Boston Government Services, LLC (BGS)

Engineering | Technology | Security

Splunk Detection Engineer

EngineerEngineerFull TimeRemoteTeam 201-500Since 2007H1B No SponsorCompany SiteLinkedIn

Location

Tennessee

Posted

66 days ago

Salary

Not specified

EnglishCyber SecurityLinuxPythonSplunk

Job Description

• Integrate new data sources, which may include databases, APIs, files, etc. • Validating and creating appropriate configurations for CIM compliant logs • Processing requests from cybersecurity analysts for new detections within Splunk Enterprise Security • Analyzing existing logs to identify poorly formatted logs and potential gaps when implementing new detections • Adding and maintaining threat feeds within Splunk Enterprise Security • Monitoring the performance of and tuning detections • Managing asset and identity inventory within Splunk Enterprise Security • Creating and maintaining new Splunk apps • Recommending additions or changes to Splunk or its data models to meet detection needs • Developing searches, reports, and other functionalities for cyber-based use-cases, including active response, intrusion detection, vulnerability management, and related use cases • Assisting users with creating and optimizing searches and dashboards and mentoring others in good development of said resources • Attend online/Teams meetings with team and others as appropriate • Work with team to provide status on current task, suggest improvements, discuss implementation, etc.

Job Requirements

  • Significant experience with Splunk and Splunk Enterprise Security
  • Significant experience with event logging solutions (e.g., Splunk Universal Forwarder, syslog, Cribl)
  • Experience with ticketing/case management
  • Experience with Git pipelines
  • Familiarity with using Linux CLI
  • Ability to craft queries using common languages; comfort with regex, JSON and APIs; basic scripting in Python/PowerShell/Bash
  • Excellent analytical, problem-solving, and communication skills both with stakeholders, peers, and internal customers; able to operate under pressure in a shift or on-call environment
  • Considerable knowledge using and administering Splunk
  • Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices
  • Strong analytical and problem-solving skills
  • Meticulous attention to detail to ensure thorough assessments and accurate reporting
  • Excellent written and verbal communication skills to effectively convey findings and recommendations to technical and non-technical stakeholders
  • Ability to work collaboratively with other cybersecurity professionals, IT staff, and external vendors
  • Experience and skill in conducting audits or reviews of technical systems
  • Experience working in a government environment
  • Experience working in a distributed IT environment
  • Ability to qualify for HSPD-12 card for use in two-factor authentication

Benefits

  • Health, Dental, Vision, Life Insurance
  • Paid Vacation
  • 401K
  • Long and Short-Term Disability

Related Categories

Related Job Pages

More Engineer Jobs

Full TimeRemote

As the need for nuclear energy grows, the future couldn’t be brighter. Join our vital mission to create lasting solutions for our planet’s greatest challenges. In this role, you are ready to shape the future of clean energy and make a long-lasting global impact. With us, anti...

Project managementEngineeringNuclear engineeringASME codeNRC regulationsSystems engineeringConfiguration managementBudgetingSchedulingStakeholder coordination
United States
$118K - $160K / year
Full TimeRemoteTeam 10,001+Since 1971H1B Sponsor

Application Development Engineer for Kinaxis support and enhancements at Cardinal Health

OracleSQL
Ohio
$94.9K - $135.6K / year
Full TimeRemoteTeam 10,001+Since 1971H1B Sponsor

Software engineer developing and enhancing 3PL commercial solutions

AEMAngularApacheCloudDockerERPGoogle Cloud PlatformGraphQLJavaJavaScriptKafkaKubernetesNode.jsPostgresReactSpringSpring BootSpringBoot
Ohio
$94.9K - $135.6K / year

Project Engineer

Spriggs Excavation, Inc.

We are a safety driven heavy civil construction company performing projects spanning several states.

Engineer66 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor

Project Engineer assisting with civil construction across multiple states

Colorado
$75K - $100K / year