Splunk Architect
Splunk Architect
Job Summary
We are seeking an experienced Splunk Architect to design, implement, and lead enterprise-scale Splunk solutions for security monitoring, observability, log management, and analytics. The ideal candidate will have strong expertise in Splunk architecture, data onboarding, search optimization, dashboards, integrations, and large-scale deployments.
Key Responsibilities:
- Design and architect highly scalable, secure, and resilient Splunk Enterprise / Splunk Cloud environments.
- Define Splunk architecture, deployment models, data flows, indexing strategies, and retention policies.
- Lead implementation and migration of enterprise Splunk platforms.
- Develop and optimize SPL queries, dashboards, reports, alerts, and data models.
- Integrate Splunk with enterprise applications, cloud platforms, databases, APIs, and security tools.
- Design solutions for SIEM, security monitoring, IT operations, application monitoring, and observability.
- Implement and manage data ingestion from servers, applications, network devices, cloud services, and security platforms.
- Optimize indexing, search performance, storage, licensing, and platform capacity.
- Establish Splunk security, RBAC, governance, and operational best practices.
- Provide technical leadership, architecture documentation, and design recommendations.
- Troubleshoot complex Splunk performance, ingestion, and search-related issues.
- Collaborate with security, infrastructure, application, cloud, and DevOps teams.
Required Skills:
- 10+ years of experience in IT with strong hands-on Splunk experience.
- Strong experience designing enterprise Splunk architecture and deployment models.
- Expertise in Splunk Enterprise, Splunk Cloud, Splunk Enterprise Security (ES).
- Strong proficiency in SPL, dashboards, reports, alerts, and data models.
- Experience with Splunk Indexers, Search Heads, Heavy Forwarders, Universal Forwarders, and Cluster Management.
- Experience with data onboarding, parsing, field extraction, CIM, and source types.
- Strong knowledge of Linux/Unix environments.
- Experience with Python, REST APIs, and automation.
- Experience integrating Splunk with SIEM, cybersecurity, cloud, and monitoring platforms.
- Knowledge of AWS/Azure/GCP and cloud-native architectures.
- Strong understanding of networking, security, authentication, and enterprise infrastructure.
- Preferred Qualifications
- Splunk certifications such as Splunk Enterprise Certified Architect, Splunk Enterprise Security Certified Admin, or Splunk Core Certified Power User.
- Experience with SOAR, ITSI, Observability, or OpenTelemetry.
- Experience with Kubernetes, containers, and microservices.
- Experience with DevOps, CI/CD, Terraform, or Ansible.
- Strong communication, stakeholder-management, and technical leadership skills.
Recommended Jobs
Consultant, Territory Sales - Pharmacy Business Consultant
**This territory covers Central and Western NC, inclusive of Winston-Salem and Asheville. Ideal candidate will sit within the territory** What Territory Management - Distribution contributes to Card…
Product Engineer (Mechanical Design Engineer)
Job Responsibilities: Support designs with calculations, virtual analysis, decision analysis, feedback from others Integrates knowledge of product usage in to design to improve customer experie…
Site Quality Inspector
Site Quality Inspector Driven by Vision | Industrial-Strength Construction | Powered by Passion OVERVIEW Are you looking to work for a successful, stable, and growing company that rewards e…
NURSING CARE ASSISTANT I
At Duke Health, we're driven by a commitment to compassionate care that changes the lives of patients, their loved ones, and the greater community. No matter where your talents lie, join us and discov…
Breakfast Server @ The Residence Inn Raleigh Downtown
Job Description Job Description Description: JOB DESCRIPTION JOB TITLE: BREAKFAST HOST/HOSTESS DEPARTMENT: FOOD & BEVERAGE REPORTS TO: FOOD & BEVERAGE/OPERATIONS/ASSISTANT GENERA…
Subject Matter Expert (Joint Special Operations)
Job Title Subject Matter Expert (Joint Special Operations) Why IDS? IDS believes in resolving conflict, building innovative approaches to do so. Combining operational expertise with an intimat…
Host/Hostess
For this position, pay will be variable by location - See additional job details and benefits below Work in a team-oriented, high-volume, fast-paced, guest-centric environment to provide gu…
Night Shift Server / Wait Staff
At Waffle House, we are not in the food business. We are in the People Business and we are hiring immediately for full time and part time servers for the Night Shift. Being in the People Business, w…
Courtyard Boone - Fri and Sat Night Audit
About Us: ~ The Courtyard by Marriott in Boone, NC is seeking self-motivated and positive individuals to join their 3rd Shift team. Responsibilities: ~ Specific job duties include, but are n…