Splunk Architect

Purple Drive Technologies LLC
Charlotte, United States
6 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Data Analysis User Authentication Microsoft Azure Unix Cloud Computing Cloud Engineering Cyber Security Databases Continuous Integration Linux
+23 more
DevOps HP Systems Insight Manager Information Technology Operations Networking Hardware Python (Programming Language) Parsing Role-Based Access Control Cloud Services Ansible Security Information and Event Management Data Streaming Systems Integration Google Cloud Enterprise Software Applications Cloud Platform System Data Ingestion Database Optimization Indexer Kubernetes Restful APIs Terraform Splunk Microservices

Job description

We are seeking an experienced Splunk Architect to design, implement, and lead enterprise-scale Splunk solutions for security monitoring, observability, log management, and analytics. The ideal candidate will have strong expertise in Splunk architecture, data onboarding, search optimization, dashboards, integrations, and large-scale deployments., * Design and architect highly scalable, secure, and resilient Splunk Enterprise / Splunk Cloud environments.

  • Define Splunk architecture, deployment models, data flows, indexing strategies, and retention policies.
  • Lead implementation and migration of enterprise Splunk platforms.
  • Develop and optimize SPL queries, dashboards, reports, alerts, and data models.
  • Integrate Splunk with enterprise applications, cloud platforms, databases, APIs, and security tools.
  • Design solutions for SIEM, security monitoring, IT operations, application monitoring, and observability.
  • Implement and manage data ingestion from servers, applications, network devices, cloud services, and security platforms.
  • Optimize indexing, search performance, storage, licensing, and platform capacity.
  • Establish Splunk security, RBAC, governance, and operational best practices.
  • Provide technical leadership, architecture documentation, and design recommendations.
  • Troubleshoot complex Splunk performance, ingestion, and search-related issues.
  • Collaborate with security, infrastructure, application, cloud, and DevOps teams.

Requirements

  • 10+ years of experience in IT with strong hands-on Splunk experience.
  • Strong experience designing enterprise Splunk architecture and deployment models.
  • Expertise in Splunk Enterprise, Splunk Cloud, Splunk Enterprise Security (ES).
  • Strong proficiency in SPL, dashboards, reports, alerts, and data models.
  • Experience with Splunk Indexers, Search Heads, Heavy Forwarders, Universal Forwarders, and Cluster Management.
  • Experience with data onboarding, parsing, field extraction, CIM, and source types.
  • Strong knowledge of Linux/Unix environments.
  • Experience with Python, REST APIs, and automation.
  • Experience integrating Splunk with SIEM, cybersecurity, cloud, and monitoring platforms.
  • Knowledge of AWS/Azure/Google Cloud Platform and cloud-native architectures.
  • Strong understanding of networking, security, authentication, and enterprise infrastructure.
  • Preferred Qualifications
  • Splunk certifications such as Splunk Enterprise Certified Architect, Splunk Enterprise Security Certified Admin, or Splunk Core Certified Power User.
  • Experience with SOAR, ITSI, Observability, or OpenTelemetry.
  • Experience with Kubernetes, containers, and microservices.
  • Experience with DevOps, CI/CD, Terraform, or Ansible.
  • Strong communication, stakeholder-management, and technical leadership skills.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all