← Serch more jobs

Splunk Engineer with TS Clearance (R-00055)

LinkedIn True Zero Technologies Las Vegas, NV
Not Applicable Posted April 17, 2026 Job link
Thinking about this job
Not Met Priorities
What still needs stronger evidence
Requirements
  • All candidates must possess prior Splunk engineering and administration experience, meet the necessary certification prerequisites, and work well in a team environment.
  • Splunk Architect Certification
  • Experience designing and implementing ground up distributed Splunk installations including all Splunk server roles (Search Head, Indexers, Heavy Forwarders and Universal Forwarders, etc.)
  • Experience with advanced configuration of Splunk including Indexer Clustering and Search Head Clustering
  • Experience maintaining and administering enterprise Splunk implementations
  • Experience developing custom Splunk content including scheduled searches, reports, dashboards, etc
  • Proficient at data on-boarding activities including custom parsing rules, custom Technology Add-On building according to Splunk's Common Information Model (CIM)
  • Experience configuring indexes, index routing, retention policies, etc
  • Experience working in linux and windows environments, ability to configure:
  • Storage subsystems (I.e. partitioning, Volume Groups, Logical Volumes, etc.)
  • SELinux
  • Familiarity with different flavors of Linux distros (RedHat, CentOS, Ubuntu, etc.)
  • File Permission Settings (linux/windows)
  • Excellent written and oral skills, ability to work closely with multiple customers, manage expectations, and track engagement scope
  • U.S.
  • Citizenship is required as this is in support of a Federal Customer.
Preferred Skills
  • Candidates with backgrounds supporting federal customers is a plus.
  • Splunk Core Consultant Certification
  • Splunk Enterprise Security Implementation Certification
  • Splunk IT Service Intelligence certification
  • Understanding of Syslog daemon configuration principles, ideally in Syslog-NG and RSyslog configurations
  • Cloud experience (AWS, Azure, etc.)
  • Development and API experience (Python, Perl, XML)
  • SaltStack, Ansible, and other enterprise automation tool experience
  • Hardware experience and storage experience (SAN, NAS, etc.)
  • U.S.
  • Citizenship is required as this is in support of a Federal Customer.
Education
  • (Required) – All candidates must possess prior Splunk engineering and administration experience, meet the necessary certification prerequisites, and work well in a team environment.
  • (Not required) – Splunk Architect Certification
  • (Not required) – Splunk Core Consultant Certification