Cybersecurity Splunk Engineer
$146k - $234kPeraton
US Requisition ID
View phone number on click.appcast.io Position Category
Cyber Security Clearance
Public Trust Responsibilities
**Position is Contingent Upon Award**
Peraton seeks innovative professionals who thrive in mission-critical environments and are passionate about protecting our national critical infrastructure. This is your chance to make an impact on one of the nation's vital organizations, working alongside leaders in cybersecurity engineering, operations, forensics, threat analysis, data science, and systems integration.
Join Peraton in supporting a large infrastructure operator to defend its corporate and operations networks from nation-state attacks, ensure the confidentiality, integrity, and availability of its systems and operations infrastructure, and comply with various federal and internal cybersecurity mandates. As a cybersecurity engineer in a 24x7x365 Cybersecurity Operations Center (CSOC), the position provides for the efficient operations and performance of the corporate Security Information and Event Management (SIEM) and Endpoint Detection and Response (EDR) systems, Security Orchestration, Automation, and Response (SOAR) systems such as Splunk, CrowdStrike, Nessus Security Center, Axonius, Swimlane, Websense, NetFlow and other tools to identify and investigate anomalies and thwart cyberattacks.
The Cybersecurity Splunk Engineer duties include management and optimization of the SIEM/EDR/SOAR platforms to effectively collect, analyze, and respond to security threats in real-time, focusing on integrating log sources, creating detection rules, tuning alerts, automating workflows, and supporting incident response. The Cybersecurity Engineer will work with CSOC analysts, systems administrators, and managers to perform daily cybersecurity functions.
Primary Responsibilities:
The Cybersecurity Splunk Engineer responsibilities will include:
- Corporate IT side operation, patching, performance and tuning of the CSOC SIEM, EDR, SOAR and related CSOC systems such as Splunk, Axonius, CrowdStike, Swimlane, Websense, NetFlow, their system applications, log aggregators, forwarders and data storage systems' confidentiality, availability, integrity, and optimization, data input, and updating of data models and threat models
- Optimize and scale the corporate Splunk deployment, including forwarder architecture, index clustering and integration with security tools
- Coordination with the Operations Technology SIEM/EDR/SOAR cybersecurity engineer counterpart for the ongoing operation and health of core Splunk and related systems hardware, common information model and development of web framework, APIs, HTM for web Threat Widget integration
- Collection, analysis, and response of security threats in real-time, focusing on integrating log sources, creating detection rules, tuning alerts, automating workflows, and supporting incident response to improve the company's overall security posture and regulatory compliance.
- Develop and tune system correlation rules, create/customize dashboards, workbooks, and reports to identify suspicious system activities and network traffic and potential security incidents for analysis by CSOC cybersecurity analysists, tune SIEM/EDRSOAR to reduce false positives (alert fatigue) improve alert fidelity, and optimize data usage
- Responsible for SIEM/EDR system monitoring and verification of log processing, troubleshooting, onboard existing and new log data sources (such as servers, firewalls, cloud services), ensure proper and secure log data ingestion, parsing, and storage of and managing the log lifecycle
Additional Responsibilities:
- Create new log and threat source types, field extractions, processing, etc. integrate CSOC tools with other CSOC and OT systems and threat intelligence platforms and configure systems for automated response actions
- Act as Point of Contact (POC) for SIEM/EDR ingestion of new data based on internal company customer requirements for network and system monitoring; and coordinate with other organizations such as IT and field operations to meet their security monitoring and threat detection system needs
- Responsible for developing and maintaining all SIEM/EDR/SOAR System Security Plans (SSP) and other documentation required, including systems technical descriptions, architectural diagrams and operational procedures
- Act as a Subject Matter Expert (SME) for the SIEM/EDR/SOAR and related CSOC systems assisting security analysts in investigating alerts and providing context for incident response
- Act as POC for defining new Splunk capabilities and services in direct support of CSOC system optimization and industry best practices and requirements
- Represent the CSOC systems in daily/shift operations briefings and document relevant information about notable events and hand-off responsibilities to the next shift cybersecurity engineer
- Maintain knowledge of the latest cyber-attacks, recommended responses, and industry best practices released by and government and private sectors
#PLABS26
QualificationsRequired:
- U.S. Citizenship Required
- Must have the ability to obtain / maintain a DOE L Level or DOE Secret clearance
- Degree in computer science, engineering, cybersecurity, information technology, or related field
- Minimum of 16 years experience with BS/BA; Minimum of 14 years with MS/MA; Minimum of 10 years with PhD
- Experience in roles such as systems administration, security monitoring, threat and risk assessment, incident response, CSOC operations
- Hold Splunk training certifications such as Splunk Core Certified User, Splunk Cloud Certified Admin, Splunk Enterprise Certified Architect
- Demonstratable proficiency in working with SIEM/EDR/SOAR systems such as Splunk, Axonius, CrowdStrike, Nessus Security Center, Swimlane, NetFlow, network security devices, firewalls, cloud security
- Excellent verbal and written communications skills
- Ability to communicate technical issues to both infrastructure owners and management
- Must be able to work on a 4-month 24x7x365 shift rotation schedule
Desired:
- Experience with Python/PowerShell, TCP/IP, VPNs, network segmentation, network protocols (DNS, DNCP, SNMP, SCADA)
- Hold a cybersecurity certification such as CompTIA Security+, CISSP, CEH
- Hold advanced Splunk certified training certificates such as Splunk Certified Cybersecurity Defense Engineer, Splunk SOAR Certified Automation Developer, Splunk IT Service Intelligence Certified Admin
- Demonstrated problem-solving skills, knowledge of CSOC operations, or broad understanding of risk management, be able to methodically assess and test hypotheses, work independently, think innovatively and be enthusiastic to conduct research and develop tools that advance the state of the art in cybersecurity
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.
Target Salary Range $146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.$112k - $179k
...Splunk Engineer Job Locations US-VA-Herndon | US-MD-Riverdale Requisition ID 2026-164340 Position Category... ...government operations. This role bridges IT operations and cybersecurity by delivering analytics solutions that enhance situational awareness...SuggestedContract workShift workNight shift- ...government and commercial clients. You’ll use Splunk and integrate it with other state-of-... ...~ Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure... ...Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support...SuggestedTemporary workRelocation package
- ...iQuasar is seeking to fill the Splunk SOAR Engineer for our customer in the McLean, VA. At iQuasar, we strive to provide the next generation... ...experience. ~ Robust understanding of identity, SIEM, cybersecurity, and infrastructure concepts. ~ Strong Linux and...SuggestedPermanent employmentWork experience placement
- ...iQuasar is seeking to fill the Sr. Splunk Engineer for our customer in Chantilly, VA. At iQuasar, we strive to provide the next generation... ...(Federal Managed and Advanced Services) to join our cybersecurity team. The ideal candidate will be responsible for implementing...SuggestedPermanent employment
$87.1k - $157.45k
...Description Job Description The Splunk Engineer 1is equivalent to anexperiencedengineer at the Department of Homeland Security... ...be a member of the Enterprise Splunk team, which falls under Cybersecurity Engineering, and will berequiredto interact with end users to...SuggestedLocal areaImmediate start- ...Cyber Splunk Systems Engineer TENICA is looking to hire a Cyber Splunk Systems Engineer. Must have active TS/SCI with CI poly. Position... ...being met Provide assessments to the customer on the cybersecurity contractor's program performance. Develop, maintain, and...Contract workFor contractors
- ...Lead Cyber Risk Manager (Splunk Engineer) Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have... ...government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation...Work experience placementLocal area
- ...Splunk Engineer (TS/SCI) Reston, VA, USA Full-time Clearance: Top Secret/SCI Job Description The Directorate for Mission Services (MS), Chief Information Officer (CIO) established the Enterprise Senior Information Technology Advisors Program to support the...Full timeContract work
- ...Job Description A remote customer is seeking a Splunk Engineer who will be responsible for the following: Responsible for day-day operation of large Splunk environment Troubleshooting new and current data collection issues Troubleshooting system issues that...Remote work
$135k - $216k
...architecture leadership for the program IT, Cybersecurity, and Data Operations; design secure,... ...AWS GovCloud architectures, lead cloud engineering strategy, and ensure alignment with... ...design telemetry, logging (CloudWatch/Splunk/ELK) and metrics for dashboards; implement...Contract workRemote workShift work- ...Cloud Engineer Subject Matter Expert GDIT is seeking a skilled and experienced Cloud Engineer Subject Matter Expert with expertise... ...infrastructure. Focusing on Infrastructure as Code (IaC) and cybersecurity best practices, you will guide customers in securing complex,...Work experience placement
$200k - $250k
...Zachary Piper Solutions is seeking a skilled Cloud Engineer SME to join our team in Reston, VA. As a Cloud Engineer SME, you will... ...working alongside software engineers, cloud architects, and cybersecurity professionals to design and orchestrate secure cloud solutions...Remote work$80k - $95k
IsI Enterprises is seeking a Cloud Engineer, you will support the design, implementation,... ...SIEM) solutions like Microsoft Sentinel or Splunk. Contribute to threat modeling... .... Up to 3 years of experience in IT, cybersecurity, or cloud computing. Basic knowledge...Flexible hours- ...HPC Cloud Performance Engineer LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires... ...full scope consulting services in information technology, cybersecurity, and analyst workforce development. At our company,...Temporary workFor contractorsImmediate startFlexible hours
- ...Cloud Infrastructure Engineer LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires... ...Engineering, Network Engineering, Information Systems, Cybersecurity, Electrical Engineering, Data Science, etc. ALTERNATE EXPERIENCE...Temporary workFor contractorsImmediate startFlexible hours
$50 - $62 per hour
...Client of Insight Global is looking for a Remote Sr. Network Engineer to support their team. The ideal candidate will support the design... ...architecting Zero Trust-aligned solutions to meet federal cybersecurity standards. The candidate will monitor and troubleshoot...Remote work$80k - $95k
...Enterprises) is seeking a motivated and detail-oriented Junior Cloud Engineer to join our team. The ideal candidate will have hands-on... ...senior engineers. Apply a basic understanding of CMMC (Cybersecurity Maturity Model Certification) principles to client environments...Contract workInterim roleFlexible hours- ...secure networking architectures, and resilient operational capabilities. This role requires close coordination with engineering, operations, cybersecurity, and networking teams to standardize cloud deployment practices and improve operational reliability....Work at officeRemote work
$135k - $216k
...DoD/Army environments. Review and adjudicate complex cloud engineering designs for compliance with Army policy, RMF requirements,... ...multienvironment (onprem, cloud, hybrid) architectures. Integrate cybersecurity controls, identity/access management, logging/monitoring, and...Contract workShift work$146k - $234k
...transportation infrastructures-working alongside experts in aviation, engineering, data science, and systems integration to drive the next... ...of enterprise architecture, systems engineering, cybersecurity, and operations to deliver actionable strategies that enable...Contract workShift work- ...Role: Cloud Engineering Intern Location: Reston, VA (Hybrid) Clearance Level: Must be eligible to obtain a security clearance... ...Currently pursuing a Bachelor's Degree in Business Administration, Cybersecurity, Computer Science, or a related technical field Technical...Internship
$90k - $120k
...Cloud Engineer Dark Wolf Solutions is seeking a Cloud Engineer with Networking and Help Desk experience to support out Operational... ...Government security clearance Experience with DoD/DISA cybersecurity policies The salary range is estimated to be between $90...Work experience placement- ...operational, and compliance criteria Cloud Architecture & Engineering - Design and implement secure cloud solutions in AWS GovCloud... ...latency, mission-critical workloads at federal facilities Cybersecurity & Compliance - Collaborate with cybersecurity teams to...
- ...Cloud Engineer LOCATION Reston, VA 20190 CLEARANCE TS/SCI Full Poly (Please note this position requires full U.S.... ...DEGREE (Focus) Computer Science, Information Technology, Cybersecurity, Software Engineering, Computer Engineering, Data Science, Cloud...Temporary workFor contractorsImmediate startFlexible hours
$104k - $166k
...consolidation, and hosting strategies. Oversee end-to-end engineering lifecycle for cloud-hosted systems: requirements, design, integration... ..., logging/monitoring, IAM/Zero Trust controls, and other cybersecurity/infrastructure controls. Drive prototyping,...Contract workShift work$104k - $166k
...Cloud Engineer, Senior Job Locations US-VA-Herndon Requisition ID 2026-164932 Position Category... ...continuous monitoring. Develop technical designs, CONOPS, cybersecurity strategies, test plans, and proofofconcept prototypes to validate...Contract workShift work- ...problems, coupled with demonstrated experience designing enterprise cybersecurity solutions utilizing cloud-based tools for Federal government... ...experience, combined with 5 years of hands-on enterprise IT engineering experience Experience implementing technical solutions...Remote work
$66k - $106k
...Cloud Engineer, Journeyman Job Locations US-VA-Herndon Requisition ID 2026-164934 Position Category... ...of the following: ~ Bachelor's degree in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or...Contract workShift work- ...Splunk Engineer Hybrid - Baltimore, CA Top skills Deploying Splunk in production Working Linux/windows agent Python Role Description The candidate selected for this role will be part of the T. Rowe Price Reliability and Integrations Engineering...
- ...Splunk/ AWS Engineer Immediate need for a talented Splunk/ AWS Engineer with experience in the Mortgage Industry. This is a 4+ Months Contract opportunity with long-term potential and located in McLean, VA. Responsibilities: AWS CFT Development Bootstrap...Contract workImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Splunk Engineer. Be the first to apply!
- splunk Herndon, VA
- remote cyber security Herndon, VA
- cyber security incident responder Herndon, VA
- senior cybersecurity engineer Herndon, VA
- cyber security part time Herndon, VA
- cybersecurity software engineer Herndon, VA
- cyber security Herndon, VA
- IT cyber security Herndon, VA
- splunk engineer
- splunk architect

