Splunk SOAR Administrator
$107.9k - $195.05kLeidos
Splunk SOAR AdministratorLocation: Suitland, MDSecurity Clearance: Active TS/SCI RequiredJoin a team committed to a mission! At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainable. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.Are you ready for your next career challenge?Leidos is hiring a Splunk SOAR Administrator to join our team in Suitland, MD. In this role, you will provide engineering, operations, and technical support for Security Information and Event Management (SIEM) platforms that support threat detection, compliance, and security incident management for the Office of Naval Intelligence's Hopper Global Communications Center (HGCC). You will help develop and automate cybersecurity operations while supporting mission critical defensive cyber capabilities.Primary ResponsibilitiesDesign, deploy, and maintain EAC backend architecture.Administer the SOAR platform, including configuration, asset integrations, and custom fields.Design, develop, test, and maintain automated SOAR playbooks for alert triage, enrichment, and risk based response.Integrate SOAR with Splunk Enterprise Security, ticketing systems, and threat intelligence feeds.Manage clustering, replication, indexing performance, and license usage.Apply DISA STIGs, SRGs, and NAVINTEL Information Assurance baselines.Maintain version control, approval workflows, and playbook governance.Configure and maintain the secure transmission of Audit.XML records to Intelligence Community partners through ITS and troubleshoot transmission failures.Implement standard incident response workflows aligned with MITRE ATT&CK, NIST SP 800-61, and HGCC N62 Defensive Cyber Operations procedures.Travel may be required between the National Maritime Intelligence Center (NMIC) and other designated CONUS and OCONUS locations in support of program requirements.Required QualificationsBachelor's degree in Computer Science, Information Technology, Information Assurance, or a related discipline with 8+ years of relevant experience, or a Master's degree with 6+ years of relevant experience. 15+ years of experience, including at least 10 years supporting LAN/WAN technologies, may be considered in lieu of a degree.Active TS/SCI security clearance.Active IAT Level III certification (such as CISSP).8+ years of engineering experience supporting Computer Network Defense (CND).6+ years of experience with Splunk, including Splunk Add-ons, Apps, Technology Add-ons (TAs), and Universal Forwarder.Expert knowledge of Splunk, including Splunk Enterprise, Splunk Enterprise Security, and Splunk SOAR.Significant experience with the System/Software Development Life Cycle (SDLC).Strong analytical and problem solving skills.Effective verbal and written communication skills.PreferredExpert knowledge of Splunk and its components, including Splunk Enterprise, Splunk Enterprise Security, and Splunk User Behavior Analytics (UBA).DABAOPP1NITESONIIf you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.Original Posting:September 9, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $107,900.00 - $195,050.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.SummaryLocation: Suitland, MDType: Full time
- We are hiring a Splunk SOAR Administrator to join our team in Suitland, MD. In this role, you will provide engineering, operations, and technical support for Security Information and Event Management (SIEM) platforms that support threat detection, compliance, and security...SplunkWork at office
$107.9k - $195.05k
Splunk AdministratorLocation: Suitland, MDSecurity Clearance: Active TS/SCI RequiredLeidos is hiring a Splunk Administrator to join our team in Suitland, MD. In this role, you will to support our Navy customer in Suitland, MD. You will manage, optimize, and secure enterprise...SplunkFull time- Leidos is seeking a Splunk Administrator to support our Navy customer in Suitland, MD. You will manage, optimize, and secure enterprise Splunk environments to strengthen security monitoring, log analytics, and defensive cyber operations. Responsibilities include configuring...Splunk
$140k - $190k
Job DescriptionEverforth ECS is seeking a Sr. TORQ/SOAR Engineer to join our team in Arlington, VA (Hybrid).This position is contingent... ...TORQ with enterprise security tools such as Elastic Stack, Splunk, CrowdStrike, cloud workloads, and containerized platforms.Deploy...SplunkContract work- ...Job Description Job Description Job Title: SOAR Automation Engineer Location: Washington, DC (Hybrid / on-site collaboration... ...integrations on a leading SOAR platform (Palo Alto Cortex XSOAR, Splunk SOAR, or Microsoft Sentinel). Deep proficiency with RESTful...SplunkContract work
$108k - $128k
DescriptionActioNet has an immediate opportunity for an Splunk Administrator requiring a Public Trust - Level 5 Investigation, located in Washington, DC. ActioNet is an IT service provider and solutions integrator headquartered in Vienna, VA that works with the Federal...SplunkFull timeImmediate start$91.3k - $184.9k
...change that moves missions and the government forward! The Cloud Administrator provides operational support across cloud environments,... ...: Turbot (highly preferred) DevOps/Ops: Ansible, ServiceNow, Splunk, Jira ServiceDesk, GitHub, Cloudockit, ScienceLogic Containerization...SplunkLive inWork at officeLocal area- ...proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint... ...services (Docker, Kubernetes, etc.) Linux administration experience Cloud infrastructure experience... ...Kubernetes (ECK), Kafka, Beats, and/or Splunk Experience using Agile methodologies...SplunkFull timeRemote workWork from home
$107.9k - $195.05k
Splunk Enterprise and Enterprise Security Administrator Location: Suitland, MDClearance Required: Active TS/SCILeidos is seeking a Splunk Enterprise and Enterprise Security Administrator to maintain the NAVINTEL SIEM environment, engineer detection logic, develop dashboards...SplunkFull time$110k - $126k
...digital forensic analysis, and performing malware analysis. Ideal candidates should have experience with forensic tools like EnCase and Splunk, as well as a strong foundational understanding of operating systems and networking. The annual salary range is $110,000 - $126,000...Splunk- ...and operational reporting. Manage analyst teams supporting: Splunk, Microsoft Sentinel, CrowdStrike, Sysmon, Windows... ...Microsoft Sentinel, CrowdStrike, EDR/XDR platforms, SOAR technologies, and cloud security monitoring. Deep understanding...SplunkFull time
- ...indicators, and attack patterns. Support automation and SOAR integration initiatives. Brief executives and technical leadership... ..., or detection engineering programs. ~ Experience with: ~ Splunk, ~ Sentinel, ~ CrowdStrike, ~ EDR telemetry, ~ detection...SplunkFull time
$107.9k - $195.05k
...and investigating alerts from cybersecurity tools.Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as...SplunkFull timeWork at office$87.1k - $157.45k
...and investigating alerts from cybersecurity tools.Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as...SplunkFull timeWork at office- ...including at least three years leading SIEM administration and detection engineering in an... ...Demonstrated hands-on SIEM engineering depth — Splunk strongly preferred given USAC's... ...Qualifications Experience integrating SIEM with SOAR and conditional access platforms. Log...SplunkFull timeContract workShift workNight shift
$100k - $116k
...Description: * This position is contingent upon a future opening with Gunnison. Salary: $100,000 - $116,000/year The Splunk Cloud Administrator will support IT and cybersecurity operations for the CDC by designing, implementing, and managing Splunk Enterprise...SplunkContract workWork at officeFlexible hours$131.8k - $290k
...response or support during outages. Desired:- CISSP, OSCP, GCIH- ITIL, Agile, or PMP familiarity/certification- Experience with SOAR platforms (e.g. Splunk, Microsoft Sentinel)- Hands-on exposure to third-party cloud security tooling (CASBs, CNAAPs, SD-WANs)- Previous...SplunkContract workWork experience placementWork at officeFlexible hours- ...CloudWatch, KMS, S3, and Lambda Strong experience establishing observability and incident management practices using New Relic, Splunk, Splunk On-Call, and AWS CloudWatch Experience with platform-level testing frameworks and tools including Gatling, JMeter, Playwright...SplunkLocal area
$160k - $190k
...secure network operations. Experience using tools such as ForeScout, Cisco ISE, Stealthwatch/Cisco Secure Network Analytics, and Splunk. Experience maintaining continuous network visibility and enforcing network security measures. Advanced network engineering experience...SplunkWork at office$107.9k - $195.05k
...evaluating emerging technologies, and leading the engineering and administration of cybersecurity capabilities across the environment.... ...Security Information and Event Management (SIEM) platforms such as Splunk, Microsoft Sentinel, and Elastic.Experience with enterprise network...SplunkFull timeLocal area$170k - $195k
...whom is recognized, and highly regarded, within the network and security communities. Job Description Ashburn is seeking a Senior Splunk Engineer to support a federal cybersecurity architecture opportunity. This Key Personnel role will support enterprise SIEM operations...Splunk- ...stakeholders and client leadership. Guide deployment and integration of SOC technologies such as SIEM (Splunk, Elastic), EDR (CrowdStrike, Microsoft Defender), SOAR (Cortex XSOAR), and vulnerability scanners (Tenable.sc, Qualys). Develop and maintain program...SplunkContract workFlexible hours
- ...an emphasis on SIEM and growing towards SOAR solutionsKnowledge of deploying, developing... ...operations, and managementTechnologies: Splunk ES, Tenable, CrowdStrike, Lookout,... ...desirableWhat you'll do:Provide support for the administration, maintenance, configuration, patching,...SplunkTemporary workWork at officeRemote work
$86.8k - $198k
..., and routing3+ years of experience with SIEM platforms such as Splunk Enterprise Security, Elastic Security, Microsoft Sentinel, and Google... ...detection or anomaly-based behavioral analysisExperience with SOAR platforms such as Swimlane, XSOAR, or PhantomExperience with...SplunkFull timeContract workPart timeWork at officeLocal areaRemote work$73.45k - $132.78k
ITSM AdministratorLocation: Suitland, MDClearance: Active TS/SCILeidos is seeking an ITSM Administrator to join our team in Suitland, MD, supporting a mission focused environment for our customer. You will be responsible for the administration, configuration, and continuous...Full timeWork experience placement- ...CloudWatch, and related analytics services.Experience developing dashboards, reports, and visualizations utilizing Tableau, Kibana, Splunk, and other business intelligence platforms.Experience supporting production AI/ML deployments, model monitoring, model optimization...SplunkLocal area
- ...skills, including experience delivering executive briefings and incident communications Hands-on experience with SIEM (Splunk, Elastic), SOAR (Cortex XSOAR), and EDR platforms (CrowdStrike, Microsoft Defender). Expertise in malware analysis, reverse engineering,...SplunkContract workFlexible hours
- ...RMF and NIST guidelines. Engineer secure configurations for SIEM, SOAR, EDR, and vulnerability management platforms. Support Tier 2/3 SOC analysts by developing advanced correlation rules for Splunk and optimizing detection workflows. Support SOC operations by...SplunkContract workFlexible hours
- ...Threat Hunt Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This... ...investigations. Perform analysis utilizing Splunk Enterprise Security, Microsoft Sentinel, Splunk SOAR, CrowdStrike, Qualys, ServiceNow, Jira, and...SplunkFull timeWork at office
- ...executive briefings and incident communications Expertise in threat intelligence platforms (TIPs) and SIEM tools (Splunk, Elastic). Familiarity with SOAR platforms and automation for threat detection and response. Experience with malware reverse engineering and...SplunkFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Splunk SOAR Administrator. Be the first to apply!
- hospital administrator Suitland, MD
- arts admin Suitland, MD
- admin support Suitland, MD
- plant administrator Suitland, MD
- admin data entry Suitland, MD
- program administrator Suitland, MD
- assisted living administrator Suitland, MD
- clinic administrator Suitland, MD
- daycare administrator Suitland, MD
- long term care administrator Suitland, MD



