience crafting detection logic using Kusto Query Language (KQL) and a deep understanding of log source telemetry and schema structures.    Key qualifications include:    Proven ability to develop high-fidelity detection content.  Practical experience with at least one Endpoint Detection and Response (EDR) platform.  Proficiency with at least one Security Information and Event Management (SIEM) solution.    This role is ideal for someone passionate about cybersecurity analytics and eager to contribute to a high-impact security operations environment.  Requirements Essential Functions      Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.      Provide operational coverage during standard business hours supporting internal defenders and analysts with:  Responding to inquiries related to Microsoft Sentinel analytics  Assisting clients with Sentinel analytics questions and troubleshooting  Diagnosing and resolving issues with Sentinel analytics  Deploying Sentinel analytics to client environments  Design, develop, and modify Microsoft Sentinel analytics in alignment with requests assigned by the Analytics Engineering Lead, adhering to established processes and quality standards.  Collaborate with the Endpoint Detection and Response (EDR) analytics team to create and maintain detection rules across one or more EDR platforms, including:  SentinelOne  Microsoft Defender for Endpoint  CrowdStrike Falcon  Develop and maintain custom Sentinel functions to enhance rule coverage and search capabilities.  Troubleshoot and resolve issues related to Sentinel analytics and custom Sentinel functions.  Coordinate with the Content Engineering Lead to ensure logging infrastructure is optimized to support both existing and new Sentinel analytics.  Manage the deployment lifecycle of Sentinel analytics, including initial rollout, updates, and troubleshooting deployment-related issues.     Supervisory Responsibility      Not applicable.      Work Environment      This job operates in a professional office environment or remotely as needed/required. This role routinely uses standard office equipment.      Physical Demands      The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employee is regularly required to talk and hear; use hands to finger, handle, or feel; and reach with hands and arms. The employee frequently is required to stand and walk. This is a largely sedentary role.     Candidates with disabilities are encouraged to apply and email careers@sra.io with any questions. Reasonable accommodations may be made to enable disabled individuals to perform the essential functions of this role.      Position Type/Expected Hours of Work      This is a full-time position with 40 working hours expected weekly. Evening and weekend work may be required as job duties demand.      Travel   Willingness to travel.       Required Education and Experience      Punctuality and timely attendance to external client and internal stakeholder needs.  Bachelor’s degree in Information Technology, IT Security, Computer Science, Computer Engineering, or equivalent experience.   Proficient in Kusto Query Language (KQL) for developing and troubleshooting Microsoft Sentinel analytics and functions.  1-3 years of professional experience, campus applicants are welcome.       Preferred Qualifications and Experience      Strong understanding of log source telemetry and schema structures, enabling accurate translation of use cases into high-fidelity Sentinel detection rules.  Hands-on experience developing detection content (e.g., alerts, use cases, queries, dashboards) within a SIEM platform such as Microsoft Sentinel, Splunk, or QRadar.  Hands-on experience with EDR platforms, including at least one of the following: CrowdStrike Falcon, SentinelOne, or Microsoft Defender for Endpoint.  In-depth knowledge of Sentinel analytics configurations, deployment options, and best practices.  Familiarity with Microsoft’s DevOps pipeline (training available if needed).  Strong written and verbal communication skills, with the ability to convey technical concepts clearly and professionally to both internal teams and clients.  Comfortable leading meetings, demonstrating professionalism, subject matter expertise, and the ability to engage stakeholders effectively.  Highly organized with strong attention to detail, ensuring accuracy and consistency in deliverables.  Demonstrated passion for technology and a proactive approach to staying current with industry trends.  Collaborative team player who also excels at working independently and managing individual responsibilities.  Flexible and adaptable, with the ability to adjust to shifting client and project needs, including occasional extended hours when necessary.     Other Duties      Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.      Equal Employment Opportunity Statement      Security Risk Advisors is an Equal Opportunity Employer and prohibits discrimination or harassment of any kind. All employment decisions at SRA are based on business needs, job requirements, and individual qualifications, without regard to race, color, sex, sexual orientation, gender identity or expression, age, religion, national origin, disability, marital or family status, veteran status, medical condition, or any similar category protected by law.        Benefits Work with Experts: Robust training program, plus company-paid external training. SRA recognizes the value of professional development for employees. Therefore, we encourage our employees to pursue continuing education and role-specific training. Every SRA employee is eligible to attend one training per year paid for by SRA Corps Training Program: Our SRA Corps training program is a six-week experience for new hires that begins with one week of orientation at our Philadelphia headquarters. Whether new hires are interns, co-ops, or full-time consultants, SRA Corps members meet our founders, learn our values, and experience a day in the life of a cybersecurity consultant. Following orientation, Corps members return to their home office and participate in trainings such as Consulting 101, Enterprise Networks, Cloud Security, and more. Our leaders provide hands-on offensive, defensive, and frameworks boot camps. Mental Health Services: SRA has partnered with BetterHelp to provide SRA employees with free mental health support. BetterHelp connects individuals with licensed therapists for chat, video and phone sessions. Medical / Dental / Other (regular full-time employees only) Generous medical, dental, and vision benefits at different price points Company-paid disability and life insurance Company 401(k) plan, including annual 3% safe harbor contribution Free patient advocacy service that helps find care providers and resolve insurance queries Free on-site wellness programming covering both emotional and physical wellness Generous parental leave, sick leave, and vacation policies Option to work remotely or with a flexible schedule when needed Company-paid cellphone with discounted accessories 1-2-3 Give Program: 1. SRA will give $1,000 to a charity of your choice. 2. If you give an additional amount (up to $1,000), then, 3. SRA will match that amount up to $1,000
Negotiable Salary
Workable
Machine Learning Engineer
Dallas, TX, USA
Tiger Analytics is an advanced analytics consulting firm. We are the trusted analytics partner for several Fortune 100 companies, enabling them to generate business value from data. Our consultants bring deep expertise in Data Science, Machine Learning, and AI. Our business value and leadership have been recognized by various market research firms, including Forrester and Gartner. Are you a Machine Learning Engineer with expertise in Google Cloud Platform (GCP) and Vertex AI? We are looking for two talented professionals to join our team in a fully remote, onshore capacity. If you thrive in building and deploying scalable AI solutions, this role is for you! What You'll Do: Collaborate with cross-functional teams to design and deploy ML models. Develop reusable, scalable code for AI/ML applications. Leverage GCP services to build end-to-end machine learning pipelines. Optimize models for performance and scalability using Vertex AI. Requirements Key Requirements: Google Cloud Platform (GCP) Experience: Strong proficiency in GCP services, including data engineering and machine learning tools. Google Vertex AI Expertise: Hands-on experience with model training, deployment, and optimization using Vertex AI. Model Development & Deployment: Proven ability to design, build, and productionize machine learning models. API Development: Skilled in developing robust APIs for seamless integrations. Python Programming with CI/CD: Experience in Python-based applications and implementing CI/CD pipelines. Why Join Us? Work remotely while contributing to cutting-edge projects. Collaborate with a dynamic team passionate about AI/ML innovation. Opportunity to work with the latest Google Cloud technologies. Ready to take the next step? Apply now and be part of a team that’s shaping the future of AI! Benefits Significant career development opportunities exist as the company grows. The position offers a unique opportunity to be part of a small, fast-growing, challenging and entrepreneurial environment, with a high degree of individual responsibility.
Negotiable Salary
Workable
Systems Engineer
Portland, OR, USA
NetX is a leading provider of DAM software for museums, heritage, and businesses from around the world. We’re a smaller company located in Portland, Oregon. We’re a passionate, collaborative team that believes in building not just software, but also relationships with our customers. This endeavor started more than 20 years ago, and continues to grow, thrive and excel. We are currently looking for the right person to grow with us as we expand our customer base. Visit www.netx.net to learn more about us. Objective NetX’s Systems Engineer looks at what's going on in our systems, and figures out how to fix it, which sometimes means designing new solutions from scratch. You will be part of a talented team of engineers that demonstrate superb technical competency, delivering mission critical infrastructure and ensuring the highest levels of availability, performance and security. In addition, you are responsible for providing advice regarding the appropriate hardware and/or software to ensure our SaaS platform remains robust and performant. We're looking for a team player to be a part of our dynamic, flexible environment, where we adhere to an approach inspired by the Shape Up methodology. We encourage self-organization and a collaborative atmosphere where team members from various functions work together to plan, prioritize, and execute tasks effectively. We'd love to hear from you if you're ready to contribute to our forward-thinking approach. Responsibilities ● Manage and monitor all installed systems and infrastructure. ● Install, configure, test and maintain systems, application software and system management tools. ● Proactively ensure the highest levels of systems and infrastructure availability. ● Monitor and test application performance for potential bottlenecks, identify possible solutions, and work with developers to implement those fixes. ● Maintain security, backup, and redundancy strategies. ● Write and maintain custom (e.g. Ansible) scripts to increase system efficiency and lower the human intervention time on any tasks. ● Participate in the design of information and operational support systems. ● Liaise with vendors for problem resolution. ● When addressing an issue, prioritize seeking a solution that resolves the problem in a more sustainable, long-term manner. ● Strive for automation. Actively working to implement automated processes and systems within the infrastructure. ● Actively search for areas where recurring reactivity can be transformed into proactive solutions. ● On-call rotation — tier 1 and tier 2 (See: NetX Incident Response Process). ● Assist Support on Ops and Platform related technical issues (Tier 2). Requirements ● BS/MS degree in Computer Science, Engineering or a related subject. ● Proven working experience in installing, configuring and troubleshooting UNIX /Linux based environments. ● Solid experience in the administration and performance tuning of application stacks (e.g.,Tomcat, Apache, NGINX). ● Solid Cloud experience, preferably in AWS. ● Experience with virtualization and containerization (e.g., Docker, Kubernetes, VMware, Virtual Box). ● Experience with monitoring and observability systems (e.g., Nagios/Icigna, Prometheus, Grafana). ● Experience with automation software (e.g., Ansible). ● Solid scripting skills (e.g., shell scripts, Python). ● Solid networking knowledge (OSI network layers, TCP/IP). Benefits We offer a competitive salary along with a benefits package that includes: ● Medical, Dental, and Vision Insurance ● Life and Short/Long Term Disability Insurance ● 401k Retirement with Employer Match ● PTO ● Paid Holidays ● Commuting Expense Assistance ● Flexible working arrangements ● Friendly dogs are welcome in the office!
Negotiable Salary
Cookie
Cookie Settings
Our Apps
Download
Download on the
APP Store
Download
Get it on
Google Play
© 2025 Servanan International Pte. Ltd.