Sawdey Solution Services
DLA Splunk Enterprise Log Management
Sawdey Solution Services, Orient, Ohio, United States, 43146
Title DLA Splunk Enterprise Log Management (ELM) Cybersecurity Engineer Req Number INF-23-00045 Requisition Category Pipeline Full-Time/Part-Time Full-Time Location Columbus, OH Description We are seeking a DLA Splunk Enterprise Log Management (ELM) Cybersecurity Engineer at Columbus, OH, or near other DLA Sites. The DLA Splunk Enterprise Log Management (ELM) Cybersecurity Engineer performs a variety of routine project tasks applied to specialized information assurance problems. Tasks involve integration of electronic processes or methodologies to resolve total system problems, or technology problems as they relate to IA requirements. Additional Responsibilities Include, but are not Limited To: Analyzes information security requirements. Applies analytical and systematic approaches in the resolution of problems of workflow, organization, and planning. Provides security engineering support for planning, and design, development, testing demonstration, integration of information systems. Analyzes threat information gathered from logs, Intrusion Detection Systems (IDS), intelligence reports, vendor sites, and a variety of other sources. Creates customized dashboards using Security Information and Event Management (SEIM) tool Splunk ES to elevate high-threat items to incident responders. Provides analysis and make recommendations in line with the roles of CERT Incident Handlers (IH) and site Information Assurance Managers (IAM). Develops ES rules, reports, dashboards, data monitors, active channels, trends and use cases to identify threats and optimize data mining. Researches, plans, installs, configures, troubleshoots, maintains, and backups all components in the Splunk Enterprise Log Management architecture. Assists with proposal development, if necessary. Performs other duties, as assigned. Experience: Seven (7) years of relevant IT experience to include: Creating custom dashboards and reports in Splunk using threat data Integrating and sustaining Splunk Core and Splunk ES Administration knowledge of the Splunk ES and backend database infrastructure related to upgrades and daily maintenance is essential. Education: HS diploma or equivalent required. College degree preferred. Certificates, Licenses, Registrations: Must have at least one DOD 8570.01 IAT level III certification. Must have a relevant certification meeting DOD 8570.01 CND-IS. Computing Environment: Linux, Splunk Administrator. Other Required Skills & Abilities: Must be able to effectively communicate with customer and fulfill all duties and responsibilities as listed in the contract. Must be proficient in Microsoft Office suite including, but not limited to: Word, PowerPoint, Excel, and Outlook. Security Clearance: Secret security clearance required with requirement for IT-I Background Investigation at the SSBI/Tier 5 level. US Citizenship: This position supports a U.S. Government Contract whose terms require Sawdey Solution Services to staff it only with U.S. Citizens. About the Organization Sawdey Solution Services, an ISO 9001 certified and CMMI-SVC v2 Level 3 appraised corporation, has built a nationwide and global footprint as a leading government contracting organization. Specializing in cybersecurity, systems engineering, and operational support, Sawdey invites you to be a part of a team that's at the forefront of securing our nation. Operating successfully since 2001, we are a Woman Owned/Service-Disabled Veteran Owned Business. Our mission is to provide employees with the best experience in a people focused, continuous process improvement environment. We are extremely proud of the culture we have created. Why Choose Us? Mission-Critical Work: We p