Splunk Security Engineer
Maryland Staffing - Rockville
Work at Maryland Staffing
Overview
- View job
Overview
Splunk Security Engineer
Responsibilities and Qualifications
Responsibilities
Administer the Splunk based log management system and analyze the current logging capabilities.
Ensure the Agency Information Security systems administered by the team are sending all required logs to the log management system.
Maintain the Log Management and Security Information and Event Management system to collect and aggregate IDS/IPS data from network sensors, raw data from collection agents, firewalls, proxy servers, DLP, antivirus/endpoint protection software, and vulnerability scanner elements.
Tune the SIEM and IDS/Intrusion Prevention System (IPS) events to minimize false positives.
Enroll NRC network and systems information into the SIEM tool, using information from the Vulnerability and Compliance Scanning System (VCSS) and input from ISSOs, and perform asset categorization and privatization.
Tune the capabilities as practicable to improve efficiency and ensure that reporting capabilities of the log management system are working properly.
Validate that agency log retention requirements are configured properly within the agency's log management system.
Identify shortfalls in the current capability and identify systems that are not sending logs to the agency log management system.
Recommend improvements to current processes.
Provide technical guidance to administrators of other IT systems to ensure their logs are sent to the agency's log management system.
Configure agency's log management system role-based access controls so that logs for specific systems can only be accessed by designated administrators.
Required Qualifications
Bachelor's Degree and a minimum 10 years of relevant experience with Security Information and Event Management.
Experience in architecture, design, support, maintenance, and expansion of an enterprise log management/SIEM infrastructure in a highly resilient configuration.
Experience in monitoring an enterprise log management/SIEM server and agent infrastructure for capacity planning and system optimization.
Experience in deployment, configuration and maintenance of log forwarder agents across a variety of UNIX and Windows platforms.
Experience in collaboration with a variety of IT stakeholders in design and maintenance of production-quality log management/SIEM reports and dashboards to support data analysis and visualization.
Experience in creation and maintenance of documentation related to log management/SIEM infrastructure configuration and operational processes.
Advanced system administration skills with Linux operating systems.
5+ years of experience with Splunk.
Must successfully pass a drug screening.
Must be able to successfully obtain a Public Trust.
Telework (must be local to the DC, Maryland, Virginia area).
Highly Desired Skillsets
Experience with Crbil.
Experience creating identity models in SIEM.
Experience with Splunk SOAR and UBA tools.
Knowledge of regular expression, scripting and application development languages (e.g., Pythons, Perl, JavaScript, Linux shell scripting).
Overview
We are seeking a Splunk Security Engineer to join our team supporting the Nuclear Regulatory Commission in Rockville, MD. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment.
The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation.
By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP".
As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration.
Additional Job Information
Work Environment and Physical Demands
Location: Rockville, MD (Telework, must be local to DC, Maryland and Virginia area).
Type of environment: Office.
Noise level: Medium.
Work schedule: Schedule is day shift Monday Friday. May be requested to work evenings and weekends to meet program and contract needs.
Amount of Travel: Less than 10%.
Physical Demands
While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
Work Authorization/Security Clearance
Must be a U.S. Citizen.
Must be able to obtain Public Trust.
Other Information
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws.
All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment.
Wage Information
Target salary range: $137,000- $155,000.
The salary range displayed is an estimate and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements.
The displayed salary is one component of the total compensation package for employees.
Equal Employment Opportunity
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities.
TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact for assistance.
Job Locations US-MD-Rockville
ID 2025-8161
Category Information Technology
Type Regular Full-Time