Hybrid Splunk Architect - SIEM & Incident Response Lead

TEKsystems

United States

Hybrid

USD 80,000 - 114,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical, dental & vision
401(k) Retirement Plan
Life Insurance
PTO / Vacation
HSA Health Spending Account

Job summary

TEKsystems seeks a Splunk Platform Operations lead to own end-to-end production support for a highly distributed Splunk Enterprise and Splunk Cloud environment.

You will manage clusters, ensure availability and performance, and lead incident response and root-cause analysis while working with security teams on SIEM enablement and data ingestion. This hybrid role is based in Richmond, VA.

Qualifications

  • Production-owner mindset and strong Splunk architecture expertise.
  • Ability to lead troubleshooting during critical platform and security incidents.
  • Experience with highly distributed Splunk Enterprise and Splunk Cloud environments.

Responsibilities

  • Own end-to-end production support for a highly distributed Splunk environment.
  • Manage and support search head clusters, indexer clusters, deployers, deployment servers, heavy forwarders, and universal forwarders.
  • Ensure platform availability, resiliency, scalability, and performance.
  • Lead incident response, troubleshooting, root cause analysis, and service restoration activities.
  • Identify and remediate performance bottlenecks, capacity constraints, and operational risks.
  • Perform system tuning and proactive health measures.

Skills

Splunk
Cribl

Tools

Splunk Enterprise
Splunk Cloud
Cribl

Job description

TEKsystems seeks a Splunk Platform Operations lead to own end-to-end production support for a highly distributed Splunk Enterprise and Splunk Cloud environment.

You will manage clusters, ensure availability and performance, and lead incident response and root-cause analysis while working with security teams on SIEM enablement and data ingestion. This hybrid role is based in Richmond, VA.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Splunk & SIEM Analyst – DISA Environment (Hybrid)
Senior Splunk & SIEM Analyst – DISA Environment (Hybrid)

Spatial Front, Inc • Crystal City (TX)

Hybrid
USD 100,000 - 150,000
Splunk SIEM Threat Detection & Incident Response Engineer
Splunk SIEM Threat Detection & Incident Response Engineer

TALENT Software Services • Richmond (VA)

On-site
USD 90,000 - 130,000
Senior SIEM Engineer (Splunk)
Senior SIEM Engineer (Splunk)

Quantum Sky • Washington

On-site
USD 140,000 - 210,000
Splunk Architect: Enterprise SIEM & Analytics Lead
Splunk Architect: Enterprise SIEM & Analytics Lead

Fuse Engineering • Fort Meade (MD)

On-site
USD 120,000 - 150,000
Splunk SIEM Engineer — Threat Detection & Response (Onsite)
Splunk SIEM Engineer — Threat Detection & Response (Onsite)

BranCore Technologies • Richmond (VA)

On-site
USD 110,000 - 165,000
Senior Splunk Security Engineer | SIEM & Threat Intel Lead
Senior Splunk Security Engineer | SIEM & Threat Intel Lead

Unity Technologies Corporation • Richmond (VA)

On-site
USD 110,000 - 140,000
Senior Splunk SIEM Security Engineer
Senior Splunk SIEM Security Engineer

VLS Systems Inc • Richmond (VA)

On-site
USD 120,000 - 180,000
Lead Cybersecurity Engineer – Splunk & Threat Hunting
Lead Cybersecurity Engineer – Splunk & Threat Hunting

SSV Technologies Inc. • Richmond (VA)

On-site
USD 120,000 - 180,000
Senior Splunk SIEM Engineer - Threat Detection
Senior Splunk SIEM Engineer - Threat Detection

Delan Associates, Inc • Richmond (VA)

On-site
USD 110,000 - 150,000
Splunk SIEM Engineer: Threat Detection & Incident Response
Splunk SIEM Engineer: Threat Detection & Incident Response

Accylerate, LLC. • Richmond (VA)

On-site
USD 110,000 - 140,000