user avatar

Senior Cybersecurity Engineer (Splunk)

Epiphany Resource Group

Posted today

Job Requirements

Chantilly, VA
Top Secret/SCI CI Polygraph
Mid Level Career (5+ yrs experience)
$185,000 - $210,000

Job Description

Senior Cyber Security Engineer (Splunk) – TS/SCI CI Poly Required

Location: Chantilly, VA

Employment Type: Full-Time

Security Clearance: Active TS/SCI with CI Polygraph Required

Position Overview

We are seeking a Senior Cyber Security Engineer with strong Splunk engineering and administration experience to support mission-critical cybersecurity operations within a highly secure enterprise environment. This role is responsible for designing, deploying, maintaining, and optimizing enterprise-scale Splunk solutions that support security monitoring, threat detection, and operational visibility.

The ideal candidate will have experience engineering Splunk environments, onboarding data sources, managing forwarders and add-ons, and supporting security operations teams through reliable and scalable data collection solutions.

Key Responsibilities

• Troubleshoot and resolve data ingestion and collection issues to ensure accurate and reliable security monitoring.
• Deploy, configure, and maintain Splunk Enterprise environments.
• Manage Splunk forwarders, deployment servers, add-ons, and integrations.
• Develop and maintain engineering documentation, deployment guides, system configurations, and operational procedures.
• Design and implement scalable log collection and monitoring architectures.
• Configure and maintain role-based access controls to ensure proper data access and security.
• Support system performance tuning, troubleshooting, and operational optimization.
• Collaborate with cybersecurity and operations teams to support threat detection and incident response capabilities.
• Support change management, accreditation activities, and cybersecurity compliance requirements.

Required Qualifications

• Bachelor's degree and 5+ years of cybersecurity experience (or additional relevant experience in lieu of degree).
• Hands-on experience administering and engineering Splunk Enterprise environments.
• Splunk certification required.
• Experience with Security Information and Event Management (SIEM) technologies.
• Experience deploying and managing Splunk forwarders, indexes, search heads, and related components.
• Strong understanding of Linux administration.
• Knowledge of TCP/IP networking and network security concepts.
• Familiarity with cybersecurity compliance and accreditation processes.
• DoD 8570 IAT Level II certification (Security+ or equivalent) or ability to obtain within six months.

Preferred Qualifications

• Experience with Red Hat Enterprise Linux and CentOS.
• Experience supporting AWS or cloud-based environments.
• Knowledge of enterprise security monitoring technologies.
• Experience supporting vulnerability management, audit collection, or user activity monitoring initiatives.
• Ability to onboard and normalize customer log sources into enterprise monitoring environments.

Clearance Requirement

Active TS/SCI clearance with CI Polygraph is required.

Why Apply?

This position offers the opportunity to work within a highly technical cybersecurity environment supporting enterprise-scale security monitoring, advanced analytics, and mission-critical operations while utilizing industry-leading SIEM technologies.
group id: 91093749