SIGN IN
Security Infrastructure Engineer - Splunk Admin jobs in United States
cer-icon
Apply on Employer Site
company-logo

TEKsystems · 18 hours ago

Security Infrastructure Engineer - Splunk Admin

TEKsystems is a leading provider of business and technology services, and they are seeking a Security Infrastructure Engineer - Splunk Admin. The role involves deploying and managing cybersecurity policies, maintaining security infrastructure, and advising on improvements to security systems.
Information Technology
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Work with government counterparts, contractors, and internal team members to deploy and manage policies, rules, and signature sets on cybersecurity capabilities
Manage high-priority tasks and outages
Maintain, develop, and improve Security Infrastructure standard operating procedures and tactics, techniques, and procedures (TTPs)
Maintain complete and current network and elevation diagrams for all managed security equipment
Coordinate and comply with applicable change control boards and corresponding processes
Advise and strategize with government and program leadership on ways to improve the security infrastructure, requiring multi-dimensional problem solving and ingenuity with impact on multiple aspects of the mission
Provide briefings to program/project leadership, government leadership, and other internal stakeholders on security infrastructure status, updates/patches, issues, and/or upgrades
Operate and maintain cybersecurity capabilities to include IDS/IPS/Netflow/SIEM/Snort/Linux/Virtualization etc
Ensure Compliance standards
Serve As a People Leader For The SIMs Team
Conduct annual performance assessments to include periodic check ins
Validate/approve time charging for both Leidos and vendor personnel
Provide coaching/mentoring to personnel
Develop and Execute Continual Service Improvement technical strategies to modify and enhance operational processes and impact strategic project/program goals and business results

Qualification

SplunkSIEMSecurity+ CECybersecurityAnsiblePuppetChefTechnical CommunicationTeam Leadership

Required

Must have an ACTIVE SECRET clearance
Must have DoD 8570 IAT II or higher certification (Security+ CE or equivalent) prior to start
Must obtain a DOD-8570 CSSP Infrastructure Support certification within 6 months of start
Work with government counterparts, contractors, and internal team members to deploy and manage policies, rules, and signature sets on cybersecurity capabilities
Manage high-priority tasks and outages
Maintain, develop, and improve Security Infrastructure standard operating procedures and tactics, techniques, and procedures (TTPs)
Maintain complete and current network and elevation diagrams for all managed security equipment
Coordinate and comply with applicable change control boards and corresponding processes
Advise and strategize with government and program leadership on ways to improve the security infrastructure, requiring multi-dimensional problem solving and ingenuity with impact on multiple aspects of the mission
Provide briefings to program/project leadership, government leadership, and other internal stakeholders on security infrastructure status, updates/patches, issues, and/or upgrades
Operate and maintain cybersecurity capabilities to include IDS/IPS/Netflow/SIEM/Snort/Linux/Virtualization etc
Ensure Compliance standards
Serve As a People Leader For The SIMs Team
Conduct annual performance assessments to include periodic check ins
Validate/approve time charging for both Leidos and vendor personnel
Provide coaching/mentoring to personnel
Develop and Execute Continual Service Improvement technical strategies to modify and enhance operational processes and impact strategic project/program goals and business results
Security, elastic, splunk, SEIM

Preferred

Experience with automation and orchestration frameworks (ex. Ansible, Puppet, Chef)
Deep technical understanding of core current cybersecurity technologies as well as emerging capabilities
Demonstrated understanding of the life cycle of cybersecurity threats (internal and external), attacks, attack vectors and methods of exploitation with an understanding of intrusion set TTPs
Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings
Familiarity or experience in Intelligence Driven Defense, Cyber Kill Chain methodology, and/or MITRE ATT&CK framework
Prior hands-on experience as a SOC analyst

Benefits

Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long-term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave)

Company

TEKsystems

company-logo
At TEKsystems, they understand people. Every year they deploy over 80,000 IT professionals at 6,000 client sites across North America,

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Ryan Skains
Vice President, TEKsystems Global Services
linkedin
Company data provided by crunchbase