Senior Principal Cyber Security Engineer
Abile Group, Inc. · Chantilly, VA
—
Jul 22, 2026
Chantilly, VA
Jul 24, 2026
What this job asks for AI summary
A senior-level, fully on-site role focused on Splunk engineering and administration within a classified Intelligence Community environment. Day-to-day work centers on deploying and maintaining Splunk infrastructure — including forwarders, add-ons, and role-based access controls — troubleshooting data ingestion, and producing accreditation and change-management documentation. Suited to an experienced cybersecurity engineer holding an active TS/SCI clearance with CI polygraph and Splunk certification.
Senior level · 10+ years · Washington-Arlington-Alexandria, DC-VA-MD-WV · TS/SCI clearance · Contract
Advertised as Principal, but the requirements read as Senior.
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $152,225 (middle half $125,286–$177,673).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (12)
The posting is titled 'Senior Principal' — a compound level not in the standard bands. 'Principal' is used as the advertised level since it is the higher/more specific of the two words in the title; however, the actual requirements (10+ years, Splunk/SIEM operations, no explicit org-wide technical authority) support a Senior band.
The role is described as a 'long term contract,' confirming Contract employment type.
TS/SCI with a CI (Counterintelligence) polygraph is explicitly required — mapped to TopSecretSci.
A Bachelor's degree is listed, but 4+ additional years of cybersecurity experience is accepted in lieu, so no minimum degree is hard-gated.
SIEM and Splunk appear together in the same required bullet ('SIEM platforms and/or Splunk'); emitted as two skills with Splunk as an alternative for SIEM to reflect the 'and/or' framing.
Splunk Add-ons deployment and Splunk Deployment Server are core day-to-day responsibilities; Splunk certification is explicitly required.
DoD 8570.1 IAT Level II certification must be held or obtainable within 6 months — treated as a hard gate per the posting's language.
Red Hat and CentOS appear under Desired Skills as interchangeable Linux distributions; emitted as one preferred skill with CentOS as the alternative.
The alt SOC (15-1244) reflects that a meaningful portion of the role involves infrastructure operations (deploying/managing Splunk forwarders, configuration management, system administration), though the primary framing is cybersecurity analysis and SIEM operations.
Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): DoD 8570 IAT Level II, Host Based Security System.
Requires a TS/SCI clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.
Posting is for a contract engagement — the market benchmarks below price full-time roles, so read the comp comparison with that in mind.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.