At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.
Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.
Requisition #: 1304
Job Title: Software Architect V
Job Title for Careers Page: Senior Splunk Engineer
Location: Aberdeen Proving Grounds
Clearance Level: Secret
Required Certification(s): Security+ or higher (required) – DoD 8140 (8570)
SUMMARY
The U.S. Army Research Laboratory (ARL) of the U.S. Army Research Development and Engineering Command (RDECOM) is the Army’s corporate laboratory. It’s a diverse assortment of unique facilities and a dedicated workforce of government and private sector partners make up the largest source of world-class integrated research and analysis in the U.S. Army. ARL discovers, innovates and transitions research to provide the best technologies for our Soldiers. ARL’s program consists of basic and applied research and survivability/lethality and human factors analysis.
JOB DUTIES AND RESPONSIBILITIES
· Splunk dashboard creation and optimization, alerts, correlation searches, and data ingestion of diverse and disparate sources
· Collaborate with other service areas to integrate flow data, traffic patterns, and anomalies into actionable Splunk detections
· Tune log sources and ingestion pipelines to improve performance, reduce false positives and enhance signal fidelity
· Develop and manage Splunk content related to firewalls, VPNs, proxies, routers, switches, and endpoint devices
· Configure and maintain Splunk components, including apps, indexes, forwarders, and CIM data models
· Produce documentation, runbooks, and training for teams and technical stakeholders
QUALIFICATIONS Required Certifications
· Security+ or higher (required) – DoD 8140 (8570)
· Computing Environment Cert (preferred)
· Secret Clearance/ability to obtain one
· Splunk Certified Administration Certification
· Splunk Certified Architect Certification
· CRIBL Certification (Preferred)
· Experience using Cribl to consolidate data sources and trim unnecessary Splunk license usage (Preferred)
Education, Background, and Years of Experience
· High School Diploma or equivalent
· 5+ years of Splunk Engineering
ADDITIONAL SKILLS & QUALIFICATIONS
· Strong leadership, problem-solving, communication (verbal and written), customer service, time management, and conflict resolution skills
· Expert – level Splunk development and content creation
· Ability to create multi-source logs with behavioral and network data to create high-fidelity detections
· Experience tuning and normalizing data to align with Splunk CIM
· Excellent documentation and mentoring skills
· Comfortable working with cross functional teams
Preferred Skills
· ServiceNow/Other Ticketing System experience
WORKING CONDITIONS Environmental Conditions
· Contractor site with 0%-10% travel possible. Possible off-hours work to support releases and outages. General office environment. Work is generally sedentary in nature but may require standing and walking for up to 10% of the time. The working environment is generally favorable. Lighting and temperature are adequate, and there are no hazardous or unpleasant conditions caused by noise, dust, etc. Work is generally performed within an office environment, with standard office equipment available.
Strength Demands
· Sedentary – 10 lbs. Maximum lifting, occasional lift/carry of small articles. Some occasional walking or standing may be required. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
Physical Requirements
· Stand or Sit
· Walk
· Repetitive Motion
· Use Hands / Fingers to Handle or Feel
· Talk or Hear
· See