We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Splunk Cyber Security Architect / Engineer SME

Castalia Systems
paid holidays, 401(k)
United States, Virginia, Falls Church
Aug 15, 2025

Work Type: Remote (with the ability to travel to Falls Church, VA or Morrisville, NC as required by client)

Job Type: Full-Time

Clearance: Public Trust

Must be a U.S. Citizen

Benefits: Medical, dental, and vision coverage, 401k matching, generous PTO, paid holidays, professional training opportunities, and even pet insurance to ensure your furry friends are cared for too.

Job Summary

Castalia Systems is seeking a Splunk Subject Matter Expert with strong Engineering skills to join our dynamic team. The ideal candidate will be responsible for designing, deploying, and maintaining on-premises and cloud based Splunk environments to support enterprise-level monitoring, alerting, and reporting. This role demands deep expertise in Splunk system architecture, design, implementation, configuration and operational support in a hybrid on-prem Unix/Linux and cloud-based environment. The candidate must be able to collaborate across DevOps, Security, and IT teams to optimize performance, ensure data integrity, system availability and support mission-critical operations. Proven hands-on experience with a large enterprise wide Splunk environment is mandatory.

Required Qualifications



  • Bachelor's degree in Computer Science, Information Technology or related field or 4 years of relevant experience in lieu of degree.
  • 10+ Years of Splunk experience.
  • Manages knowledge objects (fields, extractions, tags, event types, lookups, workflow actions, aliases, macros, and so on) - through automations, scripting, management server functions; to include .conf and .cfg files in scope of the last four Splunk Enterprise versions.
  • Experience with Splunk deployment and configuration management in large-scale environments.
  • Proficiency in writing complex Splunk queries, dashboards, and alerts using SPL (Search Processing Language).
  • Experience with REST APIs for Splunk and external system integration.
  • Ability to analyze and troubleshoot complex data ingestion and parsing issues.
  • Designing and developing an automations workflow and dashboard interface for such.
  • Self-starter with a service-oriented mindset who will take action, find ways to solve problems, and move projects to conclusion independently.
  • Strong problem-solving skills and the ability to translate research insights into practical solutions that address real-world challenges.
  • Strong communication and collaboration skills with the ability to articulate complex technical concepts to both technical and non-technical audiences.
  • Experience in mentoring and guiding junior researchers or team members.


Desired



  • Ability to leverage the Splunk AI Assistant and other AI tools to increase accuracy and efficiency of task and other deliverables.
  • Advanced knowledge of Unix/Linux and/or Windows systems administration and troubleshooting.
  • Strong scripting skills in Bash, Python, JavaScript, SQL and PowerShell for automation and integration tasks.
  • Experience with Splunk upgrades, patching, and performance tuning.
  • Proficiency in integrating Splunk with cloud platforms (AWS, GCP, Azure).
  • Understanding of security and compliance requirements and implementation of role-based access controls (RBAC) in Splunk.
  • Strong knowledge of logging standards and best practices across application and infrastructure layers.
  • Extensive knowledge of defense-in-depth principles, Network and Security architecture, network topology, IT device integrity, and common security elements.
  • Executes new projects as well as data and user onboarding.
  • Strong understanding of IT and Cyber industry standards and technologies to include such controls governed by NIST, FISMA, and FedRamp.
  • Experience installing and utilizing and developing with the Splunk App for Data Science and Deep Learning.
  • Experience installing and utilizing and developing with the Splunk SOAR Automation toolset.
  • Experience or background in the Cybersecurity, Systems/Network Administration or Observability industry.


Physical Requirements/Work Environment



  • Normal office environment.
  • Off-hours and weekend efforts for systems maintenance, upgrades and support may be required from time to time.


Travel



  • Must be willing to travel 0-25% of the time.


Company Description

Castalia Systems is a proven business partner providing mission critical solutions to the Federal Government. We provide cutting edge solutions from Securing and Managing Data to Systems Engineering and Development. Castalia Systems is a pioneer in Artificial Intelligence Design and Application.

With our vast knowledge of our customers' needs and relevant technology, our team is able to bring successful solutions to every mission. We are one-upping our competitors by providing premium IT solutions and platforms with cutting-edge technology so it's so evident when you compare us with anyone.

Disclaimer

Castalia Systems is an equal employment opportunity and affirmative action employer and strives to comply with all applicable laws prohibiting discrimination based on race, color, creed, sex, sexual orientation, age, national origin, or ancestry, physical or mental disability, veteran status, marital status, HIV-positive status, as well as any other category protected by federal, state, or local laws. All such discrimination is unlawful, and all persons involved in the operations of the company are prohibited from engaging in this type of conduct.

Applied = 0

(web-5cf844c5d-jtghc)