Splunk Engineer

Posted Yesterday
Be an Early Applicant
3 Locations
In-Office
112K-179K Annually
Mid level
Aerospace • Information Technology • Security • Cybersecurity • Defense
Do the can't be done.
The Role
Supports enterprise monitoring, alerting, and analytics across NOC and SOC environments. Designs Splunk dashboards, reports, alerts, data integrations, and CIM-normalized data models; develops SPL searches and field extractions; troubleshoots ingestion and performance issues; and integrates Splunk with automation tools. Collaborates with analysts on KPIs, incident detection, triage, root cause analysis, compliance, documentation, and operational visibility across government networks and applications.
Summary Generated by Built In
Responsibilities

The Mid-Level Splunk Engineer supports enterprise-wide monitoring, alerting, and analytics across the customer’s operational and security environments. This position develops and maintains custom Splunk dashboards, visualizations, and alerts that provide actionable insights for NOC and SOC personnel. The engineer ensures data integrity, visibility, and system performance across mission-critical networks and applications supporting government operations. This role bridges IT operations and cybersecurity by delivering analytics solutions that enhance situational awareness, reduce incident response time, and support compliance with NIST 800-171, and DoD 8570 requirements.

Responsibilities include, and resume must demonstrate experience with the following functions:

  • Design, develop, and maintain custom Splunk dashboards, alerts, and reports to support both NOC and SOC operations.
  • Onboard new data sources including network appliances, servers, security tools, and applications using forwarders, APIs, and syslog integrations.
  • Implement data normalization using the Splunk Common Information Model (CIM) to support consistent reporting and event correlation.
  • Develop and optimize SPL queries, regex extractions, and macros for high-performing searches and visualizations.
  • Configure and tune threshold-based and adaptive alerts for system performance, security, and application availability.
  • Collaborate with NOC and SOC analysts to define KPIs and ensure accurate visibility into network health and security posture.
  • Support incident detection, triage, and root cause analysis using Splunk dashboards and search tools.
  • Monitor and maintain the health and performance of Splunk Enterprise / Splunk Cloud environments.
  • Integrate Splunk with automation/orchestration tools (e.g., Ansible, ServiceNow, SOAR platforms) for improved workflow efficiency.
  • Document data source onboarding, dashboard configuration, and analytic processes in accordance with program SOPs.
Qualifications

Required Qualifications:

  • TS/SCI with polygraph clearance adjudication or ability to obtain SCI and pass a poly
  • Bachelor's degree in an area applicable to the position with 5+ years relevant experience. Will consider additional 4 years of experience in lieu of degree
  • Active CompTIA Security+, CySA+, CASP+, CISSP, or equivalent DoD 8570 IAT Level II.
  • 3–5 years of hands-on experience administering, configuring, and developing within Splunk Enterprise or Splunk Cloud environments.
  • Demonstrated experience designing and maintaining custom dashboards, reports, and alerting frameworks.
  • Strong proficiency in Splunk Search Processing Language (SPL), field extractions, and data model creation.
  • Familiarity with Linux and Windows server environments, network protocols (TCP/IP, SNMP, syslog), and application log ingestion.
  • Understanding of NOC/SOC workflows, event correlation, and log management best practices.
  • Experience troubleshooting data ingestion, indexing, and search performance issues.
  • Excellent communication, documentation, and collaboration skills.

Desired Qualifications: 

  • Current Splunk Core Certified Power User, Admin, or Architect certification.
  • Experience supporting federal or DoD environments and familiarity with RMF (Risk Management Framework).
  • Experience with Python scripting, REST APIs, or JSON/XML parsing for custom integrations.
  • Working knowledge of NIST 800-53/171, and log retention / audit evidence requirements.
  • Experience with automation, orchestration, or SIEM/SOAR integration.

Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Target Salary Range$112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Skills Required

  • TS/SCI with polygraph clearance adjudication, or ability to obtain SCI and pass a polygraph
  • Bachelor's degree in an applicable field with 5+ years of relevant experience, or four additional years of experience in lieu of a degree
  • Active CompTIA Security+, CySA+, CASP+, CISSP, or equivalent DoD 8570 IAT Level II certification
  • 3-5 years of hands-on experience administering, configuring, and developing in Splunk Enterprise or Splunk Cloud
  • Experience designing and maintaining custom dashboards, reports, and alerting frameworks
  • Strong proficiency in SPL, field extractions, and data model creation
  • Familiarity with Linux and Windows server environments, TCP/IP, SNMP, syslog, and application log ingestion
  • Understanding of NOC/SOC workflows, event correlation, and log management best practices
  • Experience troubleshooting data ingestion, indexing, and search performance issues
  • Excellent communication, documentation, and collaboration skills
  • Current Splunk Core Certified Power User, Admin, or Architect certification
  • Experience supporting federal or DoD environments and familiarity with RMF
  • Experience with Python scripting, REST APIs, or JSON/XML parsing for custom integrations
  • Working knowledge of NIST 800-53/171 and log retention or audit evidence requirements
  • Experience with automation, orchestration, or SIEM/SOAR integration

Peraton Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Peraton and has not been reviewed or approved by Peraton.

  • Healthcare Strength Healthcare offerings are described as broad, including medical, dental, vision, mental health support, and specialty programs like virtual physical therapy and surgical/cancer care navigation. Medical coverage is also characterized as a standout part of the overall package in terms of perceived quality.
  • Retirement Support Retirement support includes a 401(k) with employer matching and is repeatedly positioned as a strong component of total rewards. The 401(k) benefit is frequently singled out as one of the most valued parts of the package.
  • Leave & Time Off Breadth Time-off benefits are positioned as robust, including PTO, holidays, paid sick days, and floating holidays, with some roles offering notably generous accrual. Leave breadth is reinforced by related programs such as short/long-term disability and bereavement leave.

Peraton Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Reston, VA
18,000 Employees
Year Founded: 2017

What We Do

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Why Work With Us

We are fearlessly solving the world’s most complex challenges to keep people safe and secure. You can be a part of protecting and promoting that freedom around the world.

Gallery

Gallery

Similar Jobs

Peraton Logo Peraton

Splunk Engineer

Aerospace • Information Technology • Security • Cybersecurity • Defense
In-Office
2 Locations
18000 Employees
112K-179K Annually

CACI International Inc Logo CACI International Inc

Splunk Engineer

Information Technology • Consulting • Defense
In-Office
McLean, VA, USA
17673 Employees
113K-238K Annually

CACI International Inc Logo CACI International Inc

Security Engineer

Information Technology • Consulting • Defense
In-Office
Chantilly, VA, USA
17673 Employees
104K-218K Annually

CACI International Inc Logo CACI International Inc

Security Engineer

Information Technology • Consulting • Defense
In-Office
Chantilly, VA, USA
17673 Employees
104K-218K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account