We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results

Splunk SOAR Engineer - McLean, VA - Active TS/SCI FS Poly Required Information Technology

SOC LLC
United States, Virginia, McLean
Oct 01, 2025
Splunk SOAR Engineer needed for a Direct Hire opportunity with SOC's client to work onsite in McLean, VA.

*Candidate must have an active TS/SCI with Full Scope Polygraph clearance to be considered for this role.

Job Description:

A Splunk SOAR Engineer is an individual who can operate independently and will be entrusted with delivering success for the client's customers to achieve predetermined goals aligned with a statement of work. To be successful in this role, a Level I/III Engineer will be expected to specialize in a capability aligned with the client's service practices while also contemplating which future opportunities they would like to explore. Excellent communication skills are essential for this role, as these individuals will interact with clients regularly.

How you'll make an impact



  • Spend 5% of their time focusing on developing corporate strategy, assisting with brand identity, and support operations.
  • Spend 5% of their time focusing on training and fine-tuning skills.
  • Spend 10% of their time managing the day-to-day operations of their team members and their respective career development efforts.
  • Spend 80% of their time on engagement delivery.
  • Execute all tasks outlined in the scope of work and follow standard operating procedures with no direct oversight.
  • Provide assistance for detailed view of notable events, workbook for open investigations, and risk analysis scoring system.
  • Assist and recommend actions in security operations center tier I and tier II incident response incidents.
  • Automate issue resolution and compliance reporting to lower time on detection, time on mitigation for security organizations.
  • Integrate Splunk Mission Control, Splunk Security Orchestration, Automation Response (SOAR), and/or other customer approved security product applications utilizing Enterprise Security.
  • Utilize data thresholds, trend-based conditions and behavioral pattern recognition.
  • Develop and maintain strong relationships with clients to ensure satisfaction.
  • Adhere to availability standards for responding to client inquiries.
  • Lead the communication of technical concepts effectively to clients.
  • Identify and communicate cross-sell and up-sell opportunities with the account team across services.

What we're looking for



  • Active TS/SCI clearance with FSP required.
  • Proven experience with Splunk SOAR (formerly Phantom) or similar security orchestration, automation, and response (SOAR) platforms.
  • Strong background in developing and maintaining automation playbooks and scripts.
  • Security Certification (i.e, Security+, CISSP, etc) required.
  • Experience operating in classified environments.
  • Bachelor's degree in a related area or at least 8 years of related work experience.
  • Robust understanding of identity, SIEM, cybersecurity, and infrastructure concepts.
  • Strong Linux and scripting (Python, Ansible, Teraform, JSON, others.) experience.
  • Ability to troubleshoot Splunk instances.
  • Create custom Splunk reports, dashboards, and content per customer requirements.
  • Strong understanding of governance and compliance, specifically with FAR, DFARs, CUI and CMMC.
  • Broad understanding of FedRAMP and IL constructs.
  • Strong understanding of leadership concepts and ideas.
  • Strong interpersonal skills and ability to work collaboratively in a team.
  • Experience leading an engineering team, preferably having handled tasking, resolving personnel issues, and providing actionable feedback.
  • Ability to clearly communicate complex messages to a variety of audiences.
  • Excellent problem-solving skills with a keen attention to detail.
  • Willingness to travel to meet client needs.

Employment Prerequisites

The following requirements must be met to be eligible for this position: successful completion of a background investigation and drug urinalysis.

SOC, a Day & Zimmermann company, is an Equal Opportunity Employer, EOE AA M/F/Vet/Disability.

Note: Any pay ranges displayed are estimations, which may have been provided by job boards. Actual pay is determined by an applicant's experience, technical expertise, and other qualifications as listed in the job description. All qualified applicants are welcome to apply.

Estimated Min Rate: $144200.00

Estimated Max Rate: $206000.00

#INDSOC
Applied = 0

(web-675dddd98f-24cnf)