G2IT

Splunk SOAR Administrator

G2IT · Suitland, Maryland, United States
Suitland, Maryland, United States $130K–$140K Posted 2026-09-17
Salary
$130K–$140K
Type
Full-time
Experience
8+ yr

We are hiring a  Splunk SOAR Administrator  to join our team in  Suitland, MD.  In this role, you will provide engineering, operations, and technical support for Security Information and Event Management (SIEM) platforms that support threat detection, compliance, and security incident management for the Office of Naval Intelligence's Hopper Global Communications Center (HGCC). You will help develop and automate cybersecurity operations while supporting mission critical defensive cyber capabilities.

Primary Responsibilities

  • Design, deploy, and maintain EAC backend architecture.
  • Administer the SOAR platform, including configuration, asset integrations, and custom fields.
  • Design, develop, test, and maintain automated SOAR playbooks for alert triage, enrichment, and risk based response.
  • Integrate SOAR with Splunk Enterprise Security, ticketing systems, and threat intelligence feeds.
  • Manage clustering, replication, indexing performance, and license usage.
  • Apply DISA STIGs, SRGs, and NAVINTEL Information Assurance baselines.
  • Maintain version control, approval workflows, and playbook governance.
  • Configure and maintain the secure transmission of Audit.XML records to Intelligence Community partners through ITS and troubleshoot transmission failures.
  • Implement standard incident response workflows aligned with MITRE ATT&CK, NIST SP 800-61, and HGCC N62 Defensive Cyber Operations procedures.
  • Travel may be required between the National Maritime Intelligence Center (NMIC) and other designated CONUS and OCONUS locations in support of program requirements.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Information Assurance, or a related discipline with 8+ years of relevant experience, or a Master's degree with 6+ years of relevant experience. 15+ years of experience, including at least 10 years supporting LAN/WAN technologies, may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Active IAT Level III certification (such as CISSP).
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years of experience with Splunk, including Splunk Add-ons, Apps, Technology Add-ons (TAs), and Universal Forwarder.
  • Expert knowledge of Splunk, including Splunk Enterprise, Splunk Enterprise Security, and Splunk SOAR.
  • Significant experience with the System/Software Development Life Cycle (SDLC).
  • Strong analytical and problem solving skills.
  • Effective verbal and written communication skills.

Salary range: $130K-$140K, depending on experience

$60K — 10th pctl $230K — 90th pctl
This role’s midpoint $135K vs. market median $130K for Operations roles
~median
market rate
Based on 19,000+ Operations roles with disclosed salary ranges tracked on NewJob.
D
Lead Software & AI Engineer
San Diego, California, United States
Data & ML
$200K–$225K
E
DevSecOps / Systems Engineer
San Diego, California, United States
Engineering
$180K–$200K
E
Systems Engineer - Backup
San Diego, California, United States
Engineering
$160K–$185K
See all 15+ roles at G2IT →
S
Splunk Enterprise Administrator (5552) (TS/SCI)
SMX Fort Meade, MD
Operations
$160K–$190K
V
Senior Splunk Administrator
Veeam Software Remote (US) Remote
Operations
$167K–$310K
A
Senior Desktop Administrator
A-TEK Rockville, Maryland, United States
Operations
$70K–$80K
A
Senior Atlassian Administrator
AgileBits Inc. (1Password) Remote (US) Remote
Operations
$123K–$172K
See all Operations roles →

Interested in this role?

Apply directly on the company site — no recruiter middleman, no account required.

Apply now →
Apply on company site