Senior Cyber Risk Manager (Splunk Engineer) jobs in United States
cer-icon
Apply on Employer Site
company-logo

MITRE · 1 week ago

Senior Cyber Risk Manager (Splunk Engineer)

MITRE is a not-for-profit corporation committed to tackling the nation's toughest challenges. The Senior Cyber Risk Manager will support cybersecurity efforts by managing Splunk environments, ensuring data ingestion, and maintaining compliance with security standards.

Cyber SecurityInformation TechnologyNon ProfitQuantum ComputingSaaS
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

The selected candidate will collaborate with System Administrators and Information System Security Officers to maintain the operations of Splunk environments
The candidate will work with logs from Windows, Linux, and Cisco devices to ensure proper data ingestion into Splunk, enabling effective monitoring, troubleshooting, and the creation of actionable dashboards and alerts to support operational and security objectives
They will demonstrate strong problem-solving skills to develop appropriate mitigation strategies and ensure Splunk systems are configured and operated in compliance with Security Technical Implementation Guides (STIG) requirements
The candidate will manage Splunk user roles, permissions, authentication mechanisms, configuration files, data inputs, and forwarders
The successful candidate will be responsible for the analysis, integration, testing, operations, and maintenance of Splunk system security
They will assist during external security inspections and ensure compliance for all department Splunk environments
Infrastructure management: Design, deploy, and maintain Splunk environments, including clusters, indexers, and forwarders, ensuring high availability, scalability, and performance
Data onboarding: Identify and integrate new data sources into Splunk, creating and managing data inputs, indexes, and source types
Data analysis and reporting: Develop custom dashboards, reports, and alerts using SPL to visualize trends and provide actionable insights
Troubleshooting and optimization: Monitor the health of the Splunk environment, troubleshoot issues, and optimize search performance and data retention policies
User support and collaboration: Work with end-users to gather requirements, assist with searches, and provide training on Splunk usage and best practices. Collaborate with IT, security, and other teams to meet business needs
Security: Ensure the security of the Splunk environment, which can include managing security updates, patching vulnerabilities, and using Splunk for security event monitoring and incident response
Design and develop Splunk dashboards and alerts that align with NIST 800-53 audit requirements to ensure compliance with federal security standards and provide actionable insights for monitoring and reporting

Qualification

Splunk architectureCybersecurity expertiseData analysisScripting languagesClassified infrastructure knowledgeDoD 8570.01M IAM Level IIIAnalytical skillsProblem-solving skillsCommunication skillsMentoring

Required

Typically requires a minimum of 5 years of related experience with a B.S. in Computer Science; or 3 years and a Master's degree; or a PhD; or equivalent combination of related education and work experience
Active Top Secret clearance with SCI eligibility. Ability to obtain and maintain a Counterintelligence Polygraph (CI Poly)
Deep understanding of Splunk architecture, administration, and management
Proficiency in scripting languages like Python, Bash, or PowerShell is required for automation and advanced tasks related to Splunk
Strong analytical and problem-solving skills to troubleshoot complex issues in large scale distributed systems
Hands-on experience with large-scale enterprise Splunk environments
Knowledge of classified infrastructure and the A&A process
Ability to communicate complex technical concepts clearly to both technical and non-technical audiences
Must meet DoD 8570.01M IAM Level III requirements
This position has an on-site requirement of 5 days a week on-site

Preferred

Experience in SPL, data onboarding, and creating visualizations
Knowledge of emerging IT and cybersecurity technologies
Proven ability to advise senior leadership on risk levels, security posture, and policy changes
Previous experience operating as a SCI/SAP ISSO, ISSE, System Administrator, or ISSM
Strong analytical and problem-solving skills, with the ability to develop innovative solutions
Experience mentoring junior staff and fostering a collaborative team environment
Familiarity with insider threat programs and strategies for mitigating insider risks

Company

The MITRE Corporation is working to solve some of the nation’s biggest challenges in defense, cybersecurity, healthcare, homeland security, the judiciary and transportation.

Funding

Current Stage
Late Stage
Total Funding
$2.05M
Key Investors
US Department of EnergyMassachusetts Technology Collaborative
2023-07-27Grant
2023-06-08Grant· $2.05M

Leadership Team

leader-logo
Kerry Buckley
Vice President, Center for Advanced Aviation Systems Development (CAASD)
linkedin
leader-logo
Amit Madan
Chief Architect & Division Chief Engineer
linkedin
Company data provided by crunchbase