Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Splunk Administrator / SIEM Analyst

$100k - $150k

Spatial Front

Splunk Administrator / Siem Analyst We are seeking a Splunk Administrator / SIEM Analyst to support enterprise security monitoring, log ingestion, analytics, and incident response activities within a DISA-domain environment. The selected candidate will operate and administer Splunk and related SIEM/analytics platforms, support server and platform log onboarding, and help prepare analytics capabilities for OCI environments. This role requires hands-on experience with SIEM administration, security analytics, incident response support, and scripting/automation across tools such as Splunk, Elastic, and other analytics platforms. Experience with WAF, identity systems such as OHS/OAM, and WebLogic is highly desired. PeopleSoft experience is not required, but candidates should understand logging, monitoring, and analytics relevant to enterprise application environments. Location Crystal City, VA - On-Site/Hybrid Work Schedule Must be available to support either: Day Shift: 0800–1600 Swing Shift: 1600–0000 Key Responsibilities Administer, operate, and maintain Splunk and other SIEM/analytics platforms. Configure, monitor, and troubleshoot log ingestion pipelines from servers, applications, and enterprise platforms. Ensure reliable onboarding, normalization, and availability of security and operational logs. Develop and maintain searches, dashboards, alerts, reports, and analytics use cases. Support incident response (IR) activities through log analysis, event correlation, and investigative data support. Assist with tuning SIEM content to improve detection fidelity and reduce false positives. Support analytics and logging requirements associated with OCI readiness/preparation. Work within a DISA-domain environment and coordinate with stakeholders across security, infrastructure, and application teams. Support monitoring and analysis for technologies including WAF, identity/access management, OHS/OAM, and WebLogic. Create scripts and automation to improve SIEM administration, data onboarding, correlation, and reporting. Validate that server, application, and platform data sources are properly integrated into SIEM tools. Document configurations, data flows, standard procedures, and operational issues. Requirements Must be a U.S. Citizen with an active Secret Clearance Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent operational experience) 5+ years of dedicated engineering experience focused on log management and SIEM platforms. Certifications: Active CompTIA Security+ (IAT Level II compliant). Experience administering Splunk in an enterprise environment. Experience with SIEM operations, monitoring, and analytics. Working knowledge of incident response processes and security event investigation. Ability to support log ingestion, parsing, normalization, and platform/server onboarding. Experience scripting or automating tasks within SIEM or analytics platforms. Hands-on experience with one or more of the following: Splunk, Elastic, other SIEM/analytics platforms. Ability to work Day or Swing shift: 0800–1600 or 1600–0000. Experience operating in a DISA-domain or similarly controlled enterprise environment. Strong troubleshooting, analytical, and documentation skills. Desired Qualifications Experience with Web Application Firewalls (WAF). Experience with identity and access management systems, including OHS/OAM. Experience supporting or monitoring WebLogic environments. Familiarity with OCI logging, monitoring, or analytics preparation. Understanding of logging and analytics for enterprise application platforms. Experience with PeopleSoft is a plus, but not required. Preferred Skills SIEM content development, correlation rule tuning, and dashboard creation. Scripting with tools/languages used for automation and data handling in SIEM environments. Cross-team coordination with security, system administration, and application support teams. Ability to quickly identify gaps in log coverage and recommend remediation. Additional Information All candidates will be subject to a complete background check to include, but not limited to Criminal History, Education Verification, Professional Certification Verification, Verification of Previous Employment and Credit History. Public Trust background investigations can take approximately four to eight weeks and requires fingerprinting. Other Information For information on SFI's benefits please visit This is a full-time W2 position. Please no agencies, third parties, or corp-to-corp. Spatial Front Inc. is an Equal-opportunity Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Spatial Front Inc. participates in E-Verify. Salary Description $100,000-$150,000 Spatial Front

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Splunk Administrator / SIEM Analyst in Arlington, VA vacancy
  •  ...Job Description Job Description SIEM / Threat Monitoring Analysts About Blue Rose Consulting Group...  ...Minimum Requirements • 3+ years of SIEM administration, security monitoring, threat...  ...experience. • Hands-on experience with Splunk or another enterprise SIEM/log-... 
    Splunk
    Full time
    Contract work
    Work at office
    Overseas
    Shift work

    Blue Rose Consulting Group, Inc.

    Washington DC
    2 days ago
  •  ...needed using security tools such as ProofPoint, SIEM, and EnCase, etc.- Recognize potential, successful...  ...Event Management (SIEM) products such as QRadar and Splunk in a complex network environment and assist security analysts in building operational processes around the SIEM... 
    Splunk
    Work experience placement

    NTT DATA

    Arlington, VA
    5 days ago
  •  ...currently seeking a skilled SOC Analyst with an active Secret or Top...  ..., and Event Monitoring (SIEM) tools to identify security events...  ...Tenable Security Center administrator responsibilities, routine maintenance...  ...Audit Log Management using Splunk Tool. Validates hardware and... 
    Splunk
    Full time
    Local area
    Flexible hours

    Coalfire

    Arlington, VA
    1 day ago
  •  ...suites, with an emphasis on SIEM and growing towards SOAR solutionsKnowledge...  ...and managementTechnologies: Splunk ES, Tenable, CrowdStrike,...  ...do:Provide support for the administration, maintenance, configuration,...  ...and actions taken by the SOC analyst teamPrepare, provide, and... 
    Splunk
    Temporary work
    Work at office
    Remote work

    Fusion Technology

    Washington DC
    3 days ago
  • $96.09k - $111.68k

     ...OverviewID.me is seeking a developing SOC Analyst to join our growing Security Operations...  ...analyze security alerts using tools such as SIEM, IDS/IPS, and EDR.Perform initial triage...  ....Familiarity with SIEM platforms (e.g., Splunk, Chronicle) and endpoint or network security... 
    Splunk
    Full time
    Temporary work
    Work at office
    Remote work
    Flexible hours

    ID.me

    McLean, VA
    4 days ago
  • $52.29 per hour

     ...Summary Security Operations Center Analyst II (SOC) Arlington, VA Are you ready to...  ...for security event monitoring utilizing SIEM toolsets Detect, analyze, and respond...  ...Palo Alto, Cisco ASA, F5, tcpdump, Snort, Splunk, EMET, Bit9/Carbon Black, Stealthwatch, Ironport... 
    Splunk

    Chenega MIOS SBU

    Arlington, VA
    5 days ago
  • Leidos is seeking a Splunk Enterprise and Enterprise Security Administrator to maintain the NAVINTEL SIEM environment, engineer detection logic, develop dashboards, and support SOC operations from Suitland, MD. The role requires an Active TS/SCI clearance and deep Splunk... 
    Splunk

    Via Logic LLC

    Suitland, MD
    4 days ago
  •  ...today! JOB OVERVIEW The Insider Threat Analyst supports the Insider Threat Program Detection...  ...with one or more enterprise Insider Threat, DLP, SIEM, UEBA, or User Activity Monitoring (UAM) platforms such as Splunk, DTEX, Microsoft Purview, Proofpoint/ObserveIT,... 
    Splunk
    Work at office
    Local area

    MartinFed

    Washington DC
    4 days ago
  • $108.8k

     ...Data Analyst Oakton, VA Are you ready to enhance your skills and build your career...  ...Working closely with senior network engineers, Splunk engineers, and application SMEs, the...  ...cybersecurity and IT operations reporting, including SIEM and NDR tools Ability to develop clean... 
    Splunk

    Chenega Corporation

    Washington DC
    3 days ago
  •  ...nation’s vital interests. DESCRIPTION The Insider Threat Analyst supports the Insider Threat Program Detection and...  ...experience with one or more enterprise insider threat, DLP, SIEM, or UEBA/UAM tools (e.g., Splunk, DTEX, Proofpoint/ObserveIT, Microsoft Purview, Exabeam,... 
    Splunk

    Agile Defense

    Washington DC
    2 days ago
  •  ...for malicious cyber activity. BCMC is seeking Host Forensics Analysts to support this critical customer mission. Responsibilities...  ...WireShark Sleuth Kit/ Autopsy Magnet Axiom Cyber Snort Splunk or other SIEM Tools (ArcSight, LogRythm, Elastic, Etc.) Other EDR Tools (... 
    Splunk
    Contract work
    For contractors
    Local area
    Immediate start
    Remote work
    Flexible hours

    BCMC

    Arlington, VA
    2 days ago
  •  ...cFocus Software seeks an Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is...  ...rule refinement, to include usage of Velociraptor, Splunk ES and Sentinel. 1 year of experience in federal incident... 
    Splunk
    Work at office

    cFocus Software Incorporated

    Washington DC
    2 days ago
  • $87.1k - $157.45k

     ...frequent opportunities available for SOC Analysts to join our team in Alexandria, VA...  ...protocols, traffic flow, system administration, OSI model, defense-in-depth and...  ...of at least one enterprise SIEM platform (e.g. ArcSight, Splunk, Nitro/McAfee Enterprise Security... 
    Splunk
    Full time
    Work experience placement
    All shifts
    Shift work

    Leidos

    Alexandria, VA
    4 days ago
  • $86.8k - $198k

    Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7...  ...incident documentation while leveraging SIEM, EDR, IDS, IPS, SOAR, and forensic tools...  ...coordination of response actionsExperience using Splunk for security monitoring, log analysis,... 
    Splunk
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Bethesda, MD
    3 days ago
  • $75.79k - $150k

     ...Additionally, you will mentor and coach junior analysts, providing technical guidance, reviewing...  ...hosted information systems. Experience using Splunk software or an equivalent Security Information and Event Management (SIEM) product for continuous monitoring, incident... 
    Splunk
    Full time
    Work experience placement
    Local area
    Worldwide

    HII Mission Technologies Division

    Springfield, VA
    5 days ago
  • Chenega MIOS in Arlington, VA seeks a Security Operations Center Analyst I to monitor devices, manage incidents, and coordinate recovery...  ...You'll work with a suite of security tools including FireEye, Splunk, Wireshark, Palo Alto, and Nessus, in a 24/7 NOSC environment... 
    Splunk

    Njvc LLC

    Arlington, VA
    4 days ago
  • $77.6k - $176k

    SIEM Platform Engineer Work with clients and peers to build a high-performing system using...  ...quality visualizations and alerts that analyst can use for threat hunting, maintain...  ...of experience with SIEM platforms such as Splunk Enterprise Security, Elastic Security, Kibana... 
    Splunk
    Contract work
    Local area

    Booz Allen Hamilton

    Arlington, VA
    3 days ago
  • cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position...  ...refinement, to include usage of Velociraptor, Splunk ES and Sentinel. 1 year of experience in federal... 
    Splunk
    Work at office

    cFocus Software Incorporated

    Washington DC
    3 days ago
  • $107.9k - $195.05k

    Splunk SOAR AdministratorLocation: Suitland, MDSecurity Clearance: Active TS/SCI RequiredJoin...  ...?Leidos is hiring a Splunk SOAR Administrator to join our team in Suitland, MD. In this...  ...Security Information and Event Management (SIEM) platforms that support threat detection... 
    Splunk
    Full time
    Work at office

    Leidos

    Suitland, MD
    2 days ago
  • $101.53k - $132.69k

     ...VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee...  ...Security Information and Event Management (SIEM) tools Excellent experience with Security...  ...tools such as Tenable, IBM BigFix, and Splunk Oversees creation and accurate documentation... 
    Splunk
    Permanent employment
    Contract work
    Temporary work
    Work at office
    Local area

    Oxley Enterprises Inc

    Alexandria, VA
    5 days ago
  •  ...and your creativity will be rewarded.About the PositionThe Data Analyst will support a U.S. Government Agency by providing advanced...  ...including Excel, Access, and Purview), Power BI, Python, Tableau, and Splunk. The contractor shall be a U.S. Citizen and have the ability to... 
    Splunk
    Full time
    For contractors
    Work at office

    Dexis Consulting Group

    Washington DC
    2 days ago
  •  ...Insider Threat Program Analyst Company Summary Arlo Solutions...  ...National Oceanic and Atmospheric Administration's (NOAA's) Internal Risk...  ....g., cybersecurity telemetry/SIEM, User Access Management (UAM)...  ...solutions, SIEM platforms (e.g., Splunk), and case management systems... 
    Splunk
    Contract work
    For contractors

    Arlo Solutions

    Silver Spring, MD
    1 day ago
  •  ...Description Job Description Incident Response Analyst (Task 4 – Federal Cybersecurity Contract)...  ...tooling-CrowdStrike, FireEye (Trellix), Splunk, NetWitness, and Magnet AXIOM-and is...  ...initial triage of security events from SIEM, EDR, NDR, and log sources, including... 
    Splunk
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy Consulting Group

    Washington DC
    a month ago
  • $62k - $141k

     ...including technical documentation, to form an ATO’s body of evidenceKnowledge of eMASS or XACTA, Splunk, Nessus, and Trellix ESSAbility to perform systems administration in Windows or Linux, including basic troubleshooting, installation, configuration, monitoring system... 
    Splunk
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    2 days ago
  • $70 - $85 per hour

     ...federal law enforcement agency, this opportunity is for an Intrusion Analyst role providing technical expertise to confront complex cyber...  ...forensic tools such as Magnet Axiom, X-Ways, FTK, Volatility, Splunk, ELK Stack, and relevant open-source utilities. Correlate data... 
    Splunk
    Contract work
    Remote work

    Seneca

    Washington DC
    6 days ago
  • $108k - $128k

    DescriptionActioNet has an immediate opportunity for an Splunk Administrator requiring a Public Trust - Level 5 Investigation, located in Washington, DC. ActioNet is an IT service provider and solutions integrator headquartered in Vienna, VA that works with the Federal... 
    Splunk
    Full time
    Immediate start

    ActioNet

    Washington DC
    5 days ago
  • $104k - $166k

    Senior Incident Response Analyst Job Locations: US Requisition ID: 2026-169782 Position...  ...drills. Own detection and monitoring. Drive SIEM and SOAR content development, log source...  ...SIEM and SOAR platforms (for example Splunk or Microsoft Sentinel), including detection... 
    Splunk
    Contract work
    Shift work

    Peraton

    Reston, VA
    5 days ago
  • $80k - $128k

     ...Incident Response Team (CIRT) Analyst job at Peraton. Beltsville,...  ...operational, logistical, and administrative support for Bureau of Diplomatic...  ...systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel). Demonstrated...  ...and Event Management (SIEM) platforms (e.g. Splunk,... 
    Splunk
    Interim role
    Internship
    Work at office
    Local area
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    4 days ago
  •  ...experienced Security Operations Center (SOC) Analyst to support the monitoring, detection,...  ...remediation Analyze security activity using SIEM, EDR, and AWS security tools including...  ...certification Experience with Splunk and AWS GovCloud Basic Python, PowerShell... 
    Splunk

    Mantis Security Corporation

    Reston, VA
    14 days ago
  • $91.3k - $184.9k

     ...change that moves missions and the government forward! Cloud Administrator provides operational support across cloud environments, ensuring...  ...: Turbot (highly preferred) DevOps/Ops: Ansible, ServiceNow, Splunk, Jira ServiceDesk, GitHub, Cloudockit, ScienceLogic Containerization... 
    Splunk
    Live in
    Work at office
    Local area

    Accenture Federal Services

    Washington DC
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Splunk Administrator / SIEM Analyst. Be the first to apply!