CACI International

Splunk Engineer

CACI International$113K — $237K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • TS/SCI Clearance with Counterintelligence Polygraph
  • BA/BS degree with 8 years of experience, or 10 years' experience with AA/AS, or 12 years with HS diploma
  • 8+ years supporting IT Systems
  • 4+ years implementing and operating Splunk systems
  • Experience designing and implementing new features for Splunk products
  • At least one Splunk Certification (e.g., Splunk Certified Administrator)
  • Strong problem-solving and communication skills

Responsibilities

  • Design core scripts for automated Splunk maintenance and alerts
  • Develop dashboards and reports for business-critical data visualization
  • Engage with Product Owners to ensure alignment with business needs
  • Create secure and scalable Splunk architectures
  • Assist in developing secure operational policies for Splunk infrastructure
  • Support cloud-based deployment on AWS and Azure
  • Integrate new data sources, ensuring proper onboarding and quality control

Benefits

  • Comprehensive healthcare coverage
  • Financial and retirement plans
  • Family support services
  • Continuing education opportunities
  • Generous time off policies
Full Job Description
Job Title: Splunk Engineer

Job Category: Engineering

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI with Polygraph

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

* * *

The Opportunity:
CACI is seeking a highly motivated Splunk Engineer that has 8+ years of experience managing a Splunk Platform, creating Splunk applications, and using IT Service Intelligence (ITSI). The Splunk engineer will build applications to help manage, search, analyze, and visualize data. The role includes troubleshooting and performing Splunk application development following a Scrum Agile approach. The role also includes examining the existing environment for deficiencies and onboarding new data sources.

Responsibilities:
  • Design core scripts to automate Splunk maintenance and alerting tasks
  • Develop dashboards and reports to display business-critical information
  • Develop and maintain dashboards, reports, and alerts to ensure efficient monitoring and management of IT systems
  • Engage with Product Owners to align platform capabilities with evolving business needs
  • Create scalable, flexible security architectures using standards-based integrations
  • Assist in developing policies for the secure operation of Splunk infrastructure
  • Support cloud-based deployment and sustainment (AWS and Azure)
  • Conduct software integration testing and cybersecurity compliance tasks
  • Automate processes and develop efficiencies alongside development and install teams
  • Maintain infrastructure for integration, cyber compliance, and network administration
  • Support both UNIX/Linux and Windows-based systems
  • Collaborate with IT teams to identify, troubleshoot, and resolve IT issues using Splunk
  • Document configurations, changes, and troubleshooting procedures.
  • Support new operational needs by integrating Splunk with other enterprise security services as required by government customers
  • Collaborate with government customers to understand their specific security service integration requirements
  • Develop and maintain integration scripts and configurations for various enterprise security services
  • Onboard new data sources into the Splunk environment, ensuring proper indexing, data normalization, and data quality
  • Develop and maintain scripts and configurations for onboarding new data sources
  • Ensure seamless data flow from new data sources into Splunk
  • Troubleshoot and resolve issues related to onboarding new data sources


Qualifications:

Required:
  • TS/SCI Clearance with Counterintelligence Polygraph
  • BA/BS degree and 8 years of experience. In lieu of a bachelor's degree 10 years of experience if AA/AS, or 12 additional years of experience with HS diploma
  • 8+ years of experience and demonstrated knowledge supporting IT Systems
  • 4+ years of experience implementing and operating Splunk systems to include universal and heavy forwarders, search heads, deployment server, and indexes
  • Design, develop, and implement new features for Splunk products
  • Provide training and support to IT staff on Splunk usage and best practices
  • Proven experience in designing, implementing, and maintaining Splunk solutions including, but not limited to: Splunk Enterprise, Splunk IT Service Intelligence, Splunk Log Management
  • Knowledge of Linux security best practices
  • Knowledge of cybersecurity compliance including RMF and IA standards
  • Excellent problem-solving and analytical skills
  • Service-oriented mindset
  • Strong communication and collaboration skills
  • At least one Splunk Certification: Splunk Certified for Splunk IT Service Intelligence (ITSI), Splunk Certified Administrator (SCA)


Desired:
  • Experience integrating Splunk with ServiceNow to enable automated incident management, problem management, and change management workflows
  • Knowledge of security compliance and ATO (Authority to Operate) support
  • Preferred knowledge of FISMA (Federal Information Security Management Act) requirements
  • Current Security+ or DOD 8570 IAT Level II Certification
  • AWS or Azure Certification
  • ITIL v4 Certification
  • Strong understanding of IT operations, security, and business intelligence
  • Good team player with a strong willingness to help others
  • Experience scripting in the following preferred: Python, Perl, and JavaScript in relation to Splunk Apps/Add-ons, SQL for querying structured data, Knowledge of XML and JSON for data handling, Splunk Search Processing Language (SPL) for data analysis in Splunk


Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:
$113,200 - $237,800

About CACI International

CACI International Inc is a multinational professional services and information technology company. It provides services to many branches of the federal government including defense, homeland security, intelligence, and healthcare. CACI has approximately 23,000 employees worldwide. The company's mission is to provide enterprise and mission technology services and solutions that best fit the needs of its customers. CACI has been named a Fortune World's Most Admired Company, a Washington Post Top Workplace, and a Forbes Best Employer for Diversity.
Learn more about CACI International
Size
22,000 employees
Market Cap
$7.1 billion
Industry
Net Income
$374.4 million
Founded
1962
5 Year Trend
+7.3%
Revenue
$5.8 billion
NASDAQ

Similar Jobs

More Jobs at CACI International

More Information Technology Jobs

Find similar Splunk Engineer jobs: