Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
SPLUNK Engineer/ Architect (S-NET) image - Rise Careers
Job details

SPLUNK Engineer/ Architect (S-NET)

Overview

Abile Group has an exciting and challenging opportunity for a Splunk Cyber Software Engineer supporting an Intelligence Community Customer. 

 

The right candidate will possess the below skills and qualifications and be ready to handle all responsibilities independently and professionally.

Responsibilities

  • Implements, tests, and operates advanced software security techniques in compliance with technical reference architecture.
  • Performs on-going security testing and code review to improve software security.
  • Troubleshoots and debugs issues that arise.
  • Provides engineering designs for new software solutions to help mitigate security vulnerabilities.
  • Contributes to all levels of the architecture and maintains technical documentation.
  • Consults team members on secure coding practices. Develops a familiarity with new tools and best practices.
  • Designing, implementing, and maintaining SIEM and SOAR solutions.
  • Design and implement threat detection, automate incident response processes, integration of various security tools with SIEM and SOAR platforms via APIs.
  • Maintain SIEM applications to collect and aggregate IDS and IPS data from network sensors, raw data from collection agents, firewalls, proxy servers, DLP, antivirus, vulnerability scanner elements, and other security-relevant devices.
  • Utilize expertise in Splunk "Search" language, Splunk Dashboards, Reports, Lookup Tables, and Summary Indexes. Build Splunk dashboards that take inputs from various data sources such as application logs / operating system logs / middleware logs / network feeds etc. and identify / highlight anomalous activities on the dashboards by their severity levels.
  • Perform troubleshooting and provide assistance with the creation of Splunk search queries and dashboards.

Qualifications

Clearance Required: TS/SCI.

 

Degree and Years of Experience: 5 to 8 years with BS/BA or 3 to 5 years with MS/MA or 0 to 2 years with PhD.

 

Required Certification: 

  • 8140/8570 IAT Level III certification.

Desired Certification:

  • Splunk Architect.
  • Splunk Certified Administrator certification.

Required Skills:

  • Proven experience as a Splunk Administrator or similarly named Splunk focused role.
  • Strong understanding of Splunk architecture, components, and deployment options.
  • Proficiency in Splunk Search Processing Language (SPL) for creating complex search queries and reports.
  • Experience with Splunk data ingestion methods, including forwarders, HTTP Event Collector (HEC), and scripted inputs.
  • Familiarity with Splunk Enterprise Security (ES), Qumolos, and Splunk SOAR is a plus.
  • Solid understanding of IT infrastructure, including networking, operating systems, and security principles.
  • Excellent problem-solving skills and attention to detail.
  • Strong communication and collaboration abilities.

About Abile Group, Inc.

Abile Group, Inc. was formed in July 2004 to partner with the Intelligence Community and their Contractors in the areas of Enterprise Analytics & Performance Management, IT & Systems Engineering and Program & Project Management. We have significant experience with the Federal Government and are an EDWOSB dedicated to our employees and clients. We are looking for high performing employees who enjoy providing advice and guidance along with solutions development and implementation support, crafted by combining industry best practices with the clients’ subject matter experience and Abile’s breadth of expertise. 

Hiring Statement

Abile is committed to hiring the most qualified and best fit person for the job - always has, always will. Anyone requiring reasonable accommodations should email careers@abilegroup.com with requested details. A member of the HR team will respond to your request within 2 business days. 

 

Please review our current job openings and apply for the positions you believe may be a fit. If you are not an immediate fit, we will also keep your resume in our database for future opportunities.

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About SPLUNK Engineer/ Architect (S-NET), Abile Group

Join Abile Group as a Splunk Engineer/Architect, where you'll be at the forefront of enhancing cybersecurity for the Intelligence Community! Located in Annapolis Junction, this opportunity is ideal for skilled professionals who are passionate about implementing and operating advanced software security techniques. As a Splunk Engineer/Architect, you will be responsible for a variety of exciting tasks, including performing ongoing security testing and code review, troubleshooting issues, and providing innovative engineering designs for new software solutions aimed at mitigating security vulnerabilities. Your expertise will be essential in designing, implementing, and maintaining SIEM and SOAR solutions. You'll also be creating dynamic Splunk dashboards that monitor data from various sources to identify anomalous activities effectively. With your strong communication and collaboration skills, you'll also have the chance to consult with team members on secure coding practices. If you have a knack for tackling complex problems with a keen attention to detail and a desire to develop your skills within a supportive environment, we would love to hear from you. Join us at Abile Group, where your contributions will be valued and your career will flourish!

Frequently Asked Questions (FAQs) for SPLUNK Engineer/ Architect (S-NET) Role at Abile Group
What are the key responsibilities of a Splunk Engineer/Architect at Abile Group?

As a Splunk Engineer/Architect at Abile Group, your primary responsibilities will include implementing advanced software security techniques, performing ongoing security testing, troubleshooting and debugging issues, and providing engineering designs for new software solutions. You will also maintain SIEM applications, develop Splunk dashboards, and consult with team members on secure coding practices.

Join Rise to see the full answer
What qualifications do I need to apply for the Splunk Engineer/Architect position at Abile Group?

To apply for the Splunk Engineer/Architect position at Abile Group, candidates should have a TS/SCI clearance and possess between 5 to 8 years of relevant experience with a bachelor's degree, or 3 to 5 years with a master's degree, or 0 to 2 years with a PhD. Required certifications include a 8140/8570 IAT Level III certification, while desired certifications include Splunk Architect and Splunk Certified Administrator.

Join Rise to see the full answer
What skills are essential for a Splunk Engineer/Architect role at Abile Group?

Essential skills for the Splunk Engineer/Architect role at Abile Group include a strong understanding of Splunk architecture and components, proficiency in Splunk Search Processing Language (SPL), experience with data ingestion methods, and familiarity with security principles. Excellent problem-solving skills and the ability to communicate effectively are also crucial for success in this role.

Join Rise to see the full answer
What tools and platforms will I work with as a Splunk Engineer/Architect at Abile Group?

As a Splunk Engineer/Architect at Abile Group, you will work with various tools and platforms, including Splunk Enterprise Security (ES), Qumolos, and Splunk SOAR. You'll design and implement threat detection systems and automate incident response processes while integrating various security tools via APIs.

Join Rise to see the full answer
How does Abile Group support professional growth for Splunk Engineers/Architects?

Abile Group is committed to the professional growth of its employees, including Splunk Engineers/Architects. The company encourages employees to develop their skills through ongoing training in industry best practices and new tools. You'll have opportunities to refine your expertise and contribute effectively in a collaborative environment.

Join Rise to see the full answer
Common Interview Questions for SPLUNK Engineer/ Architect (S-NET)
What is your experience with Splunk and how have you utilized it in previous roles?

When answering this question, highlight specific projects where you used Splunk, detailing your role and the impact of your contributions. Explain how you utilized the search language to create dashboards or reports and mention any security incidents you monitored or responded to using Splunk.

Join Rise to see the full answer
Can you explain the importance of SIEM and SOAR in cybersecurity?

In your response, define both SIEM (Security Information and Event Management) and SOAR (Security Orchestration, Automation and Response) and discuss how they contribute to an organization's security posture. Use examples from your experience to illustrate the effectiveness of these tools in threat detection and incident response.

Join Rise to see the full answer
How do you approach troubleshooting issues within Splunk?

Describe your systematic approach to troubleshooting, including data analysis, hypothesis formulation, and methods you use to test solutions. Share an example where your troubleshooting led to a significant resolution or improved functionality within Splunk.

Join Rise to see the full answer
What is your process for creating effective Splunk dashboards?

Discuss the steps you take to create effective Splunk dashboards, including gathering requirements, understanding user needs, and choosing relevant data sources. Mention how you ensure that dashboards are user-friendly and visually communicate important metrics.

Join Rise to see the full answer
How do you stay updated on the latest developments in Splunk and cybersecurity best practices?

When answering, mention specific resources such as blogs, online courses, webinars, and certification programs you engage with to stay informed about Splunk trends and cybersecurity best practices. This shows your commitment to continuous learning.

Join Rise to see the full answer
Can you provide an example of a complex search query you built in Splunk?

Prepare your response by summarizing the task for which the search query was created and focusing on the search query's complexity. Discuss the thought process behind it and the results it produced, emphasizing how it addressed a specific challenge.

Join Rise to see the full answer
How do you ensure compliance with security standards when implementing software solutions?

Articulate the steps you take to ensure compliance, including researching relevant standards, integrating security protocols, and conducting validation testing. Provide an example where you successfully achieved compliance in a previous role.

Join Rise to see the full answer
What methodologies do you prefer for software security testing?

Explain your preferred methodologies for software security testing, such as penetration testing, static and dynamic analysis. Relate any relevant tools you have used and how these methodologies helped identify vulnerabilities.

Join Rise to see the full answer
How do you collaborate with team members when developing secure coding practices?

Discuss how you foster collaboration, such as holding training sessions, sharing security resources, and encouraging a culture where team members feel comfortable discussing secure coding practices. Highlight the impact your collaborative efforts had on team performance.

Join Rise to see the full answer
Why do you want to join Abile Group as a Splunk Engineer/Architect?

Express your excitement about the specific challenges and opportunities presented by Abile Group and mention what aspects of their mission resonate with you. Link your skills and experiences to the growth goals of the company, demonstrating your alignment with their vision.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User

Become a Cyber Security Operations Specialist at Abile Group, where you'll play a vital role in enhanced cybersecurity measures for the Intelligence Community.

Posted 9 days ago

Join DMV IT Service LLC as a Power Platform Lead and leverage your expertise in Microsoft’s Power Platform suite to enhance IT operations.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony

Join Citi as an Infrastructure Security Reliability Engineer (SRE) and leverage your expertise to ensure robust and reliable technology solutions for clients worldwide.

Photo of the Rise User
Posted 18 hours ago

Seeking a skilled SAP CPI Middleware consultant to drive integration solutions in a remote environment.

The United Firm is on the lookout for a talented AI Specialist to lead the automation of their immigration processes using innovative AI solutions.

Join KMS Technology as a Senior Site Reliability Engineer to leverage AWS expertise in building innovative solutions for healthcare challenges.

Photo of the Rise User
General Dynamics Information Technology Hybrid US, Loudoun County, VA; Virginia, Chantilly, Loudoun County, VA
Posted 5 days ago

Become a crucial part of GDIT's mission as a Cyber Technical Analyst Advisor, ensuring national cybersecurity through advanced technology and operational support.

Photo of the Rise User

The University of Maryland Medical System is looking for a highly skilled Application System Analyst IV to enhance operations and support services in their health system.

Photo of the Rise User
Posted 7 days ago

Join Roof Stacks as an IT Assistant Specialist and help shape the future of technology in our innovative team.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 19, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!