Logo
Gray Tier Technologies LLC

Splunk Engineer

Gray Tier Technologies LLC, Arlington, Virginia, United States, 22201


Splunk Engineer

Gray Tier is seeking a

Splunk Engineer

in support of the Compartmented Enterprise Services Office (CESO) NOC.

With the CESO program, the Defense Information System Agency (DISA) is looking to transform the existing Secure Web Services (SWS) environment, which provides secure information sharing to the community, into a more mature service offering to meet the DoD and intelligence communities. As part of this mission, our team will manage the commercial cloud migration and disestablishment of legacy systems, fully automate the continuous development & continuous integration environment, fourth estate consolidation, professionalize services – ITIL/DevSecOps based processes, improve the customer experience 1st call resolution, and achieve development of a service catalog for Defense Working Capital Fund (DWCF) Model.

Primary Responsibilities

Design efficient and reusable reports and dashboards to integrate multiple mission applications' health, performance and operational data systems into Splunk

Utilize REST API, SplunkJS Stack, and other developer tools to integrates customer applications with the Splunk platform

Direct and monitor reporting in Splunk dashboards to reflect compliance status of all directed information assurance vulnerability alerts and bulletins, Computer Tasking Orders, and other compulsory cyber security directives.

Create front-end automated data visualization services using Splunk

Develop viewable Splunk dashboards to provide visibility into ingested log data

Develop alerts that trigger/activate on configured setting to deploy or sends a note/email/attachments to a particulate destination email or groups

Develop security rules (alerts) that trigger on anomalous activities or threat detections

Basic Qualifications

Bachelor's degree and 4+ years of prior relevant experience. Additional experience may be considered in lieu of degree.

Active Top Secret security clearance (With ability to hold TS/SCI) is required prior to start. Obtaining and maintaining CI/POLY will be required in future

DoD 8570 IAM II certification is required.

Splunk Enterprise Certified Architect. Equivalent certification or higher

Excellent written and oral communications skills and be able to appropriately present highly technical material to both technical and non-technical audiences

Preferred Qualifications

Experience configuring and maintaining the tool in a multi-tenant environment

Knowledge of programming languages such as Python, Java, JavaScript, C#

Experience with AWS Cloud tools and services