About the job
***Security Clearance: Must possess an active TS/SCI with Full Scope Polygraph***
KDA Consulting is on the lookout for a talented Systems Engineer/Senior Data Engineer specializing in the design, implementation, and optimization of data pipelines and solutions within critical security and operational platforms, including Splunk, ServiceNow, and AppDynamics. The successful applicant will be a proactive problem solver with a proven ability to manage complex data ingestion, normalization, and correlation processes in high-stakes environments. This role is ideal for someone who excels in collaborative settings, possesses outstanding communication skills, and is committed to fostering continuous improvement and innovation.
Key Responsibilities:
- Splunk Data Engineering:
- Design, engineer, and maintain resilient Splunk infrastructures, including clustered environments for extensive data ingestion, correlation, and reporting.
- Automate intricate data ingestion methods (e.g., S3, syslog, JSON, APIs) from varied sources across multiple enclaves.
- Develop and enforce methods for data tagging and cataloging to ensure compliance with evolving security standards and enhance data discovery.
- Optimize data ingestion performance and efficiency across various network environments. Familiarity with Technical Add-ons is crucial.
- Parse and normalize non-standard data sets to enable thorough analysis and correlation within Splunk.
- Develop and refine Splunk queries, dashboards, and reports to visualize security events, infrastructure health, and operational metrics.
- Collaborate with IT operations and cyber security teams to enhance data sets, identify cyber threats, and strengthen security posture.
- Maintain ITSI and SIEM-like tools and custom content within virtualized environments.
- Perform tuning and filtering of events and information, creating custom views and content.
- Familiarity with UBA and Splunk is a plus.
- Collaborate with cross-functional teams to design and implement data integrations between various security and operational tools (including Splunk and AppDynamics) and ServiceNow.
- Develop and maintain data pipelines to ensure accurate and timely flow of security incidents, alerts, and operational metrics into ServiceNow for incident management, problem management, and reporting.
- Assist in defining and implementing data models within ServiceNow to support security operations and compliance initiatives.
- Work with third-party services for design review and optimal deployment configuration related to enterprise cloud service utilization (concerning integrations).
Join KDA Consulting and be part of a team that values innovation, collaboration, and excellence in the field of data engineering and system optimization.

