Splunk Engineer/Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Piper Companies is seeking a Splunk Engineer / Architect to support a leading organization in the cybersecurity and enterprise technology industry. The Splunk Engineer / Architect will play a critical role in designing, implementing, and optimizing enterprise-scale Splunk environments within a SOC, with a strong focus on backend engineering and architectural design rather than dashboarding or end-user analytics. The Splunk Engineer/Architect is a long term contract opportunity, requires an active Secret Clearance and requires you to work onsite 5 days per week in RTP, NC.
- Design and deploy scalable, highly available Splunk architectures across on-prem, cloud, and hybrid environments.
- Lead Splunk engineering efforts including installation, configuration, upgrades, and ongoing platform maintenance (indexers, search heads, forwarders, clustering).
- Develop and execute data ingestion strategies, including onboarding, normalization, parsing, and performance optimization.
- Establish governance, platform standards, and best practices to ensure long-term scalability and reliability.
- Support SOC operations by building and tuning SIEM use cases, correlation searches, and alerts aligned with MITRE ATT&CK.
- Collaborate with cybersecurity and infrastructure teams to enhance threat detection, monitoring, and incident response capabilities.
Requirements
- 5+ years of hands-on Splunk Engineering/Architecture experience (backend focus, not dashboarding).
- Strong expertise with Splunk Enterprise and Splunk Enterprise Security (ES) in large-scale environments.
- Deep understanding of data ingestion, indexing, clustering (indexer/search head), and search optimization.
- Experience supporting Splunk within a SOC and contributing to SIEM/security monitoring strategies.
Benefits & conditions
- $140,000-$180,000
- Full Comprehensive Benefits: Health, Vision, Dental, PTO, Paid Holiday and Sick Leave if Required by Law.
Keywords: Splunk, Splunk Engineer, Splunk Architect, SIEM, Splunk Enterprise, Splunk ES, Security Operations Center, SOC, data ingestion, indexer clustering, search head clustering, MITRE ATT&CK, threat detection, logging strategy, monitoring, cybersecurity, backend Splunk engineering, RTP jobs, active secret clearance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Dev Digest 166: Sycophancy, Zip bombs and AI Native Development
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
Highest Paying Tech Companies for Developers