Splunk SIEM Data Onboarding Engineer
$99k - $225kBooz Allen Hamilton
Splunk SIEM Data Onboarding Engineer Job Number: R0244323 The Opportunity The Splunk SIEM Data Onboarding Engineer is responsible for managing and enhancing our Splunk environment to ensure seamless data ingestion, analysis, and visualization. This role demands a deep understanding of Splunk architecture, data onboarding, and user management to support business needs and security operations. What You’ll Work On Design, deploy, and manage Splunk infrastructure. Develop and maintain Splunk dashboards, queries, and alerts. Integrate Splunk with various data sources to ensure comprehensive data ingestion. Monitor and troubleshoot Splunk performance issues. Collaborate with cross-functional teams to gather requirements and provide Splunk solutions. Implement and enforce best practices for Splunk data management and retention. Provide user training and support for Splunk-related activities. You Have 2+ years of experience managing and configuring Splunk, and configuring Cribl sources, destinations, routes, and collectors. 2+ years of experience in Splunk architecture, including indexers, search heads, forwarders, and deployment server. 2+ years of experience building pipelines to parse, normalize, enrich, mask or dedup, and route data to Splunk. 2+ years of experience authoring or maintaining props.conf, transforms.conf, inputs.conf, outputs.conf, and packaging apps or TAs. 2+ years of experience in Linux and Windows administration, including file paths, services, permissions, and log locations. 1+ years of experience with Splunk REST API for automation and operational tasks. 1+ years of experience with Cribl Redmap or JavaScript functions. Active TS/SCI clearance; willingness to take a polygraph exam. Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, Master’s degree and 1+ years of experience supporting IT projects and activities, or 10+ years of experience supporting IT projects and activities in lieu of a degree. Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX, CCNP Security, CISA, CISSP, GCED, GCIH, or CCSP Certification, and a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date. Nice If You Have 2+ years of experience with networking fundamentals, including TCP/UDP, TLS, syslog transport, firewall ports, and common transport issues. 2+ years of experience in basic troubleshooting with tools such as tcpdump or wireshark, basic vi/vim usage, setfacl, and SELinux. 1+ years of experience with STIGs or other organizational hardening standards working in regulated environments. 1+ years of experience with regex skills for field extraction and event breaking. Experience in SPL for validation, troubleshooting, and basic dashboards. Experience with scripting languages such as Python, Bash, or PowerShell. Experience with load‑balancer fundamentals. Knowledge of common log formats such as syslog, Windows Event, JSON, CSV, and XML. Knowledge of Git for code version control. Knowledge of Ansible playbooks. Clearance Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required. Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work‑life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full‑time and part‑time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract‑specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date. Identity Statement As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Candidate AI Usage Policy AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided . Work Model Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility. Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility. Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law. #J-18808-Ljbffr Booz Allen Hamilton
- MartinFed seeks a SIEM Data Engineer to own the Splunk data pipeline, from onboarding new sources to ensuring normalized, high‑quality data for analysis and detection. You will collaborate with Platform and Detection Engineers to implement robust data ingestion and parsing...Splunk
- MartinFed is seeking a SIEM Data Engineer to own the data pipeline for Splunk across government agencies. You will ingest, parse, normalize, and validate logs... ...with Platform and Detection engineers to onboard new sources, configure inputs, build field extractions...Splunk
- ...an empowered workforce as an engine to drive its customers' missions... ...today! JOB OVERVIEW The SIEM Data Engineer is responsible for the... ...of data flowing into the Splunk platform across government agencies... ...the data pipeline - from onboarding new log and event sources to...SplunkWork at officeLocal areaImmediate start
$84.6k - $193k
...solutions that perform large-scale cyber data analytics. You will apply advanced... ...protect millions of users. Feature Engineering: Propose new feature ideas, design real... ...-driven insights. Familiarity with SIEM technologies like Splunk or Elasticsearch. Ability to...SplunkWork at officeRemote workFlexible hours- MartinFed is seeking a Security Operations Center (SOC) Engineer III to provide advanced cybersecurity monitoring and incident... ...efforts to strengthen security through effective use of SIEM technologies like Splunk. The ideal candidate will have 10+ years of IT security...Splunk
- MartinFed is seeking a SIEM Detection Engineer to develop, tune, and maintain detection content in Splunk ES for government missions. You will own correlation searches, alerts, and security use cases aligned to MITRE ATT&CK, while incorporating threat intelligence and...Splunk
- ...Consulting Group, every role is an opportunity to drive real-world results and make a difference. 3+ years SIEM administration and threat monitoring experience (Splunk preferred) Experience with OSINT monitoring, digital forensics, and incident correlation Familiarity...SplunkContract work
- Akima is seeking a SIEM Administrator / Security Monitoring Engineer to manage and optimize security monitoring platforms for government clients in Alexandria... ...solutions using technologies like Elastic Stack and Splunk, focusing on secure configurations and operational...SplunkInterim role
- Leidos Inc. is seeking a Splunk Engineer SME to support a strategic Cybersecurity Task Order in Arlington, VA. The candidate will design... ...Certified Architect certification and expertise in data onboarding. Candidates should also demonstrate excellent communication...Splunk
- COMFORT SYSTEMS is seeking a Splunk Content Developer in Arlington, Virginia to support a strategic cybersecurity task order. The... ...Responsibilities include developing automation solutions, overseeing data onboarding processes, and collaborating with cross-functional teams....Splunk
- Bank of America is seeking a Senior Engineer for SIEM Platform Engineering & Operations in Washington, DC. The role involves engineering, monitoring... ..., and optimizing the firm's SIEM ecosystem, including Splunk and Microsoft Sentinel. The ideal candidate will have over 6...Splunk
- ...requires a clear understanding of Elastic and SIEM processes. Candidates must be US citizens... ...three years of experience using Elastic/Splunk query languages and monitoring SIEM dashboards. Responsibilities include designing data ingestion, integrating Elastic, and...Splunk
- ...Alexandria, VA is seeking a Mid-Level Application Developer to join our team. The Engineer will lead CBP SOC projects, launch applications into the AWS Cloud, manage Splunk logging, and implement SIEM, coordinating with the customer to prioritize issues and drive the schedule...Splunk
- SIEM Administrator / Security Monitoring Engineer Tuvli is seeking a highly motivated, self‑directed and experienced individual... ...experience in Elastic Stack and Splunk, while supporting other security... ...backend system administration, data ingestion pipelines, and front‑end...SplunkInterim role
- ...experience related to Information Assurance/Cyber Engineering requirements, development, and implementation. Ability... .../managing Security Incident and Event Management (SIEM) and centralized auditing tools (i.e., Splunk, PowerStrux). Experience with managing and...Splunk
$119.7k - $199.3k
...Role Matters We are seeking a skilled and experienced Senior Data Engineer for our Data and AI team to contribute to the development of innovative... ...Performance Monitoring : Experience with observability tools (Splunk, Datadog) for maintaining application health and performance....Splunk- ...in either core Java or Spark 3 years of hands‑on experience in Data Warehousing and Data Marts and Data/Dimensional Modeling and ETL... ...Experience in performance monitoring tools such as Ganglia or Nagios or Splunk or DynaTrace Experience on continuous build and test process...SplunkContract workImmediate start
$130k - $165k
...digital transformation, human-centered design, data analytics and visualization, and... ...an integral part of the program, the Data Engineer leads the team in evaluating new or emerging... ...and performance using CloudWatch and Splunk. Mentor junior engineers and conduct code...SplunkFull timeTemporary workRemote work$112k - $179k
Peraton is seeking a Data Engineer to support our classified customer in Washington, DC. Peraton has been supporting our classified customer... ...with 10 years of relevant experience Have knowledge of Splunk AWS experience Neo4J knowledge or any graph database experience...Splunk- ...Professional Services team. This role involves providing implementation, development, and deployment of Qmulos apps while primarily using Splunk as a security platform. You will also help design dashboards, keep abreast of cybersecurity trends, and support high-profile...Splunk
$113k - $188k
Job Family Data Science Consulting Travel Required Up to 10% Clearance Required Ability... ...What You Will Do Guidehouse seeks a Data Engineer to support in building, optimizing, and... ...validation, monitoring, and logging (e.g., Splunk, CloudWatch, Kibana). Support data...SplunkTemporary workFlexible hours- ...an empowered workforce as an engine to drive its customers' missions... ...mediocrity. Job Overview The SIEM Detection Engineer is... ...and security use cases built in Splunk, aligning detections to frameworks... ...threat intelligence teams, and the Data and Platform Engineers to...SplunkWork at officeLocal area
- ...an empowered workforce as an engine to drive its customers' missions... ...mediocrity. Job Overview The SIEM responsible for the... ...deployment, and ongoing health of the Splunk platform that underpins security... ...Platform Engineer partners with Data and Detection Engineers, IT...SplunkWork at officeLocal area
$150k - $190.7k
Senior Engineer SIEM Platform Engineering & Operations The Senior Engineer SIEM Platform Engineering & Operations is responsible... ...and optimizing the firm's SIEM ecosystem including Splunk, Microsoft Sentinel, and associated data pipelines to ensure data quality, platform...SplunkShift workDay shift$131.3k - $237.35k
Leidos is looking for a Splunk Engineer SME in Arlington, Virginia. The position involves installing and maintaining the Splunk infrastructure, gathering requirements, and assisting end users with dashboards and reports. The ideal candidate should have 12-15 years of experience...Splunk- ...for skilled cybersecurity technologists eager to tackle significant tech challenges. In this role, you'll leverage your expertise in SPLUNK and security principles while working alongside top talent. The ideal candidate will have at least 4 years of experience in...Splunk
- MartinFed is seeking a Platform Engineer to own Splunk architecture, deployment, and ongoing health across government agencies. You will manage... ...scalable, and high‑performing environment. Collaboration with Data Engineers and IT teams is essential to deliver a stable data...Splunk
- A cybersecurity solutions company in Washington, D.C., seeks an experienced security engineer to design and implement Splunk Enterprise Security. The ideal candidate has over 7 years of experience, including significant involvement with Splunk and Cribl. Responsibilities...Splunk
- ...in Arlington, Virginia is searching for a Senior Cybersecurity Engineer to enhance operations for our government client. This on-site role... ...of five years of cybersecurity experience with a focus on Splunk enterprise monitoring. The ideal candidate will have a solid background...Splunk
- Qmulos is seeking a cybersecurity technologist in Washington D.C. to work on complex client Splunk deployments and to develop security-focused content. Candidates must have a Top Secret Security Clearance and extensive experience with SPLUNK and security event management...Splunk
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Splunk SIEM Data Onboarding Engineer. Be the first to apply!
- splunk engineer Washington DC
- splunk developer Washington DC
- data engineer analytics Washington DC
- data engineer manager Washington DC
- remote data engineer Washington DC
- junior data engineer remote Washington DC
- senior cloud data engineer Washington DC
- data platform engineer Washington DC
- data infrastructure engineer Washington DC
- aws data engineer Washington DC

