G2IT is seeking an experienced Splunk Administrator (Level 3) to support enterprise cybersecurity, monitoring, and data analytics environments. The ideal candidate will have extensive hands-on experience administering and optimizing Splunk environments, supporting Cyber Network Defense (CND) operations, and working within DoD or Intelligence Community environments.
Key Responsibilities- Install, integrate, configure, administer, maintain, monitor, troubleshoot, and optimize Splunk environments.
- Support Splunk Enterprise and advanced applications, including Enterprise Security (ES), SOAR, UEBA, and IT Service Intelligence (ITSI).
- Install and manage Splunk Technical Add-ons (TAs), Apps, and Universal Forwarders.
- Develop SPL queries, dashboards, reports, alerts, and other monitoring capabilities.
- Perform log management, ingestion, parsing, normalization, and analysis.
- Create REGEX parsing and XML presentations of log data.
- Maintain Splunk Common Information Model (CIM) compliance and perform automated and manual data mapping.
- Utilize Python scripting to automate Linux and Splunk administration tasks.
- Work with Splunk DB Connect, SQL, and database integrations to collect and analyze log data.
- Create, install, and maintain encryption keys used to secure communication channels.
- Perform Risk Management Framework (RMF) functions associated with Splunk environments.
- Support AWS resources and Red Hat Enterprise Linux environments.
- Troubleshoot LAN/WAN, networking protocols, ports, services, file systems, and Windows/Unix/Linux infrastructure.
- Develop technical documentation, SOPs, best practices, presentations, and cybersecurity guidance.
- Support System/Software Development Life Cycle (SDLC) processes.
- Communicate complex cybersecurity and technical issues to management, mission stakeholders, and customers.
- Must hold an active Top Secret (TS) security clearance and be eligible for TS/SCI access.
- 10+ years of professional experience with LAN/WAN technologies, networking protocols, file systems, ports, services, and commands within Windows and Unix/Linux environments.
- 8+ years of concentrated experience within the Cyber Network Defense (CND) discipline.
- 6+ years of professional hands-on experience with Splunk administration, integration, configuration, maintenance, and optimization.
- Expert-level knowledge of Splunk Enterprise and Splunk applications, including ES, SOAR, UEBA, and ITSI.
- Extensive experience with Splunk Add-ons, Apps, Technical Add-ons (TAs), and Universal Forwarders.
- Strong experience creating SPL queries, dashboards, reports, and alerts.
- Experience with REGEX parsing and XML presentation of log data.
- Experience using Python to automate Linux and Splunk administrative tasks.
- Experience with Splunk DB Connect, SQL, and database log collection.
- Experience with Splunk Common Information Model (CIM) compliance and data mapping.
- Experience creating and managing encryption keys for secure communications.
- Experience administering and managing AWS and Red Hat Enterprise Linux environments.
- Significant experience supporting RMF functions and cybersecurity compliance.
- Strong knowledge of Federal, DoD, Intelligence Community, and industry cybersecurity standards.
- Significant experience with SDLC processes and developing technical documentation, manuals, SOPs, and best practices.
- Strong analytical, organizational, problem-solving, documentation, and briefing skills.
- Ability to prioritize and complete tasks with minimal direction in a high-pressure environment.
- Ability to communicate effectively with technical teams, customers, mission stakeholders, and all levels of management.
- Prior to starting, candidates must possess an applicable DoD cybersecurity certification that satisfies the contract's CSSP Infrastructure Support requirements.
- Bachelor’s degree in Computer Science, Information Technology, Information Assurance, or a related field is desired.
- Master’s degree is preferred.
- Candidates without a degree should have 15+ years of relevant professional experience.
Skills Required
- Active Top Secret security clearance
- Eligibility for Top Secret/Sensitive Compartmented Information access
- 10+ years of professional experience with LAN/WAN technologies, networking protocols, file systems, ports, services, and Windows and Unix/Linux environments
- 8+ years of concentrated Cyber Network Defense experience
- 6+ years of hands-on Splunk administration, integration, configuration, maintenance, and optimization experience
- Expert-level knowledge of Splunk Enterprise, Enterprise Security, SOAR, UEBA, and ITSI
- Experience managing Splunk Add-ons, Apps, Technical Add-ons, and Universal Forwarders
- Experience creating SPL queries, dashboards, reports, and alerts
- Experience with REGEX parsing and XML log-data presentation
- Experience using Python to automate Linux and Splunk administration
- Experience with Splunk DB Connect, SQL, and database log collection
- Experience with Splunk Common Information Model compliance and data mapping
- Experience creating and managing encryption keys for secure communications
- Experience administering AWS and Red Hat Enterprise Linux environments
- Significant experience supporting Risk Management Framework functions and cybersecurity compliance
- Knowledge of Federal, DoD, Intelligence Community, and industry cybersecurity standards
- Experience with SDLC processes and technical documentation, manuals, SOPs, and best practices
- Strong analytical, organizational, problem-solving, documentation, briefing, and communication skills
- Ability to prioritize and complete tasks with minimal direction in a high-pressure environment
- Applicable DoD cybersecurity certification satisfying CSSP Infrastructure Support requirements
- Bachelor's degree in Computer Science, Information Technology, Information Assurance, or a related field
- Master's degree
- Candidates without a degree must have 15+ years of relevant professional experience
What We Do
G2IT, LLC is a Woman Owned Small Business (WOSB) and an Economically Disadvantaged Woman-Owned Small Business (EDWOSB) headquartered in Annapolis, Maryland. As a value-added reseller (VAR) and BMC partner, G2IT LLC. provides comprehensive information technology and systems engineering solutions that are secure, state of the art and aligned with your organization’s needs. Through G2IT’s partnerships with leading technology vendors we deliver best-in-class products and services supported by one of the most experienced professional services team in the industry. Our solutions ensures your investment in technology provides maximum performance, with minimum complexity and cost. G2IT supports all levels of the Public Sector, from the Department of Defense and Civilian agencies to State and Local government and higher education providing cost effective solutions for managing an organizations information, datacenters, and endpoints. G2IT has especially strong experience helping DoD clients address the specific challenges they face in a resource constrained environment
.jpg)







