hirly

This posting is no longer listed by Agile Defense.

hirly last saw it live on 2 September 2026. Similar roles are on the live board.

Agile Defense

Splunk Architect Lead (CBP)

Reston, VA

Apply through hirly

hirly scores this role against your resume, shows its reasoning, then writes a resume and cover letter for it and fills the application with you. Free to start — no card required.

hirly's read of this role

Seniority
Lead / management
Stated salary
$175,000 – $225,000 per year
Country
US
Work mode
On-site / unstated
First seen by hirly
1 Sept 2026

Derived automatically from the posting. Sign up to see how the role scores against your own resume.

the posting

About Agile Defense

At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.

Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.

Title : Splunk Architect Lead

Clearance : Active Top Secret Clearance with SCI eligibility, ability to obtain and maintain a CBP Background Investigation (CBP BI) and EOD, active BI strongly preferred. We can begin processing for candidates who do not hold one.

Citizenship : U.S. Citizenship required

Location : Reston, VA - Hybrid 3-5 days

Salary Range : $175,000-225,000

Signing Bonus : $10,000 for candidates with an active CBP BI. Payable after 90 days; standard terms apply.

Required Certification(s) : One of the following: Active Certified Information Security Manager (CISM) or Active Certified Information Security System Professional(CISSP).

SUMMARY

Agile Defense is seeking a Splunk Architect/Lead to support enterprise cybersecurity programs delivering 24/7/365 Cyber Security Operations Center (CSOC) services of USG customers. The Splunk Lead will provide expert technical leadership for enterprise-scale logging, monitoring, SIEM engineering, and custom log integration. This role is responsible for ensuring the reliability, performance, and modernization of the enterprise logging ecosystems across on-premises, cloud, and hybrid environments.

JOB DUTIES AND RESPONSIBILITIES

Lead the design, engineering, configuration, and optimization of enterprise logging platforms supporting CSOC operations. Act as the primary technical authority for SIEM architecture, log ingestion pipelines, parsing, normalization, enrichment, and storage strategies. Manage onboarding of new data sources across applications, endpoints, networks, cloud environments, and identity systems. Ensure log health monitoring, cluster health, pipeline resiliency, and integrity validation for continuous reliability. Enable dashboard creation, correlation rules, and alerting by guaranteeing high-quality, normalized data. Maintain compliance with logging standards, federal mandates, and Zero Trust visibility requirements. Drive modernization initiatives, including automation, cloud logging integrations, and data optimization. Produce technical documentation, including architecture diagrams, data dictionaries, and detailed reports. Support vulnerability assessments, compliance audits, and cross-team engineering reviews.

QUALIFICATIONS

Required Certifications

Active Certified Splunk Architect (II)

Minimum required experience

Last 5 years of experience serving as a senior Certified Splunk Administrator or Architect in large environment.An understanding and practical experience in applying project management principles; experience with diverse interconnected systems; strong understanding of industry best practices and technologies with experience in the application supporting a large Federal Government security operations organization

Experience in an enterprise IT environment as an applications or systems administrator working in Windows and Linux environments

Experience with bash, python and or PowerShell scripting languages and automation; strong networking background; strong security background; experience with cloud orchestration tools and a strong understanding of Amazon Web Services cloud services

Bachelor’s degree in computer science, engineering, Cybersecurity, STEM or related field.

Preferred Skills

Splunk Certified Admin/Engineer

Splunk Core Certified Consultant

Active Certified Information System Security Professional (CISSP)

Cloud provider certifications (AWS Certified Solutions Architect, Azure Solutions Architect Expert, etc)

Experience using cribl

Is this role actually a fit for you?

hirly answers with a score and its reasoning, then writes the resume and cover letter if you decide to go for it.

Score it against my resume
Splunk Architect Lead (CBP) at Agile Defense — hirly