Base One Technologies
Sr. Splunk engineer SME
Base One Technologies, Ashburn, Virginia, United States, 22011
The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.
The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required to interact with senior management, as necessary.
Basic Qualifications
Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program.
Minimum of a Bachelor’s degree coupled with 7+ years’ experience in the Information Technology arena.
4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments.
3+ Years experience in Linux and SQL/ODBC interfaces.
Experience with Ansible and GIT.
Ability to follow Change & Configuration Management.
Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure.
Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision.
Knowledge of Cloud Services such as AWS, Azure, Office365.
Ability to script in one or more of the following computer languages: Python, Bash, Visual Basic, or PowerShell.
Experience in automating Splunk Deployments.
Requirement Certifications (One of the following)
CCIE Security
Cisco Certified Network Professional (CCNP)
CCNP Security
CCSP – Certified Cloud Security Professional
CEH – Certified Ethical Hacker
Certified Data Administrator Professional
Splunk Certified Architect
Certified Storage Associate
CISSP – Certified Information Systems Security
CompTIA Advanced Security Practitioner (CASP)
Converged Infrastructure Specialist
CSSLP – Certified Secure Software Lifecycle Professional
ECSP – EC-Council Certified Secure Programmer
GCWN – Windows Security Administrator
GICSP – Cyber Security Professional
GISF – Security Fundamentals
GISP – Security Professional
GSSP – Secure Software Programmer
MCSE – Microsoft Certified Solutions Expert (Server)
RHCA – Red Hat Certified Architect
SEI (Software Engineering Institute)
SSCP – Systems Security Certified Practitioner
VCA (Certified Associate)
VCAP (Certified Advanced Professional)
VCDX (Certified Design Expert)
VCIX (Implementation Expert)
VCP (Certified Professional)
MS 365 Certified: Security Administrator
Microsoft Certified Azure Security Engineer (Associate)
Splunk Core Certified Consultant
Splunk SOAR Certified Automation Developer
Splunk Certified Developer
AWS Certified Solutions Architect - Associate
Preferred Qualifications
Experience in SQL.
Experience in other systems and network management products.
Current or former completed Splunk training.
Prior experience in a Splunk professional services role.
Automation/orchestration of Splunk within a Cloud environment.
#J-18808-Ljbffr
The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required to interact with senior management, as necessary.
Basic Qualifications
Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program.
Minimum of a Bachelor’s degree coupled with 7+ years’ experience in the Information Technology arena.
4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments.
3+ Years experience in Linux and SQL/ODBC interfaces.
Experience with Ansible and GIT.
Ability to follow Change & Configuration Management.
Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure.
Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision.
Knowledge of Cloud Services such as AWS, Azure, Office365.
Ability to script in one or more of the following computer languages: Python, Bash, Visual Basic, or PowerShell.
Experience in automating Splunk Deployments.
Requirement Certifications (One of the following)
CCIE Security
Cisco Certified Network Professional (CCNP)
CCNP Security
CCSP – Certified Cloud Security Professional
CEH – Certified Ethical Hacker
Certified Data Administrator Professional
Splunk Certified Architect
Certified Storage Associate
CISSP – Certified Information Systems Security
CompTIA Advanced Security Practitioner (CASP)
Converged Infrastructure Specialist
CSSLP – Certified Secure Software Lifecycle Professional
ECSP – EC-Council Certified Secure Programmer
GCWN – Windows Security Administrator
GICSP – Cyber Security Professional
GISF – Security Fundamentals
GISP – Security Professional
GSSP – Secure Software Programmer
MCSE – Microsoft Certified Solutions Expert (Server)
RHCA – Red Hat Certified Architect
SEI (Software Engineering Institute)
SSCP – Systems Security Certified Practitioner
VCA (Certified Associate)
VCAP (Certified Advanced Professional)
VCDX (Certified Design Expert)
VCIX (Implementation Expert)
VCP (Certified Professional)
MS 365 Certified: Security Administrator
Microsoft Certified Azure Security Engineer (Associate)
Splunk Core Certified Consultant
Splunk SOAR Certified Automation Developer
Splunk Certified Developer
AWS Certified Solutions Architect - Associate
Preferred Qualifications
Experience in SQL.
Experience in other systems and network management products.
Current or former completed Splunk training.
Prior experience in a Splunk professional services role.
Automation/orchestration of Splunk within a Cloud environment.
#J-18808-Ljbffr