Senior Cyber Security Engineer (Splunk)

CACI, INC.-FEDERAL

Apply to this job
Chantilly, VA, US Until 8/21/2026 10+ years exp First posted June 5, 2026 Last posted June 5, 2026
Job description
Job Title: Senior Cyber Security Engineer (Splunk)

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: TS/SCI with Polygraph

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Local

* * *

Step into a mission-driven cybersecurity role where your expertise directly strengthens the security, resilience, and intelligence of an enterprise-scale environment. We’re looking for a Senior Cyber Security Engineer who is passionate about protecting critical systems, solving complex technical challenges, and building high‑performance data collection and monitoring capabilities that empower smarter decision-making.

Responsibilities:

  • Troubleshoot and resolve new or existing data collection issues to ensure accurate, reliable ingestion of security‑relevant data.

  • Diagnose and remediate system issues affecting stability, performance, and overall usability.

  • Deploy, manage, and maintain both supported and unsupported Splunk Add‑ons across diverse data sources.

  • Develop and maintain detailed documentation, including BOE artifacts, engineering documentation, change management records, system security plans, and accreditation materials.

  • Deliver comprehensive Splunk deployment documentation outlining specifications, deployment strategies, and architectural considerations for production environments.

  • Implement and uphold strict role‑based access controls to ensure data is shared only on a validated need‑to‑know basis.

  • Design and deploy Splunk forwarders using centralized configuration management via the Splunk Deployment Server, enabling rapid and consistent deployments.

Qualifications:

Required:

  • An active TS/SCI with Polygraph is required.

  • Bachelor’s degree, or 4+ additional years of cyber experience in lieu of a degree.

  • 10+ years of experience in a cybersecurity role.

  • Experience with Security Information and Event Management (SIEM) platforms and/or Splunk.

  • Knowledge of Linux systems administration, general operating system security practices, TCP/IP networking, and network security concepts.

  • Knowledge of Certification and Accreditation (C&A) processes.

  • Knowledge of DoD policy and technical security guidance for information systems.

  • DoD Directive 8570.1 IAT Level II or higher certification, or the ability to obtain within six (6) months.

  • Splunk certification is required.

Desired:

  • Experience with Red Hat, CentOS, or similar Linux distributions.

  • Exposure to AWS or other cloud platforms.

  • Knowledge of ICS 500‑27 audit collection requirements.

  • Familiarity with Enterprise Security Services, Host-Based Security Services, Enterprise Vulnerability Scanning Services, and User Activity Monitoring (UAM).

  • Ability to tailor data feed creation to ensure logs are standardized according to policy and compliance standards.

Physical Requirements:

  • Ability to remain in a stationary position approximately 50% of the time.

  • Occasional movement within the office to access equipment or collaborate with colleagues via meetings, presentations, or communication tools.

This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI.

What You Can Expect:

 A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.


Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

The proposed salary range for this position is:

$103,800 - $218,100

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
About this role

Summary

Design, implement, and troubleshoot Splunk data collection and security monitoring systems.

Job title

Senior Cyber Security Engineer (Splunk)

Experience level

10+ years

Minimum experience

10+ years exp

Industry

information technology

Location requirements

Chantilly, VA, US; remote work not specified but local preferred

Salary

$104k–$218k

Management role

No

Skills & keywords

Required skills

security information and event managementsplunklinuxTCP/IPsecurity processesC&ADoD policyIAT Level II

Preferred skills

red hatcentosawsics 500‑27security serviceslog standardization

Specializations

splunksiemlinuxnetwork securitycybersecurity
Locations

Structured locations inferred from the posting.

Chantilly, VA, USA

On-site City