SIEM Solutions Engineer

2026-167180

CAtegory:

Cyber Security

Clearance:

Public Trust

Location:

,

Telecommute:

Remote work allowed 100%
About Peraton

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Program Overview
Peraton provides a full suite of hybrid compute operations services to manage and operate the Hybrid Computing Environment (HCE). The HCE is a collection of enterprise computing resources including a data center, colocation sites, private cloud services, and furnished commercial cloud services.
About The Role

Peraton is seeking an experienced SIEM Solutions Engineer to join our team of qualified and diverse individuals supporting the Department of Homeland Security DCCO program. This role supports a mission critical environment focused on enterprise cybersecurity operations, monitoring, and defensive cyber capabilities across complex federal IT systems.

 

The SIEM solutions engineer will be responsible for maintaining and operating SIEM products, primarily Splunk, ensuring they are collecting logs from their various sources, and ensuring the SOC is able to monitor the logs.

 

This position is remote. 

 

Day to Day Roles and Responsibilities:

 

  • Ensuring the DC1 Splunk infrastructure (applications and servers) and operational.
  • Apply Splunk security updates and patches as required to maintain operational capability and security compliance.
  • Ensure log sources from new systems, applications, hosts and databases and forwarded to Splunk.
  • Ensure the log sources are being provided in a view required by end users (SOC analysts and ISSO’s).
Qualifications

Basic Qualifications:

  • Bachelor’s degree with 5+ years of related experience, Master’s degree with 3+ years of experience, Associate’s degree with 7+ years of experience, or High School diploma/equivalent with 9+ years of related experience.
  • U.S. Citizenship required with the ability to obtain and maintain a Public Trust / DHS Entrance on Duty (EOD) clearance. Employment is contingent upon successfully obtaining and maintaining DHS EOD suitability.
  • 2+ years of hands on experience supporting, configuring, or administering Splunk Enterprise in an enterprise environment.
  • Comprehensive understanding of core Splunk architecture and components, including Universal Forwarders (UFs), Indexers, Search Heads, data pipelines, and log ingestion methodologies.
  • Experience configuring and managing log ingestion into Splunk from a variety of enterprise sources, including system, application, network, and security logs.
  • Experience developing dashboards, reports, alerts, and end user visualizations to support operational monitoring, reporting, and analytics.
  • Experience troubleshooting Splunk performance, ingestion, indexing, and search related issues.
  • Strong understanding of enterprise monitoring, observability, log aggregation, and security/event monitoring concepts.

Preferred Qualifications:

  • Prior experience supporting DHS environments or federal government programs utilizing Splunk is highly desired.
  • Experience supporting cybersecurity, SOC, NOC, SIEM, or operational monitoring environments preferred.
  • Familiarity with scripting or automation tools such as PowerShell, Python, or Bash preferred.
  • Relevant certifications such as CompTIA Security+, CEH, GCIA, GCIH, CISSP, or similar cybersecurity certifications preferred.
  • Splunk Core Certified Power User or Splunk Enterprise Certified Admin certification
Details

Target Salary Range: $66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at&nbsp;<a href="https://www.careers.peraton.com/benefits?" target="_blank" rel="noopener">https://www.careers.peraton.com/benefits.

Application Statements: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.&nbsp;By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity.

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

VIEW
SAVED
JOBS