Posted 2w ago

Splunk Engineer

@ Technical Intelligence Solutions
Falls Church or Alexandria
HybridFull Time
Responsibilities:Design dashboards, Administer Splunk, Onboard data
Requirements Summary:3+ years Splunk Enterprise experience; SPL development; Splunk infrastructure admin; data onboarding; TS/SCI clearance with polygraph; onsite in Falls Church 2–3 days/week; bachelor's degree.
Technical Tools Mentioned:Splunk Enterprise, Linux, Windows, Python, Bash, JSON, XML, YAML, AWS, Docker, Kubernetes, Ansible, Splunk Enterprise Security, User Behavior Analytics
Save
Mark Applied
Hide Job
Report & Hide
Job Description

Seeking a Splunk Engineer with strong experience in Splunk Enterprise, SPL, and infrastructure management to support secure, data-driven environments. This hybrid role in Falls Church (2–3 days onsite)

Description

Security Clearance:

  • Active TS/SCI clearance with Polygraph

Minimum Requirements:

  • 3+ years of experience with Splunk Enterprise
  • Experience developing searches, reports, alerts, and dashboards using SPL
  • Hands-on experience managing Splunk infrastructure (indexers, search heads, forwarders)
  • Experience with data ingestion and onboarding new data sources
  • Familiarity with Splunk configuration files (e.g., inputs.conf, props.conf) and troubleshooting via GUI and CLI
  • 1+ year of experience in Linux and/or Windows system administration
  • Experience creating architectural or system diagrams
  • Familiarity with ticketing and collaboration tools (e.g., Jira, Confluence, SharePoint)
  • Ability to work in Agile/Scrum environments and provide status updates
  • Willingness to work onsite in a SCIF 2–3 days per week (Falls Church)
  • Bachelor’s degree in a relevant field (or equivalent experience)

Key Responsibilities:

  • Design, build, and maintain Splunk dashboards, alerts, and reporting solutions
  • Administer and support Splunk environments, including infrastructure components and configurations
  • Perform data onboarding, parsing, and indexing for new log sources
  • Troubleshoot and resolve system and configuration issues
  • Develop and maintain documentation and architecture diagrams
  • Collaborate with cross-functional teams to support monitoring, security, and analytics needs
  • Provide updates and briefings to stakeholders on progress and system performance

Skills and Proficiencies:

  • Splunk Enterprise (administration, configuration, and SPL development)
  • Linux and Windows system administration
  • Scripting and automation (e.g., Python, Bash, JSON, XML, YAML)
  • Familiarity with AWS cloud environments
  • Experience with automation and Infrastructure as Code
  • Exposure to tools such as Docker, Kubernetes, and Ansible
  • Knowledge of Splunk Enterprise Security (ES) and User Behavior Analytics (UBA) (preferred)
  • Strong communication, organization, and time management skills

Additional Information:

  • Relevant certifications such as Splunk Certified Admin or Architect are highly preferred
  • Ideal candidates will demonstrate a mix of technical depth, problem-solving ability, and strong collaboration skills


About the Company


When engineers lead, solutions follow.

We do computing process optimization using the techniques and tools appropriate to maximize efficiency. Our SME level team members design and modernize systems using automation, containerization, and cloud services to provide SRE, AI/ML, Full Stack Development, and Data Engineering. We address our customers' challenges the right way, the first time.

TIS is proud to serve critical missions for government customers like SOCOM, DTRA, CDAO, and others, in locations including Virginia, DC, North Carolina, and Florida, as well as OCONUS.

TIS values quality, loyalty, and collegial collaboration over all else, to ensure our customers’ success through meeting and beating deadlines, while minimizing total cost of delivery.

If you're looking for a collegial environment to help design and implement mission-critical capabilities with rock-solid reliability, we look forward to meeting you.