Logo
Base One Technologies

Sr. Splunk engineer SME

Base One Technologies, Ashburn, Virginia, United States, 22011


The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. The Splunk engineer should be familiar with a Linux environment, editing and maintaining Splunk configuration files and apps.

The Splunk engineer will work with other Cybersecurity Engineering team members and will be required to interact with end users to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards. The Splunk engineer will be required to interact with senior management, as necessary.

Basic Qualifications

Must be a US citizen, no clearance required and in addition, must have a current or be able to favorably pass a (BI) Background Investigation to join this program.

Minimum of a Bachelor’s degree coupled with 7+ years’ experience in the Information Technology arena.

4+ years of experience in a senior Splunk role working in a Splunk clustered environment supporting SOC or NOC environments.

3+ Years experience in Linux and SQL/ODBC interfaces.

Experience with Ansible and GIT.

Ability to follow Change & Configuration Management.

Strong problem solving abilities with an analytic and qualitative eye for reasoning under pressure.

Self-starter with the ability to independently prioritize and complete multiple tasks with little to no supervision.

Knowledge of Cloud Services such as AWS, Azure, Office365.

Ability to script in one or more of the following computer languages: Python, Bash, Visual Basic, or PowerShell.

Experience in automating Splunk Deployments.

Requirement Certifications (One of the following)

CCIE Security

Cisco Certified Network Professional (CCNP)

CCNP Security

CCSP – Certified Cloud Security Professional

CEH – Certified Ethical Hacker

Certified Data Administrator Professional

Splunk Certified Architect

Certified Storage Associate

CISSP – Certified Information Systems Security

CompTIA Advanced Security Practitioner (CASP)

Converged Infrastructure Specialist

CSSLP – Certified Secure Software Lifecycle Professional

ECSP – EC-Council Certified Secure Programmer

GCWN – Windows Security Administrator

GICSP – Cyber Security Professional

GISF – Security Fundamentals

GISP – Security Professional

GSSP – Secure Software Programmer

MCSE – Microsoft Certified Solutions Expert (Server)

RHCA – Red Hat Certified Architect

SEI (Software Engineering Institute)

SSCP – Systems Security Certified Practitioner

VCA (Certified Associate)

VCAP (Certified Advanced Professional)

VCDX (Certified Design Expert)

VCIX (Implementation Expert)

VCP (Certified Professional)

MS 365 Certified: Security Administrator

Microsoft Certified Azure Security Engineer (Associate)

Splunk Core Certified Consultant

Splunk SOAR Certified Automation Developer

Splunk Certified Developer

AWS Certified Solutions Architect - Associate

Preferred Qualifications

Experience in SQL.

Experience in other systems and network management products.

Current or former completed Splunk training.

Prior experience in a Splunk professional services role.

Automation/orchestration of Splunk within a Cloud environment.

#J-18808-Ljbffr