FreshRemote.Work

Journeyman Splunk Platform Engineer

REMT - Remote Worker Location

Secure our Nation, Ignite your Future

ManTech holds the distinct honor of being named a “Top 100 Global Technology Company” by Thomson Reuters. ManTech leadership works to continue this high level of industry recognition by affording our employees opportunities to break through barriers. We reinvest in our employees through rich educational opportunities such as 100% paid tuition for qualifying Bachelor’s and Master’s degrees, extensive training and certification programs enabling our employees to obtain industry recognized skills sets and certifications, as well as Communities of Practice where employees can engage and exchange knowledge  as well as a diverse and in-depth range of instruction and resources needed for personal and professional development through our very own ManTech University. In addition to those amazing benefits, ManTech also has a fully dedicated Career Mobility team to provide you with guidance and assistance to continue to grow your career with ManTech.

Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first.  At ManTech International Corporation, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement. 

Currently, we are seeking a motivated, career and team-oriented cybersecurity data engineer in support of the U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) Continuous Diagnostic & Mitigation (CDM) Data Services Program. The CDM Data Services Program is a critical component of CISA’s national effort to ensure the defense and resilience of cyberspace.

The CDM Data Services Program mission is to provide a standardized platform to collect, transform, and integrate cybersecurity data from relevant authoritative data sources into a coherent data, delivering actionable information into Agency and Federal Dashboards to identify risk areas in support of mitigation as well as to facilitate coordinated agency and national response to cyber-threats.  

This is a remote position where the candidate can work from any location within the United States provided, they are able to work on an eastern time zone schedule.

We are seeking a highly skilled Journeyman Splunk Platform Engineer to support the Continuous Diagnostics and Mitigation (CDM) program at the Cybersecurity and Infrastructure Security Agency (CISA). The Journeyman Splunk Platform Engineer will lead the design, implementation, configuration, and optimization of Splunk solutions to enhance the cybersecurity posture of government networks. This role requires a deep understanding of Splunk, cybersecurity principles, and the ability to collaborate effectively with cross-functional teams to ensure the success of the CDM program.

Responsibilities:

The Journeyman Splunk Platform Engineer will:

  • Review the as-built architecture of Splunk solutions to support the CDM program's cybersecurity objectives at multiple Agencies.
  • Implement engineering solutions to Splunk deployments to ensure efficient data migration to the new data repository.
  • Collaborate with stakeholders to gather requirements and translate them into technical solutions leveraging Splunk's capabilities.
  • Ensure data stored in Spunk indices can be read by external data movement tools such as Cribl
  • Manage API keys for external tools to programmatically query Splunk data
  • Perform data onboarding, normalization, and enrichment to ensure high-quality and actionable data for security monitoring and analysis.
  • Stay up-to-date with the latest Splunk versions, features, and best practices to continuously enhance the effectiveness of the CDM program.
  • Perform troubleshooting, root cause analysis, and resolution of complex technical issues related to Splunk deployments during migration.
  • Conduct system performance monitoring and capacity planning to maintain the optimal operation of to be infrastructure.

Basic Qualifications:

  • Associate degree in computer science, Information Technology, or a related field. Relevant industry certifications are a plus.
  • 3 years’ experience as a Splunk Engineer or in a similar role, preferably in a cybersecurity or CDM deployments.
  • Intermediate level knowledge of Splunk Enterprise and Splunk Enterprise Security, including architecture, installation, configuration, and administration.
  • Basic understanding of cybersecurity principles, threat intelligence, and incident response.
  • Basic knowledge of REST APIs including their methods and authentication techniques
  • Proficient in developing custom Splunk dashboards, and reports using Splunk's Search Processing Language (SPL).
  • Hands-on experience integrating Splunk with various data sources, security tools, and SIEM platforms.
  • Ability to create complex search queries, correlation rules, and alerts to support security monitoring and analysis.
  • Excellent problem-solving and troubleshooting skills, with the ability to analyze and resolve complex technical issues.
  • Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams and stakeholders.
  • Self-motivated and able to work independently as well as part of a team in a fast-paced environment.

Security/Clearance Requirements:

  • Must be a US citizen and pass a background investigation.
  • Able to obtain and maintain a DHS Suitability/Entry on Duty (EOD)

Physical Requirements:

  • Must be able to be in a stationary position more than 50% of the time 
  • Must be able to communicate, converse, and exchange information with peers and senior personnel 
  • Constantly operates a computer and other office productivity machinery, such as a computer 
  • The person in this position frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations 
  • The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

The projected compensation range for this position is $72,100-$120,900. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, ManTech invests in it’s employees beyond just compensation. ManTech’s benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.

ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access http://www.mantech.com/careers/Pages/careers.aspx as a result of your disability. To request an accommodation please click careers@mantech.com and provide your name and contact information.

Apply

Job Profile

Countries

United States

Benefits/Perks

100% paid tuition for qualifying Bachelor’s and Master’s degrees Career growth guidance Career Mobility team Certification opportunities Communities of Practice Educational opportunities Extensive training and certification programs Health insurance Holiday Pay Learning and Development Learning and development opportunities Life Insurance Other optional benefit elections Paid Time Off Retirement and Savings Short Term and Long Term Disability Training Training and certification programs Training programs Tuition reimbursement Wellness programs

Skills

API APIs Communication Compliance Computer Science Cybersecurity Data Enrichment Data migration Data Onboarding Development Engineering Incident Response Information Technology Interpersonal Leadership Optimization REST REST APIs Root Cause Analysis Security Tools Software Splunk Threat Intelligence

Tasks
  • Analysis
  • Best Practices
  • Collaborate with stakeholders
  • Communication
  • Development
  • Ensure compliance
  • Implementation
  • Implement engineering solutions
  • Incident response
  • Manage API keys
  • Manage API keys for external tools
  • Monitoring
  • Perform data onboarding and normalization
  • Review Splunk architecture
  • Stay updated with Splunk versions
  • Troubleshooting
Education

Computer Science Cyber Cybersecurity Design Education Engineering Information Technology IT Related Field

Certifications

CISA

Restrictions

Must work on an eastern time zone schedule Work on an eastern time zone schedule

Timezones

UTC-5