Splunk Front End Engineer
Network Designs Inc.
- Washington DC
- $121,486-135,056 per year
- Permanent
- Full-time
- U.S. Citizenship is required
- Must be able to obtain a Public Trust clearance.
- This position is remote with occasional travel to DC, MD, VA, WV, NJ, and OK.
- Bachelor's degree in Computer Science, Cybersecurity, Engineering, Information Systems, Mathematics, Technology, or related IT field.
- Minimum 6 years hands-on experience building and supporting Splunk dashboards, reports, and saved searches.
- Expert proficiency with SPL, Dashboard Studio, data models, and the Asset Framework.
- Strong understanding of asset-centric reporting, CVE tracking, and executive situational awareness use cases.
- Proven ability to optimize Splunk search performance and design intuitive UI layouts.
- Excellent documentation skills and experience transferring knowledge to cross-functional teams.
- In-depth understanding of the Continuous Diagnostics and Mitigation (CDM) program and its phases (vulnerability management, configuration management, identity and access management, and incident response).
- Proficiency in Zero Trust principles, including micro-segmentation, least-privilege access, and continuous verification of users, devices, and services.
- Expertise in the NIST Risk Management Framework (RMF) (SP 800-37/SP 800-53), from categorization through monitoring and continuous authorization.
- Familiarity with the Cybersecurity Assessment and Secure Mission (CASM) model for evaluating control effectiveness and mission impact.
- Knowledge of Federal Information Security Modernization Act (FISMA) requirements and annual reporting processes.
- Experience applying FedRAMP security controls for cloud service providers and managing authorization packages (SSP, SAR, POA&M).
- Understanding of DISA STIG and SCAP standards for system hardening and automated compliance checking.
- Ability to map organizational controls to CISA CDM dashboard metrics and drive dashboard data integrations.
- Architect and implement Splunk dashboards for data-center asset inventory and vulnerability reporting.
- Build Executive dashboards that filter and highlight critical assets for situational awareness.
- Normalize dashboard layouts, panels, and visualizations to a consistent styling and naming convention.
- Optimize searches and SPL queries for performance and scalability.
- Integrate new data sources and onboard security systems into Splunk.
- Map CVE and asset owner data into asset-centric dashboards
- Produce and maintain dashboard documentation: data sources, queries, drill-downs, and user guides.
- Mentor junior engineers and lead knowledge-transfer sessions.
- Collaborate with stakeholders to plan new dashboards, define requirements, wireframes, and success metrics
- Splunk Enterprise (Search, SPL, Dashboard Studio, Data Models, Asset Framework).
- Splunk IT Service Intelligence (ITSI).
- Splunk Security Essentials.
- JIRA.
- Git.
- REST APIs
- JSON
- Basic CSS/HTML for dashboard theming