Splunk Administrator / SIEM Analyst
$100k - $150kSpatial Front
Splunk Administrator / Siem Analyst We are seeking a Splunk Administrator / SIEM Analyst to support enterprise security monitoring, log ingestion, analytics, and incident response activities within a DISA-domain environment. The selected candidate will operate and administer Splunk and related SIEM/analytics platforms, support server and platform log onboarding, and help prepare analytics capabilities for OCI environments. This role requires hands-on experience with SIEM administration, security analytics, incident response support, and scripting/automation across tools such as Splunk, Elastic, and other analytics platforms. Experience with WAF, identity systems such as OHS/OAM, and WebLogic is highly desired. PeopleSoft experience is not required, but candidates should understand logging, monitoring, and analytics relevant to enterprise application environments. Location Crystal City, VA - On-Site/Hybrid Work Schedule Must be available to support either: Day Shift: 0800–1600 Swing Shift: 1600–0000 Key Responsibilities Administer, operate, and maintain Splunk and other SIEM/analytics platforms. Configure, monitor, and troubleshoot log ingestion pipelines from servers, applications, and enterprise platforms. Ensure reliable onboarding, normalization, and availability of security and operational logs. Develop and maintain searches, dashboards, alerts, reports, and analytics use cases. Support incident response (IR) activities through log analysis, event correlation, and investigative data support. Assist with tuning SIEM content to improve detection fidelity and reduce false positives. Support analytics and logging requirements associated with OCI readiness/preparation. Work within a DISA-domain environment and coordinate with stakeholders across security, infrastructure, and application teams. Support monitoring and analysis for technologies including WAF, identity/access management, OHS/OAM, and WebLogic. Create scripts and automation to improve SIEM administration, data onboarding, correlation, and reporting. Validate that server, application, and platform data sources are properly integrated into SIEM tools. Document configurations, data flows, standard procedures, and operational issues. Requirements Must be a U.S. Citizen with an active Secret Clearance Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent operational experience) 5+ years of dedicated engineering experience focused on log management and SIEM platforms. Certifications: Active CompTIA Security+ (IAT Level II compliant). Experience administering Splunk in an enterprise environment. Experience with SIEM operations, monitoring, and analytics. Working knowledge of incident response processes and security event investigation. Ability to support log ingestion, parsing, normalization, and platform/server onboarding. Experience scripting or automating tasks within SIEM or analytics platforms. Hands-on experience with one or more of the following: Splunk, Elastic, other SIEM/analytics platforms. Ability to work Day or Swing shift: 0800–1600 or 1600–0000. Experience operating in a DISA-domain or similarly controlled enterprise environment. Strong troubleshooting, analytical, and documentation skills. Desired Qualifications Experience with Web Application Firewalls (WAF). Experience with identity and access management systems, including OHS/OAM. Experience supporting or monitoring WebLogic environments. Familiarity with OCI logging, monitoring, or analytics preparation. Understanding of logging and analytics for enterprise application platforms. Experience with PeopleSoft is a plus, but not required. Preferred Skills SIEM content development, correlation rule tuning, and dashboard creation. Scripting with tools/languages used for automation and data handling in SIEM environments. Cross-team coordination with security, system administration, and application support teams. Ability to quickly identify gaps in log coverage and recommend remediation. Additional Information All candidates will be subject to a complete background check to include, but not limited to Criminal History, Education Verification, Professional Certification Verification, Verification of Previous Employment and Credit History. Public Trust background investigations can take approximately four to eight weeks and requires fingerprinting. Other Information For information on SFI's benefits please visit This is a full-time W2 position. Please no agencies, third parties, or corp-to-corp. Spatial Front Inc. is an Equal-opportunity Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Spatial Front Inc. participates in E-Verify. Salary Description $100,000-$150,000 Spatial Front
- ...Job Description Job Description SIEM / Threat Monitoring Analysts About Blue Rose Consulting Group... ...Minimum Requirements • 3+ years of SIEM administration, security monitoring, threat... ...experience. • Hands-on experience with Splunk or another enterprise SIEM/log-...SplunkFull timeContract workWork at officeOverseasShift work
- ...needed using security tools such as ProofPoint, SIEM, and EnCase, etc.- Recognize potential, successful... ...Event Management (SIEM) products such as QRadar and Splunk in a complex network environment and assist security analysts in building operational processes around the SIEM...SplunkWork experience placement
- ...currently seeking a skilled SOC Analyst with an active Secret or Top... ..., and Event Monitoring (SIEM) tools to identify security events... ...Tenable Security Center administrator responsibilities, routine maintenance... ...Audit Log Management using Splunk Tool. Validates hardware and...SplunkFull timeLocal areaFlexible hours
- ...suites, with an emphasis on SIEM and growing towards SOAR solutionsKnowledge... ...and managementTechnologies: Splunk ES, Tenable, CrowdStrike,... ...do:Provide support for the administration, maintenance, configuration,... ...and actions taken by the SOC analyst teamPrepare, provide, and...SplunkTemporary workWork at officeRemote work
$96.09k - $111.68k
...OverviewID.me is seeking a developing SOC Analyst to join our growing Security Operations... ...analyze security alerts using tools such as SIEM, IDS/IPS, and EDR.Perform initial triage... ....Familiarity with SIEM platforms (e.g., Splunk, Chronicle) and endpoint or network security...SplunkFull timeTemporary workWork at officeRemote workFlexible hours$52.29 per hour
...Summary Security Operations Center Analyst II (SOC) Arlington, VA Are you ready to... ...for security event monitoring utilizing SIEM toolsets Detect, analyze, and respond... ...Palo Alto, Cisco ASA, F5, tcpdump, Snort, Splunk, EMET, Bit9/Carbon Black, Stealthwatch, Ironport...Splunk- Leidos is seeking a Splunk Enterprise and Enterprise Security Administrator to maintain the NAVINTEL SIEM environment, engineer detection logic, develop dashboards, and support SOC operations from Suitland, MD. The role requires an Active TS/SCI clearance and deep Splunk...Splunk
- ...today! JOB OVERVIEW The Insider Threat Analyst supports the Insider Threat Program Detection... ...with one or more enterprise Insider Threat, DLP, SIEM, UEBA, or User Activity Monitoring (UAM) platforms such as Splunk, DTEX, Microsoft Purview, Proofpoint/ObserveIT,...SplunkWork at officeLocal area
$108.8k
...Data Analyst Oakton, VA Are you ready to enhance your skills and build your career... ...Working closely with senior network engineers, Splunk engineers, and application SMEs, the... ...cybersecurity and IT operations reporting, including SIEM and NDR tools Ability to develop clean...Splunk- ...nation’s vital interests. DESCRIPTION The Insider Threat Analyst supports the Insider Threat Program Detection and... ...experience with one or more enterprise insider threat, DLP, SIEM, or UEBA/UAM tools (e.g., Splunk, DTEX, Proofpoint/ObserveIT, Microsoft Purview, Exabeam,...Splunk
- ...for malicious cyber activity. BCMC is seeking Host Forensics Analysts to support this critical customer mission. Responsibilities... ...WireShark Sleuth Kit/ Autopsy Magnet Axiom Cyber Snort Splunk or other SIEM Tools (ArcSight, LogRythm, Elastic, Etc.) Other EDR Tools (...SplunkContract workFor contractorsLocal areaImmediate startRemote workFlexible hours
- ...cFocus Software seeks an Insider Threat Analyst to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is... ...rule refinement, to include usage of Velociraptor, Splunk ES and Sentinel. 1 year of experience in federal incident...SplunkWork at office
$87.1k - $157.45k
...frequent opportunities available for SOC Analysts to join our team in Alexandria, VA... ...protocols, traffic flow, system administration, OSI model, defense-in-depth and... ...of at least one enterprise SIEM platform (e.g. ArcSight, Splunk, Nitro/McAfee Enterprise Security...SplunkFull timeWork experience placementAll shiftsShift work$86.8k - $198k
Incident Response Analyst, SeniorThe Opportunity: You will serve as a key member of a 24x7... ...incident documentation while leveraging SIEM, EDR, IDS, IPS, SOAR, and forensic tools... ...coordination of response actionsExperience using Splunk for security monitoring, log analysis,...SplunkFull timeContract workPart timeWork at officeLocal areaRemote work$75.79k - $150k
...Additionally, you will mentor and coach junior analysts, providing technical guidance, reviewing... ...hosted information systems. Experience using Splunk software or an equivalent Security Information and Event Management (SIEM) product for continuous monitoring, incident...SplunkFull timeWork experience placementLocal areaWorldwide- Chenega MIOS in Arlington, VA seeks a Security Operations Center Analyst I to monitor devices, manage incidents, and coordinate recovery... ...You'll work with a suite of security tools including FireEye, Splunk, Wireshark, Palo Alto, and Nessus, in a 24/7 NOSC environment...Splunk
$77.6k - $176k
SIEM Platform Engineer Work with clients and peers to build a high-performing system using... ...quality visualizations and alerts that analyst can use for threat hunting, maintain... ...of experience with SIEM platforms such as Splunk Enterprise Security, Elastic Security, Kibana...SplunkContract workLocal area- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position... ...refinement, to include usage of Velociraptor, Splunk ES and Sentinel. 1 year of experience in federal...SplunkWork at office
$107.9k - $195.05k
Splunk SOAR AdministratorLocation: Suitland, MDSecurity Clearance: Active TS/SCI RequiredJoin... ...?Leidos is hiring a Splunk SOAR Administrator to join our team in Suitland, MD. In this... ...Security Information and Event Management (SIEM) platforms that support threat detection...SplunkFull timeWork at office$101.53k - $132.69k
...VA 22311 We are seeking a Cybersecurity Analyst / Incident Response Coordinator to oversee... ...Security Information and Event Management (SIEM) tools Excellent experience with Security... ...tools such as Tenable, IBM BigFix, and Splunk Oversees creation and accurate documentation...SplunkPermanent employmentContract workTemporary workWork at officeLocal area- ...and your creativity will be rewarded.About the PositionThe Data Analyst will support a U.S. Government Agency by providing advanced... ...including Excel, Access, and Purview), Power BI, Python, Tableau, and Splunk. The contractor shall be a U.S. Citizen and have the ability to...SplunkFull timeFor contractorsWork at office
- ...Insider Threat Program Analyst Company Summary Arlo Solutions... ...National Oceanic and Atmospheric Administration's (NOAA's) Internal Risk... ....g., cybersecurity telemetry/SIEM, User Access Management (UAM)... ...solutions, SIEM platforms (e.g., Splunk), and case management systems...SplunkContract workFor contractors
- ...Description Job Description Incident Response Analyst (Task 4 – Federal Cybersecurity Contract)... ...tooling-CrowdStrike, FireEye (Trellix), Splunk, NetWitness, and Magnet AXIOM-and is... ...initial triage of security events from SIEM, EDR, NDR, and log sources, including...SplunkContract workRemote workMonday to Friday
$62k - $141k
...including technical documentation, to form an ATO’s body of evidenceKnowledge of eMASS or XACTA, Splunk, Nessus, and Trellix ESSAbility to perform systems administration in Windows or Linux, including basic troubleshooting, installation, configuration, monitoring system...SplunkFull timeContract workPart timeWork at officeLocal areaRemote work$70 - $85 per hour
...federal law enforcement agency, this opportunity is for an Intrusion Analyst role providing technical expertise to confront complex cyber... ...forensic tools such as Magnet Axiom, X-Ways, FTK, Volatility, Splunk, ELK Stack, and relevant open-source utilities. Correlate data...SplunkContract workRemote work$108k - $128k
DescriptionActioNet has an immediate opportunity for an Splunk Administrator requiring a Public Trust - Level 5 Investigation, located in Washington, DC. ActioNet is an IT service provider and solutions integrator headquartered in Vienna, VA that works with the Federal...SplunkFull timeImmediate start$104k - $166k
Senior Incident Response Analyst Job Locations: US Requisition ID: 2026-169782 Position... ...drills. Own detection and monitoring. Drive SIEM and SOAR content development, log source... ...SIEM and SOAR platforms (for example Splunk or Microsoft Sentinel), including detection...SplunkContract workShift work$80k - $128k
...Incident Response Team (CIRT) Analyst job at Peraton. Beltsville,... ...operational, logistical, and administrative support for Bureau of Diplomatic... ...systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel). Demonstrated... ...and Event Management (SIEM) platforms (e.g. Splunk,...SplunkInterim roleInternshipWork at officeLocal areaWorldwideAfternoon shift- ...experienced Security Operations Center (SOC) Analyst to support the monitoring, detection,... ...remediation Analyze security activity using SIEM, EDR, and AWS security tools including... ...certification Experience with Splunk and AWS GovCloud Basic Python, PowerShell...Splunk
$91.3k - $184.9k
...change that moves missions and the government forward! Cloud Administrator provides operational support across cloud environments, ensuring... ...: Turbot (highly preferred) DevOps/Ops: Ansible, ServiceNow, Splunk, Jira ServiceDesk, GitHub, Cloudockit, ScienceLogic Containerization...SplunkLive inWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Splunk Administrator / SIEM Analyst. Be the first to apply!
- cloud admin Arlington, VA
- cloud administrator Arlington, VA
- backup administrator Arlington, VA
- admin support Arlington, VA
- test administrator Arlington, VA
- health care administrator Arlington, VA
- trust administrator Arlington, VA
- remote admin Arlington, VA
- department administrator Arlington, VA
- hotel admin Arlington, VA


