Hiring.Camp

Senior Splunk Administrator

GCyber

·

Yesterday

Location
Washington, DC
Type
Full-time
Department
Administration
Seniority
Senior
Clearance
Required
Closing date
Today
Source
ApplyToJob

Description

GCYber is seeking a Senior Splunk Administrator, to support a high-profile government customer. This is a hands-on administration role responsible for data ingestion, dashboard development, and resolving issues when data is missing, delayed, duplicated, or incorrectly parsed.

As the Senior Splunk Administrator, you will:

  • Administer and monitor an enterprise Splunk environment, including indexer clusters, search head clusters, heavy and universal forwarders, deployment servers, deployers, cluster managers, and monitoring consoles.
  • Troubleshoot missing, delayed, duplicated, incorrectly parsed, or incorrectly routed data across the complete ingestion path.
  • Configure and maintain Splunk inputs, outputs, indexes, sourcetypes, routing, filtering, timestamp extraction, and event parsing.
  • Build and maintain Splunk dashboards, reports, alerts, and saved searches that provide useful operational and cybersecurity visibility.
  • Work with stakeholders to define dashboard requirements, identify the right data, and present results in a clear and actionable format.
  • Develop and optimize SPL searches that support dashboards, data validation, troubleshooting, trend analysis, and operational reporting.
  • Diagnose issues involving forwarders, blocked queues, certificates, network connectivity, indexing, permissions, dashboards, and search logic.
Minimum Qualifications and Experience
  • Active DoD Top Secret/SCI clearance
  • Active IAT II certification (i.e., Security+, CySA+, CCNA-Security, GSEC, CND, GICSP, SSCP)
  • Bachelor’s Degree in Computer Science, Cybersecurity, Computer. Engineering, Information Technology, or equivalent degree
  • 5+ years of Splunk administration or engineering experience.
  • Hands-on experience supporting a distributed enterprise Splunk environment
  • Experience with indexer clusters, search head clusters, heavy forwarders, universal forwarders, deployment servers, and related Splunk components.
  • Splunk certification preferred

Our Benefits

GCyber is committed to the well-being and development of every employee. Our benefits are designed to support your personal and professional goals, from health and wellness programs to retirement savings and career development opportunities. Highlights include:

  • 26 Days of Paid Leave + Annual PTO Increase
  • An extra day of paid leave for every year of employment with GCyber
  • Paid Parental Leave
  • Additional Leave Allowances for Military Duty, Jury Duty, and Bereavement Leave
  • 401(k) Matching
  • 100% Company-funded Disability Insurance
  • 90% Company-Funded Health, Dental, and Vision Insurance, with contributions to insurance benefits for spouses, children, and family members
  • Training and Professional Development Plans
  • Commuter Benefits Plan
  • Parking and Transportation Allowance

Equal Opportunity Employer

GCyber is an Equal Opportunity Employer. This means you don't have to worry about whether your application process will be fair. We consider all applicants without regard to race, color, religion, age, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, veteran status, or disability.

Stay in Touch

For future job notifications please follow GCyber on LinkedIn. https://linkedin.com/company/gcyber

Skills

CybersecuritySplunkCCNA

Similar Jobs

2

Senior Splunk Administrator

Veeam Software · Remote, United States · Remote

3 weeks ago

Systems Engineer - Splunk Administrator, Senior Advisor - TS/SCI w/poly

Peraton · Annapolis Junction, MD, US

3 months ago