Argo Cyber Systems
  • Dulles, VA, USA
  • Full Time

The CDM Data Integration Engineer will assist with the integration of CDM data sensors with the CDM data aggregator. The Engineer will be responsible for working with the product SMEs for Tenable Security Center, Forescout CounterACT, McAfee ePO, and SailPoint IdentityIQ technologies to manage the data connections to Splunk. While these are the currently defined CDM tools, the Engineer will be responsible to integrating any new CDM data sources.

Responsibilities Include:

  • Mapping CDM data types to data elements within the CDM sensors
  • In collaboration with the product SMEs, determine the best integration method between the CDM sensors and Splunk
  • In collaboration with the product SMEs, create the appropriate reports and data exports for their technology
  • In collaboration with the Splunk SME, integrate the CDM sensor data into the CDM Splunk repository
  • In collaboration with parent CDM organization, create data export processes to allow data to flow from the local CDM data repository to the parent CDM organization
  • Support the product SMEs to update CDM sensor data collection and formatting as agreed upon with parent CDM organization
  • Validate and monitor data quality within the CDM repository.

Required Skills:

  • Must be a US Citizen
  • Active Secret (S) clearance. Must be able to obtain a TS/SCI clearance
  • Must be able to obtain DHS Suitability
  • 8+ years of directly relevant Splunk design/implementation and support effort
  • Splunk Power User skills to include:
    • Ability to create regex searches
    • Ability to create lookups
    • Ability to create summary indexes
    • Ability to create statistical reports and graphs
    • Ability to configure DBConnect app
    • Ability to configure Tenable Add-On app
    • Ability to maintain data models
  • CDM Sensor technologies capabilities and data knowledge:
    • Tenable Security Center/Nessus - for vulnerabilities and configuration monitoring
    • Forescout CounterACT - eyeSight, Splunk HTTP event forwarder, DEX connector
    • McAfee ePolicy Orchestrator applications
    • Application Control and Policy Auditor
    • SailPoint IdentityIQ
  • Communication skills to include:
    • Updating system documentation o One-on-one training of product SMEs via virtual and on-premise communications
    • Assist large group training of CDM data usage via virtual and on-premise communications

Required Education:

  • Bachelor's degree in Systems Engineering, Computer Science, Information Systems or related technical field. Two years of related work experience may be substituted for each year of degree level education.

Desired Certifications:

  • Splunk Core Certified Power User
  • Splunk Enterprise Certified Admin
Argo Cyber Systems
  • Apply Now

    with our quick 3 minute Application!

  • * Fields Are Required

    What is your full name?

    How can we contact you?

  • Sign Up For Job Alerts!

  • Follow Jobs:
  • Follow Our Jobs On Facebook See us on LinkedIn
  • Share This Page
  • Facebook Twitter LinkedIn Email
logo home about services jobs contact