Overview
Seeking a Splunk Engineer to manage and optimize Splunk Enterprise environments. Requires 3+ years of experience with SPL, system administration, data ingestion, and infrastructure management. Must be comfortable working in SCIF 2-3 days/week and collaborating with scrum teams. Security Clearance: Must be a U.S. Citizen and possess a DoD TS/SCI with CI poly clearance. Minimum Requirements:
-BA or BS degree, preferably in Computer Science, Computer Engineering, Mathematics, Statistics, or a related technical field.
-3+ years of experience with Splunk Enterprise, including:
-Using Search Processing Language (SPL) to create Reports, Alerts, and Dashboards.
-Managing infrastructure components (e.g., Indexers, Index Clusters, Search Heads, Universal Forwarders).
-Ingesting and indexing new data sources.
-Working with app folders and configuration files (e.g., inputs.conf, props.conf), via both GUI and terminal.
-1+ years of experience with Linux and/or Windows system administration.
-1+ years of experience drafting architectural and infrastructure diagrams.
-Proficient in SharePoint, Jira, Confluence, or other ticket tracking tools.
-Ability to collaborate with scrum teams and deliver updates/presentations on progress.
-Availability for SCIF work 2-3 days per week. Key Responsibilities:
-Manage, configure, and troubleshoot Splunk Enterprise infrastructure.
-Ingest, normalize, and index new data sources.
-Maintain and update architectural and infrastructure documentation.
-Provide configuration support and resolve issues across Splunk environments.
-Collaborate with scrum teams and contribute to sprint planning and reporting. Skills and Proficiencies:
-Proficient in scripting and automation using Python, Bash, Boto3, JSON, YAML, and XML.
-Familiar with Infrastructure-as-Code tools and automation for pipelines and deployments.
-Experience with AWS, Splunk Enterprise Security (ES), and User Behavior Analytics (UBA).
-Working knowledge of Docker, Kubernetes, and Ansible.
-Strong time management, verbal, and written communication skills.
-Preferred certifications: Splunk Enterprise Certified Admin, Splunk Enterprise Certified Architect, Splunk UBA, or Splunk ES. Additional Information:
Hybrid role with a primarily remote setup; requires onsite presence in a SCIF 2-3 days per week. About us:
Technical Intelligence Solutions (TIS) is dedicated to delivering top-notch solutions to our customers by building a team of highly qualified professionals who thrive in a collaborative, idea-driven, innovative environment.
Founded and operated by experienced engineers, TIS understands customer goals, strategies, and the expertise required to craft innovative solutions. We specialize in supporting critical DoD missions with reliable, efficient systems, networks, and applications that excel in real-time operations. Benefits:
We offer a comprehensive benefits package, including bi-weekly pay, 20 days of PTO, a 5% safe harbor 401k, professional development reimbursement, and a variety of healthcare options for eligible employees. To Apply: Interested candidates should submit their resume for consideration.