SRE Cyber Tools - Splunk Admin.
$107.9k - $195.05kLeidos
More About the Role:Leidos is seeking a Site Reliability Engineer (SRE) Splunk Enterprise Administrator focused on Cyber support the largest IT services program for the Navy. Under the Service Management, Integration, and Transport (SMIT) program, the Leidos team delivers the core backbone of the Navy-Marine Corps Intranet, including cybersecurity services, network operations, service desk, and data transport. Leidos supports the Navy in unifying its shore-based networks and data management to improve capability and service while also saving significant dollars by focusing efforts under one enterprise network.As part of the SRE organization you will develop and execute tests focused on system resilience, performance underload, and failure scenarios. You will also work in tandem with other Site Reliability Engineers (SREs) and development teams to create automated testing frameworks that simulate real-world conditions that validate system behavior under normal and stress conditions, ensuring our services are resilient and meet established service level objectives (SLOs) The SRE will support the operations and maintenance of the enterprise network. Your work will contribute to the development of robust and scalable services that operate reliably in production.The Splunk Enterprise Administrator supports mission-critical cybersecurity operations by administering and maintaining distributed Splunk Enterprise platforms across hybrid cloud and on-premises environments. The role is responsible for daily platform operations, performance and ingestion monitoring, data onboarding support, incident troubleshooting, security compliance, documentation, and modernization activities in an Agile/DevOps operating culture.Key Metrics of Success for the Team: •Improved system reliability, as measured by adherence to Service Level Objectives (SLOs) and reduced Mean Time to Recovery (MTTR). •Comprehensive and regularly updated automated test coverage for all critical systems and infrastructure components. •Timely identification and resolution of performance bottlenecks and failure points. •Integration of automated testing into the CI/CD pipeline, ensuring continuous reliability validation. •Increased scalability and performance of systems under high load due to effective performance testing.What You'll Get to Do:•Administer, maintain, and perform daily Operations and Maintenance (O&M) for distributed Splunk Enterprise environments, including Search Heads, Indexers, Heavy Forwarders, Intermediate Forwarders, Universal Forwarders, and Deployment Servers across hybrid cloud and on-premises infrastructure.•Monitor platform health, data ingestion, indexing throughput, search performance, and retention utilization; troubleshoot data onboarding, parsing, field extraction, forwarding, indexing, and ingestion issues.•Support Splunk Cloud integrations and associated hybrid operational activities.•Maintain Splunk applications, dashboards, alerts, saved searches, and knowledge objects.•Support patching, vulnerability remediation, Security Technical Implementation Guide (STIG) compliance, and system hardening activities.•Support platform upgrades, migrations, infrastructure modernization, technology refresh, and automation initiatives using scripting and configuration-management tools.•Participate in incident response, outage troubleshooting, problem resolution, and root cause analysis.•Maintain operational documentation, architecture diagrams, runbooks, and standard operating procedures (SOPs), and coordinate with cybersecurity, network, server, engineering, and customer teams during operational and modernization activities.•Participate in after-hours support and an on-call rotation as required.You'll Bring These Qualifications:•Requires BS degree and 5-10 years of prior relevant experience or Master’s with 4-8 years of prior relevant experience.•U.S. Citizen and posses an active Secret Security Clearance.•Minimum of DoD 8570.01 IAT Level II Certification required.•Experience designing, developing, and maintaining operational dashboards, visualizations, and executive reporting in Splunk Enterprise and Splunk Cloud, including IT Service Intelligence (ITSI), Service Analyzer, Glass Tables, and KPI-driven service health monitoring. •Experience with automated script design, coding, debugging, and maintenance skills (using bash, python, etc.) preferred. •Ability to work onsite at Norfolk Naval Station Monday through Friday day shift. •Must have a vendor certification e.g., Splunk Enterprise Certified Admin, Splunk Cloud Certified Admin, Scaled Agile Framework (SaFe).•Strong communication, analytical, and problem-solving skills, ability to work in a team environment.•Minimum three years of experience administering Splunk Enterprise v9 and supporting distributed Splunk architectures in hybrid cloud and on-premises production environments.•Strong working knowledge of Splunk data ingestion pipelines, indexing, parsing, forwarding, search optimization, and retention management.•Experience administering and troubleshooting Red Hat Enterprise Linux (RHEL) 8 and/or RHEL 9 servers.•Working knowledge of cybersecurity monitoring and Security Information and Event Management (SIEM) operations, with demonstrated experience troubleshooting operational incidents in complex enterprise environments.•Working knowledge of TCP/UDP networking, SSL certificates, Syslog, REST APIs, and authentication integrations.•Experience using at least one scripting or automation language: Python, Bash, or PowerShell.•Strong troubleshooting, analytical, communication, and documentation skills, with the ability to work independently, manage competing priorities, collaborate across technical teams, and maintain a customer-focused approach in a high-tempo production environment.These Qualifications Would be Nice to Have:•Splunk Core Certified Power User and/or Splunk Enterprise Certified Admin certification. Experience supporting Splunk Cloud environments or integrations and both Splunk Enterprise v9 and v10.•Experience working in classified government or Department of Defense environments.•Familiarity with STIGs, the Risk Management Framework (RMF), vulnerability management, and compliance frameworks.•Familiarity with RHEL 10, DevOps practices, and Infrastructure-as-Code concepts.•Experience with automation or configuration-management tools such as Ansible, Jenkins, Chef, or Terraform.NGENIf you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:August 5, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $107,900.00 - $195,050.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Norfolk, VAType: Full time
$99k - $225k
Splunk SIEM Data Onboarding EngineerThe Opportunity: The Splunk SIEM Data Onboarding Engineer... ..., or CCSP Certification, and a DoD 8570 Cyber Security Service Provider -... ...experience in basic troubleshooting with tools such as tcpdump or wireshark, basic vi/vim...CyberSplunkFull timeContract workPart timeWork at officeLocal areaRemote work- ...truly make a difference. Job Responsibilities Utilize cyber security tools and applications, including ACAS, HBSS, Microsoft Defender for... ...Endpoint (MDE), Microsoft Defender for Identity (MDI), and Splunk, to monitor, analyze, and remediate security events....CyberSplunkFull timeFor contractorsLocal area
- ...issues. Assists in the review and update of cyber security policies, architectures and... ...CISSP, etc.) Experience with Cybersecurity tools such as ACAS/Nessus, RedSeal, Trellix Endpoint Security (formerly HBSS), Splunk, SCAP Compliance Checker, etc. Experience...CyberSplunkFor contractorsImmediate startFlexible hours
- ...for government and commercial clients. You’ll use Splunk and integrate it with other state-of-the-art tools like HBSS, Enterprise Security Manager (ESM), Network... ...implementation, and operation of leading security Cyber defense tools and technologies and apply in-depth defense...CyberSplunkTemporary workRelocation package
- ...Experience integrating Suricata with Splunk, or other SIEM solutions. Knowledge of... ...Management (ICAM), Software Development, Cyber and Network Security, System Engineering,... ...Assistance Candidate AI Usage Policy AI tools are an important part of daily work at...CyberSplunkTemporary workRelocation package
- ...(a), and HUBZone company. Job Summary: As a Forescout Cyber Security Engineer at Cinteot, you will play a critical role... ...data using enterprise or custom data aggregation and analysis tools, including Splunk. Ability to provide support in a Tier II IT operations...CyberSplunkPermanent employment
$75.2k - $158.1k
Job Title: Cyber Analyst Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret... ...level of leadership. * Knowledge and experience using DoD tools and capabilities for vulnerability assessments and compliance reporting...CyberFull timeContract workWork experience placementLocal areaRemote workFlexible hours$80.2k - $133.68k
...organizational resilience.Maintain current knowledge of emerging cyber threats, vulnerabilities, and regulatory changes that could... ...response, or health IT cybersecurity role.Proven experience with EDR tools and SIEM solutions, with preference for healthcare environments....CyberFull timeTemporary workWork experience placementRemote workShift work$90k
...platform including adding/removing infrastructure into the monitoring tool, SolarWinds updates, upgrades, patching and module... ...Personnel certification: CompTIA Cloud+ or GIAC Global Industry Cyber Security Professional (GICSP) or GIAC Security Essentials certification...Cyber- ...Date: Monday 17 August 2025 Requirement: Principal Technician (Cyber Security) Location: Norfolk, VA, US Full Time On-Site:... ...operational procedures, including the execution of specified automation tools/scripts. Contributes to maintenance and installation....CyberFull timeContract workWork experience placementLocal area
$88k - $91k
Job Title Security Operations Center Analyst (Cyber Threat Hunter) Location Chesapeake, VA 23320 US (Primary) Job Description Our team... ...data Operate and monitor intrusion-sensing and packet capture tools, such as Wireshark, WinDump, and TCPDump, as well as Security...CyberFull timeImmediate startWeekend workAfternoon shift$40k - $80k
...Location Portsmouth, VA, US Date Posted 2026-07-16 Category Cyber Subcategory Cyber Engineer Schedule Full-Time Shift Day Job... ...detailed information for selection, implementation techniques, and tools for the most efficient solution to meet business needs, including...CyberFull timeInterim roleRemote workShift work$86.8k - $198k
Cyber Automation EngineerThe Opportunity:Maintain responsibility for the successful installation, configuration, and integration of the... ...an understanding of IT infrastructure, networking, and security tools to ensure seamless data onboarding and high customer...CyberFull timeContract workPart timeWork at officeLocal areaRemote work- ...networks or standalone. You will manage the network monitoring tools used to monitor status of servers and equipment, the research and... ...required to obtain and maintain qualifications in DoDM 8140.03 Cyber Workforce Qualification and Department of Navy policies This position...CyberCivilian ContractorFull timePart timeInterim roleWork at officeLocal areaImmediate startRemote workRelocation
$180k - $205k
...Kubernetes, Docker, OpenShift).Leverage automation and orchestration tools such as Terraform, Ansible, CI/CD pipelines, and Docker to... ...operational tasks.Integrate Elastic with enterprise tools such as SIEMs, Splunk, CrowdStrike, and other telemetry sources.Monitor system health,...SplunkContract workImmediate start$100k
...partner that provides 24/7 security monitoring, managed security tooling, and after-hours coverage, so you are supported rather than on... ...ransomware, phishing, and ACH/payroll fraud. Support compliance with cyber-insurance and applicable data-handling requirements. Projects &...CyberFull timeWork at office$95k - $120k
...help cybersecurity professionals and organizations enhance their cyber-attack readiness. Get ready for an exciting adventure into the... ...role works closely with the Data Engineering team. ⚔️ Technology tools & weapons you’ll be using: Looker (primary) and Tableau SQL on BigQuery...CyberTemporary workRemote workHome office- ...The NCIA provides a wide range of services, including: Cyber Security: The NCIA provides advanced cybersecurity solutions to... ...structure. The personnel shall use the Purchaser's IT support tools and systems as necessary and will have limited delegated privileges...CyberPermanent employmentTemporary workInterim roleLocal areaImmediate start
$100k - $140k
...hardware and software selection, implementation techniques and tools for the most efficient solution to meet mission needs, including... ...analyzing alternatives; validating system performance; and establishing cyber security certifications and/or authority to operate (ATO) for...CyberContract workWork at officeImmediate startRemote work$70k - $90k
...conducting cybersecurity vulnerability and threat analysis; and support cyber incident-response by isolating potentially effected assets,... ...Experience with the Navy RMF Process Guide (RPG), and Navy A&A tools such as ACAS, eMASS and eMASSter. Proficient with Microsoft...CyberContract workWork at officeRemote work- ...StratasCorp in Chesapeake, VA is seeking a Security Operations Center Analyst (Cyber Threat Hunter) to monitor and defend against cybersecurity threats on-site. The role requires an active Secret clearance, IAT II, and Security+ certifications, with evening and weekend...CyberWeekend workAfternoon shift
- ...datacenter stack, including hardware, storage, operating system, hypervisors, applications, and associated management tools. Establishes and maintains cyber security posture for entrusted systems through application of sound cyber security engineering principles such as...CyberSeasonal workWork at officeLocal areaRemote work
- ...informed on operational technology types, capabilities, threats and cyber mitigations are key aspects of success in this position.... ...and organizational skills Experience using Microsoft Office tools and applications such as Word, PowerPoint, Excel and SharePoint...CyberFull timeContract workTemporary workWork at officeLocal areaFlexible hours
- ...Control (C2 of C2) or Assured C2 Process, Strategic Communications, Cyber Operations, Space Operations, Anti-Submarine Warfare,... ...events as required.Utilize the Master Scenario Events List (MSEL) tool to track storylines and specific events on a daily basis.Provide...CyberFor contractorsLocal areaRemote work
- ..., tracks, and monitors the problem using applicable systems and tools. May coordinate with other teams or departments to resolve user... ...Office 2019 or higher. ~ Must have the proper and current cyber security qualifications to perform IT privileged ~ administrative...CyberTemporary workWork at officeLocal areaFlexible hours
- ...Control (C2 of C2) or Assured C2 Process, Strategic Communications, Cyber Operations, Space Operations, Anti-Submarine Warfare,... ...events as required. Utilize the Master Scenario Events List (MSEL) tool to track storylines and specific events on a daily basis. Provide...CyberFor contractorsLocal areaRemote work
$75.2k - $158.1k
Job Title: Cyber SecurityJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * *Job DescriptionThe Opportunity:Join our team as a Skilled...CyberContract workWork experience placementLocal areaImmediate startFlexible hours- ...relationships and careers. Connect Talent Solutions is seeking qualified candidates for the position of Cybersecurity Analyst to provide Cyber Information Assurance (IA) and Security support on high-visibility contracts for the U.S. Navy. Position Description This...CyberContract workWork at office
- ...deploying software installation and patch packages using automated tools like Microsoft Endpoint Configuration Manager (MECM/SCCM) and... ...Manager (MECM/SCCM), System Center Operations Management (SCOM), and Splunk to diagnose and resolve issues, thereby optimizing system...SplunkWork at office
- ...executed by the OPTEVFOR Red Team or other organizations supporting cyber OT&E events. Additionally, this role functions as a subject... ...sector, and defense contractors on cyber capabilities and tools to meet the test requirements. Responsibilities: HQ Tasks...CyberTemporary workFor contractorsWork at officeImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SRE Cyber Tools - Splunk Admin.. Be the first to apply!
- licensing administrator Norfolk, VA
- administrator on duty Norfolk, VA
- cybersecurity administrator Norfolk, VA
- firm administrator Norfolk, VA
- admin support Norfolk, VA
- plant administrator Norfolk, VA
- program administrator Norfolk, VA
- hospice administrator Norfolk, VA
- remote admin Norfolk, VA
- healthcare administrator in training Norfolk, VA



