Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Booz Allen Hamilton

Splunk SIEM Data Onboarding Engineer

Booz Allen Hamilton

. Design, deploy, and manage Splunk infrastructure .

Posted 9/29/2026full-timeUnited StatesJunior💰 $99,000 - $225,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in managing and configuring Splunk infrastructure, including architecture and data ingestion processes. Proficient in troubleshooting, user support, and implementing best practices for data management in regulated environments.

Highest-signal resume keywords
Splunk Infrastructure ManagementSplunk Architecture ConfigurationData Pipeline DevelopmentLinux and Windows AdministrationTS/SCI Clearance

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Splunk Dashboard DevelopmentSPL for Validation and TroubleshootingRegex for Field ExtractionNetworking FundamentalsBasic Troubleshooting with TcpdumpScripting Languages (Python, Bash, PowerShell)Cribl Sources and DestinationsSplunk REST APIGit for Code Version ControlAnsible Playbooks
Soft Skills
Collaboration with Cross-Functional TeamsUser Training and Support
Certifications & Qualifications
DoD 8570 IAT Level III CertificationDoD 8570 Cyber Security Service Provider - Infrastructure Support Certification
Industry Keywords
Data Management Best PracticesSTIGs and Hardening StandardsComprehensive Data IngestionPerformance Monitoring and Troubleshooting

Tech Stack

Tools & technologies
AnsibleCloudCyber SecurityLinuxPythonSplunkTypeScript

About the role

Key responsibilities & impact
  • Design, deploy, and manage Splunk infrastructure
  • Develop and maintain Splunk dashboards, queries, and alerts
  • Integrate Splunk with various data sources to ensure comprehensive data ingestion
  • Monitor and troubleshoot Splunk performance issues
  • Collaborate with cross-functional teams to gather requirements and provide Splunk solutions
  • Implement and enforce best practices for Splunk data management and retention
  • Provide user training and support for Splunk-related activities

Requirements

What you’ll need
  • 2+ years of experience managing and configuring Splunk
  • 2+ years of experience in Splunk architecture, including indexers, search heads, forwarders, and deployment server
  • 2+ years of experience building pipelines to parse, normalize, enrich, mask or dedupe, and route data to Splunk
  • 2+ years of experience in Linux and Windows administration
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Associate’s degree and 5+ years of experience supporting IT projects and activities, Bachelor’s degree and 3+ years of experience supporting IT projects and activities, Master’s degree and 1+ years of experience supporting IT projects and activities, or 10+ years of experience supporting IT projects and activities in lieu of a degree
  • Ability to obtain a DoD 8570 IAT Level III Certification such as SecurityX, CCNP Security, CISA, CISSP, GCED, GCIH, or CCSP Certification within 30 days of start date
  • Ability to obtain a DoD 8570 Cyber Security Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 30 days of start date
  • 2+ years of experience with networking fundamentals, including TCP/UDP, TLS, syslog transport, firewall ports, and common transport issues
  • 2+ years of experience in basic troubleshooting with tcpdump or Wireshark, basic vi/vim usage, setfacl, and SELinux
  • 1+ years of experience with STIGs or other organizational hardening standards in regulated environments
  • 1+ years of experience with regex skills for field extraction and event breaking
  • Experience in SPL for validation, troubleshooting, and basic dashboards
  • Experience with scripting languages such as Python, Bash, or PowerShell
  • Experience with Cribl sources, destinations, routes, and collectors
  • Experience with Splunk REST API for automation and operational tasks
  • Knowledge of Git for code version control
  • Knowledge of Ansible playbooks
  • TS/SCI clearance is required

Benefits

Comp & perks
  • Health benefits
  • Life insurance
  • Disability benefits
  • Financial benefits
  • Retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Dependent care
  • Recognition awards program for exceptional performance and superior demonstration of values