Splunk Systems Administrator

Client Solution Architects (CSA)

$90K — $110K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Active Secret Clearance or ability to obtain one
  • CompTIA Security+ (Sec+) certification or related Bachelor's degree
  • 3+ years of systems administration experience
  • Hands-on experience with Splunk Enterprise in distributed environments
  • Familiarity with Zero Trust concepts and practices
  • Experience onboarding logs from multiple data sources
  • Automation and scripting experience using Python, Bash, or PowerShell
  • Knowledge of Linux system administration and security hardening

Responsibilities

  • Administer and maintain Splunk Enterprise deployments for high availability and security
  • Architect and implement Splunk solutions aligned with Zero Trust principles
  • Integrate log sources to ensure comprehensive visibility within Zero Trust architecture
  • Develop and optimize correlation searches, alerts, and dashboards for security monitoring
  • Support Zero Trust frameworks by enabling device and access control telemetry
  • Manage services within Splunk IT Service Intelligence (ITSI)
  • Collaborate with cybersecurity teams to align Splunk capabilities with security frameworks
  • Provide advanced support for Splunk user functionalities and automation needs
  • Participate in incident response and threat hunting using Splunk as a tool

Benefits

  • Onsite support for Navy client in Pensacola, FL
  • Support and enhance Splunk environment with Zero Trust emphasis
  • Opportunity to develop critical systems administration skills
  • Work within classified and unclassified environments
  • Join an award-winning team with a focus on cybersecurity advancements
Full Job Description
Job Type

Full-time

Description

CSA is currently seeking a Splunk Systems Administrator to support our Navy client onsite in Pensacola, FL.

CSA has an excellent opportunity for an experienced, self-directed Systems Administrator to support and enhance our Splunk environment with a strong emphasis on Zero Trust architecture and secure system design. This role requires deep technical expertise in data systems, cybersecurity practices, and secure system administration within classified and unclassified environments. The ideal candidate will play a critical role in advancing our organization's Zero Trust maturity by leveraging Splunk as a central security analytics and monitoring platform.

How Your Role Will Make an Impact:
  • Administer and maintain Splunk Enterprise deployments across classified and unclassified environments, ensuring high availability, performance, and security.
  • Architect and implement Splunk solutions that support Zero Trust principles, including continuous monitoring, least privilege access, and micro-segmentation visibility.
  • Integrate diverse log sources (endpoints, network devices, identity systems, cloud services) to enable comprehensive visibility aligned with Zero Trust architecture.
  • Develop and optimize correlation searches, alerts, and dashboards to detect anomalous behavior, insider threats, and policy violations.
  • Support implementation of Zero Trust frameworks by enabling telemetry for identity, device posture, and access control validation.
  • Manage and enhance services within Splunk IT Service Intelligence (ITSI) to align operational intelligence with security posture.
  • Collaborate with cybersecurity teams to map Splunk capabilities to frameworks such as NIST 800-207 (Zero Trust Architecture).
  • Provide advanced support to Splunk users, including search development, data onboarding, and dashboard creation for security and operational use cases.
  • Harden and secure Linux-based systems in accordance with DISA STIGs and organizational security policies.
  • Automate system administration, data ingestion, and security workflows using scripting languages such as Python, Bash, or PowerShell.
  • Participate in incident response and threat hunting activities using Splunk as a primary investigative tool.


Requirements

What You Will Need to Join Our Award-Winning Team:
  • Clearance: Must possess and maintain an active Secret Clearance or have the ability to obtain and maintain one.
  • Certification: CompTIA Security+ (Sec+) or qualifying Bachelor's degree in a related field.
  • Meet U.S. Navy Cybersecurity Workforce (CSWF) requirements.
  • Minimum of 3+ years of experience in systems administration, including implementation of DISA STIGs.
  • Hands-on experience administering Splunk Enterprise in distributed environments (indexers, search heads, forwarders).
  • Familiarity with Zero Trust concepts, such as identity-centric security, continuous verification, and least privilege access.
  • Experience onboarding and normalizing logs from multiple data sources (e.g., Active Directory, firewalls, EDR tools, cloud platforms).
  • Experience with automation and scripting (Python, Bash, or PowerShell).
  • Working knowledge of Linux system administration and security hardening.

What Sets You Apart:
  • Active Secret clearance
  • Experience implementing or supporting Zero Trust Architecture (ZTA) in a DoD or federal environment.
  • Familiarity with frameworks such as NIST 800-207, RMF, and MITRE ATT&CK.
  • Experience with Splunk Enterprise Security (ES) and/or ITSI.
  • Knowledge of identity and access management (IAM), multi-factor authentication (MFA), and endpoint security integration.
  • Splunk certifications (e.g., Splunk Enterprise Certified Admin, Splunk Core Certified Power User).
  • Experience with cloud platforms (AWS, Azure, or GovCloud) and their integration into Splunk.

Physical Requirements:

While performing the duties of this job, the employee is regularly required to:
  • Sit for extended periods of time and work at a computer workstation
  • Use hands and fingers to operate keyboards, mice, and other input devices
  • Communicate effectively, both verbally and in writing
  • Specific vision abilities required may include close vision, distance vision, depth perception, and the ability to adjust
  • Stand, walk, bend, or reach; Access equipment located in data centers, offices, or under desks
  • Lift and/or move equipment weighing up to 25 pounds

Similar Jobs

More Jobs at Client Solution Architects (CSA)

More Information Technology Jobs

Find similar Splunk Systems Administrator jobs: