Link copied to clipboard!
Back to Jobs
Cybersecurity Splunk Practitioner at CNS
CNS
Oak Ridge, TN
Information Technology
Posted 0 days ago
Job Description
Location: Oak Ridge TNJob Title: Cybersecurity Splunk PractitionerCareer Level From: Senior SpecialistCareer Level To: AdvisorOrganization: Chief Information Security Off ()Job Specialty: Cyber SecurityWhat Youll Do The Splunk Practitioner is responsible for configuring maintaining auditing and customizing Splunk Enterprise clusters to include Splunk Enterprise Security. The Splunk Practitioner will manage and support analyst workflows enrich data for enterprise security and manage and customize addition the Splunk Practitioner configures general settings manages input credentials and permissions customizes menus and configures advanced filtering within the Splunk enterprise environment. Successful candidates for this role will be expected to stay up to date on the latest cybersecurity threat intelligence sources and provide subject matter expertise (SME) within the Consolidated Nuclear Security (CNS) organization.Implements and maintains Splunk platform infrastructure (multi-cluster) and relevant configurationsStaffs help desk for Splunk platform system-related assistance and undertakes day-to-day operational and user support as it relates to the administration of configuration items of the Splunk servers and Splunk SIM/SIEM softwareDevelops and customizes Splunk system core splunkd components apps and dashboards and implements integration with external systemsBuilds advanced visualizations and manages data onboarding and defining configurationsBuilds data models and performs data interpretation classification and enrichmentMasterful with data entity relationship diagrams ontologies and relationship definitionsManages knowledge objects (fields extractions tags event types lookups workflow actions aliases macros and so on) through automations scripting management server functions; to include .conf and .cfg files in scope of the last four Splunk Enterprise versionsConfigures summary-based reports and data model accelerationLeveraging SPL Python Python libraries Adobe Acrobat .PDF and .CSV file typesExecutes new projects as well as data and user onboardingDesigning and developing an automations workflow and dashboard interface for suchCreates operations documentation for maintaining the Splunk infrastructureSystem Design Document Entity relationship diagrams Workflow diagrams Engineering interface diagrams leveraging MS Visio or the likeWhat You Can Expect Meaningful work and unique opportunities to support missions vital to national and global securityTop-notch dedicated colleaguesGenerous pay and benefits with a stable organizationCareer advancement and professional development programsWork-life balance fostered through flexible work options and wellness initiativesMinimum Job Requirements Bachelors degree in Engineering/Computer Science/Mathematics/Information Technology discipline with a minimum of 7 years of relevant experienceOR a Masters degree in Engineering/Science/Information Technology Discipline with a minimum of 5 years of relevant experienceFifteen or more years of relevant education training and/or progressive experience may be considered to satisfy educational and years-of-experience requirements for this postingPreferred Job Requirements Masterful experience with Splunk Enterprise architecture components and supporting instances such as heavy and light forwarder nodes load balancing license management configuration deployment manager and centralized automations for distributed SpLunk cluster architecturesStrong understanding of Splunk platform configuration web UI and Common Information Model .cfg and .conf filesExperience with Splunk Search Processing Language (SPL and SPL2) sub-searches and sub-queries or batch commands to include native functions to include use of Python and Pyhton librariesKnowledge of Splunk solution expert as well as SplunkbaseKnowledge of Windows AND *nix systems administrationStrong Networking background and familiarity with common infrastructure technologies and can demonstrate applicable knowledge in tuning Splunk Architecture to meet the maximum performance characteristics of the topology limitsExperience with Windows and Nix operating systems supporting the Splunk Enterprise daemons of which performance settings is expected second nature; thereby allowing most secure and performant Splunk systems environmentStrong understanding of IT and Cyber industry standards and technologies to include such controls governed by NIST FISMA and FedRampHold at least one of the following certifications: Splunk Enterprise Certified Admin Splunk Enterprise Security Certified Admin Splunk Enterprise Certified Architect or Splunk Certified Cybersecurity Defense Engineer Splunk Cloud Certified AdminKnowledge of DOE and NNSA mission and cybersecurity requirementsKnowledge of laws policies procedures or governance relevant to cybersecurity for critical infrastructures. Familiar with NIST controls and FISMA controls and correct application theoryFamiliar with Cloud Service Platform tenancies of which Splunk interoperates and/or operates with primacyWhy Y-12 You get #morethanajob. We encourage employees to achieve a healthy personal balance among home work and the community. One of the ways we embrace work-life balance is by offering flexible work arrangements that provide alternatives to the traditional workweek while still meeting business needs. Top talent and personal commitment mean more to our success than any other factors so we reward our people with the kinds of benefits that make a positive difference in the quality of their lives. Benefits such as: medical plan prescription drug plan vision plan dental plan employer matched 401(k) savings plan disability coverage education reimbursement and many more. Want to stay healthy and fit but hate the cost of a gym membership Take advantage of one of our onsite workout facilities and eat healthy in our onsite cafeterias. Much more than a workplace at Y-12 you can build a career that lasts a lifetime.Notes The minimum education and experience for the lowest career level in the job posting range are listed under Minimum Job Requirements. Successful candidates hired into a higher career level than the minimum in the range must meet the requirements listed in the job leveling charts for the career level into which they are being hired.If a range of Career Levels is posted i.e. Senior Associate to Senior Specialist internal applicants already in one of the Career Levels would come across at their current Career Level. Internal applicants currently in a lower level Career Level would move to the lowest posted Career Level.Requires a Q clearance; however all qualified candidates will be considered regardless of their current clearance status. The ability to obtain and maintain a Department of Energy Q clearance is required.This position may require entry into the Material Access Areas (MAA) and participation in the Human Reliability Program (10 C.F.R. Part 712) which requires successful competition of a DOE counterintelligence evaluation and may include a counterintelligence-scope polygraph examination.This position may be categorized as a designated position identified by 10 C.F.R. Part 709 requiring successful completion of a DOE counterintelligence evaluation that may include a counterintelligence-scope polygraph examination.CNS is a drug-free workplace. Candidates accepting a job offer will be required to pass a pre-placement physical drug screening and background investigation. As an employee you may be required to receive and maintain a security clearance from the United States Department of Energy in order to meet eligibility requirements for access to sensitive information or matter. U.S. citizenship is a requirement for security clearance applicants. All employees are subject to being randomly selected for drug testing without advance notification.CNS is an equal opportunity employer. All qualified applicants will receive consideration for employment based on merit and without regard to race color religion sex sexual orientation national origin protected veteran status or disability. Key Skills Healthcare Attorney,Apache Tomcat,Commerce,Cost Estimation,Arabic Employment Type : Full Time Experience: years Vacancy: 1
Resume Suggestions
Highlight relevant experience and skills that match the job requirements to demonstrate your qualifications.
Quantify your achievements with specific metrics and results whenever possible to show impact.
Emphasize your proficiency in relevant technologies and tools mentioned in the job description.
Showcase your communication and collaboration skills through examples of successful projects and teamwork.