Principal Splunk Engineer: Large-Scale SIEM & Cloud

Koitecc Solutions

New Jersey

On-site

USD 122,000 - 200,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Discretionary annual bonus
Industry-leading benefits
Paid time off

Job summary

Bank of America is seeking a Principal Splunk Engineer to lead the design, operation, and evolution of a large-scale Splunk Enterprise / Splunk Cloud deployment across security, infrastructure, and applications. The platform ingests multi-terabyte daily data volumes and is central to SOC and threat detection.

Ideal candidates have deep SPL expertise, SmartStore/Indexer Clustering experience, and strong Python/Bash scripting with automation (Ansible, Terraform).

Qualifications

  • 5+ years experience administering large Splunk Enterprise or Splunk Cloud environments.
  • Strong hands-on knowledge of indexer clustering, search head clustering, and SmartStore integration.
  • Deep experience with security log ingestion and SIEM use cases.
  • Strong SPL expertise including search optimization and data model acceleration.
  • Experience with Linux systems, scripting (Python/Bash), and automation tools (Ansible, Terraform).

Responsibilities

  • Architect, operate, and optimize a distributed, large-scale Splunk environment across multiple sites.
  • Lead capacity planning, index design, and data retention strategies.
  • Maintain high availability and DR across deployments; drive upgrades and hardening.
  • Collaborate with SOC and Threat Hunting teams to ensure high-quality log ingestion.
  • Establish governance with dashboards, mappings, and documentation.

Skills

Automation
Influence
Result Orientation
Stakeholder Management
Technical Strategy Development
Application Development
Architecture
Business Acumen
Risk Management
Solution Design
Agile Practices
Analytical Thinking
Collaboration
Data Management
Solution Delivery Process

Tools

Splunk
Python
Bash
Ansible
Terraform
GitOps

Job description

Bank of America is seeking a Principal Splunk Engineer to lead the design, operation, and evolution of a large-scale Splunk Enterprise / Splunk Cloud deployment across security, infrastructure, and applications. The platform ingests multi-terabyte daily data volumes and is central to SOC and threat detection.

Ideal candidates have deep SPL expertise, SmartStore/Indexer Clustering experience, and strong Python/Bash scripting with automation (Ansible, Terraform).

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Splunk Engineer - Large-Scale SOC & Observability
Principal Splunk Engineer - Large-Scale SOC & Observability

ALPFA Baltimore Chapter • Charlotte (NC)

On-site
USD 122,000 - 200,000
Discretionary incentive plan
Benefits eligible
Lead Splunk Engineer - Large-Scale Security & Observability
Lead Splunk Engineer - Large-Scale Security & Observability

Hobbsnews • Charlotte (NC)

On-site
USD 122,000 - 200,000
Benefits eligible
Paid time off
Annual discretionary award
Senior Engineer
Senior Engineer

Hobbsnews • Charlotte (NC)

On-site
USD 122,000 - 200,000
Benefits eligible
Paid time off
Annual discretionary award
Senior Engineer
Senior Engineer

Bank of America • Pennington (NJ)

On-site
USD 122,000 - 200,000
Industry-leading benefits
Paid time off
Discretionary incentive eligible
Senior Engineer
Senior Engineer

ALPFA Baltimore Chapter • Charlotte (NC)

On-site
USD 122,000 - 200,000
Discretionary incentive plan
Benefits eligible
Lead Splunk Engineer for Large-Scale Data & SOC
Lead Splunk Engineer for Large-Scale Data & SOC

Bank of America • Pennington (NJ)

On-site
USD 122,000 - 200,000
Industry-leading benefits
Paid time off
Discretionary incentive eligible
Senior Engineer
Senior Engineer

Koitecc Solutions • New Jersey

On-site
USD 122,000 - 200,000
Discretionary annual bonus
Industry-leading benefits
Paid time off
Splunk Architect: Enterprise SIEM & Analytics Lead
Splunk Architect: Enterprise SIEM & Analytics Lead

Fuse Engineering • Fort Meade (MD)

On-site
USD 120,000 - 150,000
Senior Splunk Architect – Enterprise Security & Cloud HA
Senior Splunk Architect – Enterprise Security & Cloud HA

Vinmar Digital Analytics • United States

Remote
USD 150,000 - 230,000
Sr. Splunk Engineer
Sr. Splunk Engineer

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 190,000