Splunk Engineer, Mid

The Challenge:

Everyone knows security needs to be “baked in” to a system architecture, but you actually know how to bake it in. You can identify and implement ways to harden systems and reduce their attack surface. What if you could use your Cyber Splunk skills to design and build secure systems for the DoD? We’re looking for a Splunk engineer who can help create solutions for the client that will stand up to even the most advanced Cyber threats.

As a Splunk engineer on our project, you’ll support onboarding new data sources into Splunk ES, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the data. You’ll work with multi-functional teams to identify the right mix of tools and techniques to translate your customer’s needs and future goals into a plan that will enable secure and effective solutions. We need to come up with the best solution, so you’ll research new techniques, break free from the legacy model, and go where the industry is going. On our team, you’ll learn how to take a critical approach to network design, providing alternatives and customizing solutions to maintain a balance of security and mission needs. This is a chance to learn from a team of experts as you make a difference in the security of Cyberspace. We help customers overcome their most difficult challenges by integrating secure practices like risk management. You’ll be able to gain experience in Splunk, continuous monitoring, and event automation while building peace of mind in a critical infrastructure. You’ll work with Linux environments, including editing, maintaining, and distributing Splunk configuration files and apps following best practice implementations. You’ll build custom summary indexes, including tagging data and managing Splunk in a multi-tenant environment. You’ll lead the ongoing operation and maintenance of a risk management dashboard monitoring environment. Join our team as we improve Cyberspace through Cybersecurity.

Empower change with us.

Build Your Career:

Rewarding work, fun challenges, and a ton of investment in our people—that’s Booz Allen Cyber. When you join Booz Allen, we’ll help you develop the career you want.

Competitions — From programming competitions at our PyNights (Python competition and learning events) to competing in CTFs, we’ve got plenty of chances for you to show off your skills.

Paid Research — Have an innovative idea to explore or hypothesis to test? You can participate in challenges via our crowdsourcing platform, the Garage, and other programs to be awarded dedicated time and/or funding to advance your skills.

Cyber University — CyberU has more than 5000 instructor-led and self-paced Cyber courses, a free online library that you can access from just about anywhere—including your phone—and certification exam prep guides that include practical assessments to prepare you for your exam.

Academic Partnerships — In addition to our tuition reimbursement benefit, we’ve partnered with University of Maryland University College to offer two graduate certificate programs in Cybersecurity—fully funded without a tuition cap.

Maker/Hackerspaces — Race drones, print 3D gadgets, drink coffee from our Wi-Fi coffee maker, and get hands-on training on tools and tech from in-house experts in our dedicated maker and hackerspaces.

You Have:

-5+ years of experience in the IT field

-Experience with integrating or configuring data management and enterprise reporting platforms, including dashboard environments or executive information systems

-Experience with Active Directory, LDAP, or IIS administration

-Experience with data modeling and configuring and analyzing data relationships in both structured and unstructured environments

-Top Secret clearance

-BA or BS degree in a Technology, IT, or Cybersecurity field

-DoD 8570 IAT II or IAM I Certification

Nice If You Have:

-Experience with UNIX and Linux system administration preferred

-Experience with vulnerability management tools and network scanners, including ACAS, HBSS, Forescout, Tanium, and SolarWinds

-Experience with the DoD Risk Management Framework (RMF), risk and vulnerability management, assessment and certification, and Cyber Command Readiness Inspections (CCRIs)

-Experience with the DoD Enterprise Mission Assurance Support Service (eMASS)

-Experience with DoD STIG Viewer

-Experience with creating and implementing structured queries in SQL for incorporation into enterprise reporting or dashboards

-Possession of excellent oral and written communication skills

-MCSE, MCSD, RHCE, LFCE, or ITIL Practitioner Certification preferred

-Splunk Architect II Certification or higher


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Top Secret clearance is required.

We’re an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic—to fearlessly drive change.


Not ready to apply? Join our talent community and sign up for job alerts.