Position Description:
- Ensure the Splunk infrastructure functions properly with PKI-based authentication, corporate authorization services, firewalls, and SSL/TLS communications.
- Contribute to development and ongoing improvement of industry best practices and standards for maintaining data analytics enterprise technologies.
- Assist with installing, testing, and deploying hotfixes/patches for Splunk app/product releases to manage enterprise vulnerabilities.
- Assist with development of knowledge articles, documentation, and work instructions used by the Splunk, server, desktop and Information System Security teams, and Tier 2/3 Help Desk technicians.
Mandatory Skills:
Experience managing user authentication within Splunk including RBAC/ABACExperience reviewing network, host, and firewall security logsStrong organizational, communication, and collaboration skills
Desired Skills:
Experience with Splunk Machine Learning Toolkit (MLTK)Experience with scripting languages such as CSS, HTML, JavaScript, and PythonKnowledge of RMF, Trellix ePO, NESSUS, SCAP, and vulnerability scanningServiceNow Ticketing SystemShell scripting to automate tasks and manipulate data
Certification Required:
IAT Level II cert requiredCompTIA Security+ CE
Experience:
HS or GED - 20 YearsBachelors - 25 Years
Clearance Required:
TS/SCI FS polyPosition requires a TS/SCI.