Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
SIEM Data Onboarding Engineer - Active TS/SCI with CI Poly image - Rise Careers
Job details

SIEM Data Onboarding Engineer - Active TS/SCI with CI Poly

The Splunk Engineer is responsible for managing and enhancing our Splunk environment to ensure seamless data ingestion, analysis, and visualization. This role demands a deep understanding of Splunk architecture, data onboarding, and user management to support business needs and security operations.

  • Design, deploy, and manage Splunk infrastructure
  • Develop and maintain Splunk dashboards, queries, and alerts
  • Integrate Splunk with various data sources to ensure comprehensive data ingestion
  • Monitor and troubleshoot Splunk performance issues
  • Collaborate with cross-functional teams to gather requirements and provide Splunk solutions
  • Implement and enforce best practices for Splunk data management and retention
  • Provide user training and support for Splunk-related activities

 

  • 2+ years of experience in managing and configuring Splunk, 2+ years of experience in Splunk architecture: indexers, search heads, forwarders, deployment server and 1+ year with Splunk REST API for automation and operational tasks
  • 2+ years configuring Cribl sources, destinations, routes and collectors
  • 2+ years building pipelines to parse, normalize, enrich, mask/dedup, and route data to Splunk and other targets and
  • 2+ years authoring/maintaining props.conf, transforms.conf, inputs.conf, outputs.conf and packaging Apps/TAs
  • 2+ years in Linux and Windows administration: file paths, services, permissions, and log locations
  • 1+ year with basic familiarity with Cribl Redmap/JavaScript functions
  • 1+ year with regex skills for field extraction and event breaking
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, OR Bachelor’s degree and 3+ years of experience supporting IT projects and activities, OR Master’s degree and 1+ years of experience supporting IT projects and activities, OR 10+ years of experience supporting IT projects and activities in lieu of a degree
  • DoD 8570 IAT Level II certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND certification
  • Must obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND certification prior to start date

Additional Qualifications:

  • 1 year experience with DISA STIGs or other organizational hardening standards working in regulated environments
  • 2+ years Networking fundamentals: TCP/UDP, TLS, syslog transport, firewall ports and common transport issues
  • 2+ years in basic troubleshooting with tools such as tcpdump/wireshark, basic vi/vim usage, setfacl, SELinux
  • Knowledge of common log formats: syslog, Windows Event, JSON, CSV, XML
  • Proficient in SPL for validation, troubleshooting and basic dashboards.
  • Experience with scripting languages such as Python, Bash, or PowerShell
  • Strong communication skills
  • Load-Balancer fundamentals
  • Knowledge of Git for code version control
  • Knowledge of Ansible playbooks
  • Knowledge of Python scripting

Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients.

Why ENS?

  • Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS
  • 401k Contribution from Day 1
  • PTO + 11 Paid Federal Holidays
  • Long & Short Term Disability Insurance
  • Group Term Life Insurance
  • Tuition, Certification & Professional Development Assistance
  • Workers’ Compensation
  • Relocation Assistance

Average salary estimate

$135000 / YEARLY (est.)
min
max
$110000K
$160000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Posted 20 hours ago

Agile Defense seeks a TS/SCI-cleared Digital Network Exploitation Analyst (SME) to support NSIN/ICON cyber intelligence and network exploitation missions in Annapolis Junction, MD.

Posted 16 hours ago

M&T Bank seeks an experienced Mainframe Systems Programmer IV - Middleware to manage, tune, and automate IBM z/OS middleware (CICS/IMS/MQ/WAS) across hybrid and remote environments.

Photo of the Rise User

A forward-thinking enterprise is hiring a Remote Network Security Architect to design, document, and govern global network security architecture across corporate, R&D, and manufacturing environments.

Photo of the Rise User

Lead high-severity cloud and endpoint incident investigations with a focus on AWS, driving remediation, automation, and cross-functional security improvements.

Photo of the Rise User
Posted 2 hours ago

Sigma Defense Systems is hiring a C4I Systems/Network Engineer to administer ADNS and Red Hat Enterprise Linux environments and troubleshoot shipboard tactical networks for Navy operations.

Photo of the Rise User
Posted 15 hours ago

AnaVation seeks a cleared Cyber Security Operations Analyst to perform real-time monitoring, vulnerability scanning, and incident response using ACAS, HBSS, SIEM, and IPS/IDS tools to protect mission systems.

Photo of the Rise User
Posted 21 hours ago

Lead administration and performance optimization of AWS RDS SQL Server environments for a major healthcare client in a remote SQL DBA role.

Photo of the Rise User
Raymond James Financial Hybrid FL - Saint Petersburg - 880 Carillon Pkwy Tower 1
Posted 23 hours ago

Experienced IAM engineer sought to lead SailPoint and Saviynt IGA implementations and strengthen enterprise identity controls at Raymond James.

Photo of the Rise User

Lead the administration and security of Microsoft 365, Entra ID/Azure AD, and Intune to ensure secure, compliant, and high-performing cloud collaboration for an enterprise organization.

Photo of the Rise User

Lead the design and implementation of enterprise Microsoft security and Zero Trust architectures to protect cloud and AI environments in a remote Principal Architect role.

Posted 15 hours ago

The State Data Center in Salem is hiring a Data Center Facilities Engineer to manage and maintain mission-critical physical infrastructure, colocation services, and on-site facility operations for Oregon state agencies.

Photo of the Rise User

Experienced network and systems professional needed to administer Cisco/Meraki networks and Windows server environments for a security-conscious US-based organization.

Photo of the Rise User

Experienced ISSO needed to lead federal cybersecurity governance, RMF/ATO processes, and continuous monitoring for mission-critical IT systems while liaising with leadership and engineering teams.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, unknown
DATE POSTED
January 17, 2026
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!