*This position requires an Active Public Trust clearance or higher to be considered.*
ProSync Technology Group, LLC (ProSync) is an award-winning, SDVOSB Defense Contracting company with a strong military heritage and a record of excellence in supporting the Department of Defense and the Intelligence Community. If you have prior military service or government contracting experience, are proud to serve and support our nation, and want to help support ProSync's mission to "Define and Redefine the State of Possible,” please apply today!
The Junior Security Operations Engineer will support enterprise cybersecurity operations working with SMEs managing Splunk, Cribl and Armis. This role focuses heavily on supporting Splunk and associated security tooling to enhance visibility, detect threats, and support compliance and incident response activities across primarily on premise and Cloud environments.
Responsibilities:
SIEM & Security Tools Support (Primary Focus):
- Support and maintain Splunk for log ingestion, search, and security analysis etc.
- Working in tandem with TMI team to support M-21-31 mandate.
- Assist with onboarding, integrating, and validating data sources into SIEM platforms.
- Support Armis for asset visibility and security monitoring.
- Support Cribl for log routing, transformation, and pipeline optimization.
- Ensure reliable log ingestion and data flow into centralized security systems.
Log Management & Data Handling:
- Analyze logs from Windows, Linux, network, and enterprise systems.
- Understand log sources and their relevance to security investigations.
- Ensure logs are centralized, searchable, and investigation ready.
- Troubleshoot missing, delayed, or malformed log data.
Troubleshooting & Operational Support:
- Troubleshoot SIEM platforms and supporting infrastructure.
- Assist internal teams with security related technical issues.
- Resolve issues related to log ingestion, connectivity, and performance.
- Troubleshoot Splunk Universal Forwarders, resolve issues on Windows and Linux platforms.
Environment & Platform Awareness:
- Develop understanding of enterprise infrastructure, architecture, and data flows.
- Understand how logs are generated and consumed by various platforms.
- Understand interactions between systems and security tools.
On Premise Support & Collaboration:
- Work on site full time initially for hands on exposure and collaboration.
- Support on prem systems and infrastructure as needed.
- Work directly with engineers, admins, and stakeholders to resolve issues.