Splunk/SIEM Administrator – Senior Cybersecurity Administrator
Confirmed live in the last 24 hours
General Dynamics IT
Compensation
$97,968 - $120,750/year
Job Description
Type of Requisition:
RegularClearance Level Must Currently Possess:
Top Secret/SCIClearance Level Must Be Able to Obtain:
Top Secret/SCIPublic Trust/Other Required:
NoneJob Family:
Cyber and IT Risk ManagementJob Qualifications:
Skills:
RedHat, SIEM Tools, Splunk Enterprise Security, Splunk Infrastructure MonitoringCertifications:
NoneExperience:
5 + years of related experienceUS Citizenship Required:
YesJob Description:
Please take this opportunity to join one of GDIT’s fastest long-standing growing programs! US Battlefield Information Collection and Exploitation System eXtended (US BICES-X) is a cutting edge program supporting DoW intelligence information sharing on current and emerging global threats to mission and coalition partners and emerging nations. With an internationally dispersed team supporting each combatant command, the US BICES-X team is in direct support of the war fighter and their missions. We are seeking a creative and driven professional with a passion for solving real world issues on a cross-functional, fast paced team.
As part of the Defensive Cyber Operations Team, you’ll be charged with maintaining the Cyber Security Posture for Enterprise data centers, workstations, and remote locations across the globe.
Responsibilities:
- Performs Defensive Cyber Operations (DCO) activities (formally known as Cyber Network Defense) for a large Program; coordinates with government Program staff, USAF, and other government agencies to assist in the creation, dissemination, direction, and auditing of program policy, standards, and operating procedures.
- Ensures the continuity and smooth functionality of the Splunk/SIEM service, its associated components, and its integrations with other services.
- Ensure the security of the Splunk environment by performing proactive health checks and keeping abreast of new threats and vulnerabilities that may affect them.
- Assist/engage other system owners and project managers that have integration requirements with the various other enterprise systems.
- Assist/engage other engineering teams for problem determination of incidents.
- Develop best practices, standards, and architectural principles for the Splunk service.
- Conduct network and system audits for vulnerabilities using Security Technical Implementation Guides (STIGs), ACAS vulnerability scanner, and DISA SCAP to mitigate those findings for Linux, Windows, and associated network operating systems.
- Ensures the integrity and protection of networks, systems, and applications by technical enforcement of organizational security policies, through monitoring of vulnerability scanning devices.
- Performs periodic and on-demand system audits and vulnerability assessments, including user accounts, application access, file system and external Web integrity scans to determine compliance.
- Design and implement solutions to address business problems, understanding the Splunk architecture requirements for scalability, security, performance, and cost-efficiency.
- Maintains current knowledge of relevant technology as assigned
- Participates in special projects as required.
Required Qualifications:
- 5+ years of experience required.
- Must possess and maintain a Top Secret/SCI clearance.
- BA/BS degree required or equivalent work experience.
- Red Hat Enterprise Linux operation and maintenance experience.
- SPLUNK & SYSLOG operating and management experience is a must.
- Must meet DoW 8140.03 requirements and be eligible for IAT level II and CSSP Infrastructure Support access upon hire for positions with elevated privileges and maintain ITIL V3 Foundation certification.
- Requires familiarity with network concepts, user authentication, and digital signatures.
- Requires understanding of DOW RMF
Preferred Qualifications:
- The ability to work and set priorities on multiple projects/tasks at once and operate in a dynamic, fast-paced team-oriented environment.
- Extensive experience knowledge of Splunk architecture, distributed components (indexer clusters, forwarders, search head clusters, deployment servers, dashboards etc).
- Strong knowledge of Splunk Enterprise Security at administration and use case level.
- Deep understanding of:
- Splunk language (SPL)
- Intermediate Python or PowerShell scripting a must
- CSS, XML, macros, and JavaScript.
- External systems management products & feeds, particularly, but not limited to the M365 security portfolio.
- Optimized data architecture & data analytics.
- WANs and LANs and TCP/IP.
- Must have a thorough (advanced to expert) understanding of IT security and implementation of security related guidelines and impact on IT infrastructures.
- Problem solving abilities across enterprise multiple technology environments with complex integrations.
- Strong time management skills.
- Strong verbal and written communication skills; must be able to communicate effectively with a wide variety of audiences, both business and technical.
- Work collaboratively and cooperatively with diverse geographical and cultural groups.
- The work is typically performed in an office environment, which requires normal safety precautions; work may require some physical effort in the handling of light materials, boxes or equipment.
#DefenseOCONUS #GDITPriority
The likely salary range for this position is $97,968 - $120,750. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:
40Travel Required:
NoneTelecommuting Options:
OnsiteWork Location:
USA FL MacDill AFBAdditional Work Locations:
Total Rewards at GDIT:
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.Join our Talent Community to stay up to date on our career opportunities and events atEqual Opportunity Employer / Individuals with Disabilities / Protected VeteransSimilar Jobs
Dexcom
Sr. Staff Enterprise Cybersecurity Engineer (Security Architect)
Dexcom
Sr. Cybersecurity Engineer
Dexcom
Sr Database Administrator
Dexcom
Manager Cybersecurity Engineering
Dexcom
Staff Enterprise Cybersecurity Engineer (Security Engineering)
Dexcom