Boston Government Services, LLC (BGS)
Engineering | Technology | Security
Splunk Detection Engineer
Location
Tennessee
Posted
66 days ago
Salary
Not specified
EnglishCyber SecurityLinuxPythonSplunk
Job Description
• Integrate new data sources, which may include databases, APIs, files, etc.
• Validating and creating appropriate configurations for CIM compliant logs
• Processing requests from cybersecurity analysts for new detections within Splunk Enterprise Security
• Analyzing existing logs to identify poorly formatted logs and potential gaps when implementing new detections
• Adding and maintaining threat feeds within Splunk Enterprise Security
• Monitoring the performance of and tuning detections
• Managing asset and identity inventory within Splunk Enterprise Security
• Creating and maintaining new Splunk apps
• Recommending additions or changes to Splunk or its data models to meet detection needs
• Developing searches, reports, and other functionalities for cyber-based use-cases, including active response, intrusion detection, vulnerability management, and related use cases
• Assisting users with creating and optimizing searches and dashboards and mentoring others in good development of said resources
• Attend online/Teams meetings with team and others as appropriate
• Work with team to provide status on current task, suggest improvements, discuss implementation, etc.
Job Requirements
- Significant experience with Splunk and Splunk Enterprise Security
- Significant experience with event logging solutions (e.g., Splunk Universal Forwarder, syslog, Cribl)
- Experience with ticketing/case management
- Experience with Git pipelines
- Familiarity with using Linux CLI
- Ability to craft queries using common languages; comfort with regex, JSON and APIs; basic scripting in Python/PowerShell/Bash
- Excellent analytical, problem-solving, and communication skills both with stakeholders, peers, and internal customers; able to operate under pressure in a shift or on-call environment
- Considerable knowledge using and administering Splunk
- Staying up to date with the latest cybersecurity threats, vulnerabilities, and best practices
- Strong analytical and problem-solving skills
- Meticulous attention to detail to ensure thorough assessments and accurate reporting
- Excellent written and verbal communication skills to effectively convey findings and recommendations to technical and non-technical stakeholders
- Ability to work collaboratively with other cybersecurity professionals, IT staff, and external vendors
- Experience and skill in conducting audits or reviews of technical systems
- Experience working in a government environment
- Experience working in a distributed IT environment
- Ability to qualify for HSPD-12 card for use in two-factor authentication
Benefits
- Health, Dental, Vision, Life Insurance
- Paid Vacation
- 401K
- Long and Short-Term Disability
Related Guides
Related Categories
Related Job Pages
More Engineer Jobs
Engineer66 days ago
Full TimeRemote
As the need for nuclear energy grows, the future couldn’t be brighter. Join our vital mission to create lasting solutions for our planet’s greatest challenges. In this role, you are ready to shape the future of clean energy and make a long-lasting global impact. With us, anti...
Project managementEngineeringNuclear engineeringASME codeNRC regulationsSystems engineeringConfiguration managementBudgetingSchedulingStakeholder coordination
Engineer66 days ago
Full TimeRemoteTeam 10,001+Since 1971H1B Sponsor
Application Development Engineer for Kinaxis support and enhancements at Cardinal Health
OracleSQL
Engineer66 days ago
Full TimeRemoteTeam 10,001+Since 1971H1B Sponsor
Software engineer developing and enhancing 3PL commercial solutions
AEMAngularApacheCloudDockerERPGoogle Cloud PlatformGraphQLJavaJavaScriptKafkaKubernetesNode.jsPostgresReactSpringSpring BootSpringBoot
Project Engineer
Spriggs Excavation, Inc.We are a safety driven heavy civil construction company performing projects spanning several states.
Engineer66 days ago
Full TimeRemoteTeam 51-200H1B No Sponsor
Project Engineer assisting with civil construction across multiple states