Splunk Engineer

  • ManTech
  • Marshall, VA, USA
  • Nov 09, 2020
[Information Technology]

Job Description

Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International Corporation, youll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and customer oriented Senior Principal Cyber Security Engineer, specializing in Splunk, to join our team in the Marshal, VA area to provide unparalleled support to our customer and to begin an exciting and rewarding career within ManTech.As a Senior Principal Cyber Security Engineer, you will implement and conduct engineering activities in accordance with the organization's relevant approved processes, technical operations and strategic vision. The position is responsible for the technical management, monitoring, maintenance, and troubleshooting, of enterprise-wide monitoring systems, applications and related infrastructure; ensuring that any issues that may adversely impact the confidentiality, integrity or availability of computing resources are identified, properly alerted and promptly resolved.The candidate must be an experienced individual deploying, configuring, and managing Splunk and will be responsible for the day-to-day maintenance and operations of the Splunk tool and the development of user content (e.g. rules, reports, and basic connector configuration).Responsibilities include, but are not limited to:Design, deploy and administer multi-site, distributed Splunk environment. Including Multi-site Clustering, Search Head Clustering, Universal Forwarders, Deployer, and Deployment Server;Manage data retention policies and perform index administration, maintenance and optimization, configuration backups;Assist in developing Splunk content to support their use cases, which will involve report/dashboard development, custom alerting, and third-party tool integration;Investigate, test, implement, maintain, administer and troubleshoot enterprise-level security products, including but not limited to Splunk, ACAS, HBSS, and Endpoint Management solutions;Create and organize the ACAS scan groups, and managing user access, permissions and roles;Perform enterprise-wide vulnerability analysis and management and risk analysis for all enterprise enclaves;Effectively choose the appropriate standards, processes, procedures, and tools throughout the system development life cycle to support the generation of the security engineering products;Perform security requirements analysis, security requirements definition, system security design, security architecture generation, security trade studies, and security verification and validation with little or no supervision;Provide Tier 3 maintenance support for deployed cyber security technologies;Ensure DISA STIGs are implemented and enforced;Draft, edit and appropriately distribute written reports and status updates that are factual, timely and relatively error free.An individual working under this labor category will be expected to be able to perform typical day-to-day tasks autonomously, requiring assistance in only the most complex tasks.Basic Qualifications:11-13 years of experience in the Cyber security or information assurance fieldMinimum 3+ years of Splunk experience in designing, implementing, and maintaining a fully operating Splunk solution.Minimum 5+ years knowledge and experience ACAS and HBSS administrationPractical experience in infrastructure administration a plus (Linux, networking, Windows, firewalls).Must possess well-developed verbal and written communication skillsMust meet DoD 8570/8140 IAT-2 certification requirements such as Security+ or equivalent.Preferred Qualifications:Demonstrated experience in Splunk engineering and administration, including Splunk Enterprise Security.Security Clearance Requirements:An active and current TS/SCI clearance is required.Physical Requirements:Must be able to remain in a stationary position 50%The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situationsManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) ###-####. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access as a result of your disability. To request an accommodation please click and provide your name and contact information.
Associated topics: chief program officer, cpo, manage, manager, management, monitor, product manager, project manager, relationship manager, task