Mediabistro logo
job logo

Splunk Engineer

Technical Intelligence Solutions, LLC, Alexandria, VA, United States


Security Clearance:

Active

TS/SCI clearance with Polygraph
Minimum Requirements:

3+ years of experience with

Splunk Enterprise
Experience developing

searches, reports, alerts, and dashboards using SPL
Hands‑on experience managing

Splunk infrastructure

(indexers, search heads, forwarders)
Experience with

data ingestion and onboarding new data sources
Familiarity with

Splunk configuration files

(e.g., inputs.conf, props.conf) and troubleshooting via GUI and CLI
1+ year of experience in

Linux and/or Windows system administration
Experience creating

architectural or system diagrams
Familiarity with

ticketing and collaboration tools

(e.g., Jira, Confluence, SharePoint)
Ability to work in

Agile/Scrum environments

and provide status updates
Willingness to work

onsite in a SCIF 2–3 days per week (Falls Church)
Bachelor’s degree

in a relevant field (or equivalent experience)
Key Responsibilities:

Design, build, and maintain

Splunk dashboards, alerts, and reporting solutions
Administer and support

Splunk environments , including infrastructure components and configurations
Perform

data onboarding, parsing, and indexing

for new log sources
Troubleshoot and resolve

system and configuration issues
Develop and maintain

documentation and architecture diagrams
Collaborate with cross‑functional teams to support

monitoring, security, and analytics needs
Provide updates and briefings to stakeholders on progress and system performance
Skills and Proficiencies:

Splunk Enterprise (administration, configuration, and SPL development)
Linux and Windows system administration
Scripting and automation (e.g.,

Python, Bash, JSON, XML, YAML )
Familiarity with

AWS cloud environments
Experience with

automation and Infrastructure as Code
Exposure to tools such as

Docker, Kubernetes, and Ansible
Knowledge of

Splunk Enterprise Security (ES)

and

User Behavior Analytics (UBA)

(preferred)
Strong communication, organization, and time management skills
Additional Information:

Relevant certifications such as

Splunk Certified Admin or Architect

are highly preferred
Ideal candidates will demonstrate a mix of

technical depth, problem‑solving ability, and strong collaboration skills

#J-18808-Ljbffr