Splunk UBA Engineer

LEIDOS, INC.

Apply to this job
Suitland, MD Until 10/3/2026 8+ years exp H-1B sponsor history First posted August 4, 2026 Last posted August 4, 2026
Job description

Splunk UBA Engineer

Location: Suitland, MD
Security Clearance: Active TS/SCI Required

Leidos is hiring a Splunk UBA Engineer to join our team in Suitland, MD. In this role, you will provide engineering, operations, and technical support for Security Information and Event Management (SIEM) platforms that enable threat detection, compliance, and security incident management for the Office of Naval Intelligence's Hopper Global Communications Center (HGCC). You will help optimize user behavior analytics, strengthen threat detection capabilities, and support mission critical defensive cyber operations.

Primary Responsibilities

  • Administer the SOAR platform, including configuration, asset integrations, and custom fields.
  • Administer the User Behavior Analytics (UBA) platform, including configuration, data source ingestion, and validation.
  • Configure behavioral baselines, peer group analysis, user, device, and entity modeling, and risk scoring thresholds.
  • Monitor UBA pipeline health, model accuracy, and analytic coverage.
  • Tune anomaly detection logic to reduce false positives and improve threat detection accuracy.
  • Validate UBA insights against known security incidents and integrate findings into Splunk Enterprise Security.
  • Support UBA platform upgrades and analytic refresh cycles.
  • Support Risk Management Framework (RMF) and Assessment & Authorization (A&A) activities.
  • Recommend architectural and security improvements.
  • Travel may be required between the National Maritime Intelligence Center (NMIC) and other designated CONUS and OCONUS locations in support of program requirements.

Required Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Information Assurance, or a related discipline with 8+ years of relevant experience, or a Master's degree with 6+ years of relevant experience. 15+ years of experience, including at least 10 years supporting LAN/WAN technologies, may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Active IAT Level III certification (such as CISSP).
  • 8+ years of engineering experience supporting Computer Network Defense (CND).
  • 6+ years of experience with Splunk, including Splunk Add-ons, Apps, Technology Add-ons (TAs), and Universal Forwarder.
  • Expert knowledge of Splunk and its components, including Splunk Enterprise, Splunk Enterprise Security, and Splunk User Behavior Analytics (UBA).
  • Significant experience with the System/Software Development Life Cycle (SDLC).
  • Strong analytical and problem solving skills.
  • Effective verbal and written communication skills.

NITESONI

DABAOPP1

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

August 4, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $107,900.00 - $195,050.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About this role

Summary

Support and optimize splunk UBA, improve threat detection, and support cyber operations.

Job title

Splunk UBA Engineer

Experience level

8+ years

Minimum experience

8+ years exp

Industry

defense

Location requirements

On-site in Suitland, MD; travel possible, no remote work

Salary

$108k–$195k

Visa sponsorship

H-1B sponsor history

Management role

No

Skills & keywords

Required skills

splunksplunk enterprise securitysplunk UBAIAT Level IIICISSPLAN/WAN

Preferred skills

None specified

Specializations

splunkUBAthreat detectionSIEMcybersecurity
Locations

Structured locations inferred from the posting.

Suitland-Silver Hill, MD, USA

On-site City