Senior Splunk Engineer

Seneca Resources
United States
13 days ago
Apply on senecahq.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Bash Shell Cloud Computing Cyber Security Information Engineering Linux Intrusion Detection and Prevention Python (Programming Language) Log Files Networking Basics Parsing Windows PowerShell Role-Based Access Control
+12 more
Security Information and Event Management Syslog Systems Integration TCP/IP Transport Layer Security Cloud Platform System Firewalls (Computer Science) Information Technology Data Analytics Splunk Network Server Data Pipelines

Job description

We are seeking an experienced Splunk Engineer to design, implement, and optimize enterprise-scale Splunk Enterprise and Splunk Cloud environments. This role is ideal for a highly technical professional who thrives in cybersecurity, observability, SIEM operations, and large-scale log management environments.

The successful candidate will play a critical role in building and maintaining secure, scalable, and high-performing Splunk solutions that support security monitoring, threat detection, incident response, compliance initiatives, and operational visibility across the organization.

What You’ll Do

Splunk Architecture & Administration

  • Design, implement, maintain, and optimize Splunk Enterprise and Splunk Cloud environments.
  • Manage and support Splunk infrastructure, including: Indexers, Search Heads, Forwarders, Deployment Servers
  • Monitor platform health, performance, scalability, and availability.

Data Engineering & Integration

  • Onboard and integrate logs and data sources from cloud platforms, applications, operating systems, infrastructure, and security tools.
  • Build and maintain data pipelines for data parsing, normalization, enrichment, transformation, and routing.
  • Ensure data quality and optimize ingestion performance across the Splunk ecosystem.

Security Monitoring & Analytics

  • Develop and maintain dashboards, reports, alerts, saved searches, and data models.
  • Create and enhance use cases supporting: SIEM operations, Threat detection, Incident response, Security monitoring, Compliance reporting, Operational intelligence
  • Perform alert tuning and continuous improvement of monitoring capabilities.

Governance & Collaboration

  • Administer role-based access control (RBAC) and security configurations.
  • Create architecture diagrams, implementation standards, operational procedures, and technical documentation.
  • Partner with security analysts, engineers, operations teams, and leadership to communicate technical solutions and recommendations.
  • Troubleshoot and resolve complex technical and operational challenges.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related discipline.
  • 5+ years of hands-on experience administering, implementing, and supporting Splunk Enterprise and/or Splunk Cloud environments.
  • Strong experience with Splunk architecture, including: Indexers, Search Heads, Forwarders, Deployment Servers
  • Expertise with Splunk Search Processing Language (SPL).
  • Experience developing and supporting dashboards, reports, alerts, alert tuning, saved searches, and data models.
  • Experience onboarding and normalizing data from infrastructure, cloud, application, and security platforms.
  • Experience building and maintaining data pipelines for parsing, enrichment, normalization, and routing.
  • Working knowledge of: SIEM platforms, Security monitoring, Threat detection, Incident response workflows
  • Strong understanding of networking fundamentals, including: TCP/IP, UDP, TLS/SSL, Syslog, Firewall connectivity, Transport troubleshooting
  • Experience with system log analysis and troubleshooting.
  • Experience administering Linux and Windows environments.
  • Excellent communication, collaboration, analytical, and problem-solving skills.

Required Certifications

Candidates must possess at least one of the following certifications:

  • Splunk Core Certified Power User
  • Splunk Enterprise Certified Admin
  • Splunk Enterprise Security Certification, * Splunk Certified Architect
  • Splunk Enterprise Security Certified Admin
  • Experience with Splunk Enterprise Security (ES)
  • Experience supporting or integrating SOAR platforms
  • Experience automating operational tasks using: Python, PowerShell, Bash
  • Experience supporting Security Operations Centers (SOC)
  • Familiarity with cybersecurity frameworks, compliance monitoring, and security operations best practices

About the company

At Seneca Resources, we are more than just a staffing and consulting firm, we are a trusted career partner. With offices across the U.S. and clients ranging from Fortune 500 companies to government organizations, we provide opportunities that help professionals grow their careers while making an impact.

When you work with Seneca, you’re choosing a company that invests in your success, celebrates your achievements, and connects you to meaningful work with leading organizations nationwide. We take the time to understand your goals and match you with roles that align with your skills and career path. Our consultants and contractors enjoy competitive pay, comprehensive health, dental, and vision coverage, 401(k) retirement plans, and the support of a dedicated team who will advocate for you every step of the way.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on senecahq.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all