Senior Splunk & Observability Engineer

System One

Columbia (SC)

On-site

USD 150,000 - 185,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

System One is seeking a Senior Splunk & Observability Engineer to support enterprise-scale observability in an AWS-based production environment. This senior, hands-on role combines Splunk administration and engineering, AWS production support, observability, and automation.

You will manage Splunk Enterprise on AWS, optimize ingestion and dashboards, develop SPL queries, and build OpenTelemetry integrations.

Qualifications

  • 5+ years hands-on Splunk Enterprise administration and engineering in large production environments.
  • Strong understanding of the Splunk ecosystem: ingestion, forwarders, indexers, search heads, dashboards, alerts, and recovery.
  • Advanced SPL query development and performance optimization.
  • Hands-on experience deploying, configuring, upgrading, troubleshooting Splunk on AWS.
  • Strong AWS production experience with EC2, ALB, and CloudWatch.
  • Experience building complex Splunk dashboards for production monitoring and incident triage.
  • Knowledge of OpenTelemetry, agents, collectors, and Splunk integration.
  • Experience with Python automation and operational tooling.
  • Experience with GitLab, Terraform Enterprise, CI/CD, GitHub, and JSON.
  • Strong production troubleshooting skills for ingestion failures, data volume issues, and outages.

Responsibilities

  • Administer, engineer, upgrade, and support Splunk Enterprise in AWS.
  • Deploy, configure, and troubleshoot Splunk components on Amazon EC2.
  • Manage end-to-end Splunk data lifecycle: ingestion, indexing, search, dashboards, alerts, retention, recovery.
  • Develop and optimize SPL queries and troubleshoot performance issues.
  • Build and maintain enterprise dashboards for production monitoring, resiliency, incident response, and outage triage.
  • Troubleshoot ingestion failures, problematic indexes, missing or delayed data, and data volume growth.
  • Restore data flow and replay data after ingestion or platform interruptions.
  • Integrate Splunk, CloudWatch, and OpenTelemetry for logs, metrics, dashboards, and alerts.
  • Develop Python-based automation for observability and platform operations.
  • Support Splunk upgrades, patches, configurations, and vulnerability remediation.
  • Lead technical troubleshooting calls and coordinate incident remediation across teams.

Skills

Splunk Enterprise
AWS
OpenTelemetry
Python
SPL queries
CI/CD
GitLab
GitHub
JSON
CloudWatch

Education

Bachelor's degree in Computer Science, Information Systems, or related field

Tools

Splunk Enterprise
AWS (EC2, ALB, CloudWatch)
OpenTelemetry
Python
GitLab
Terraform Enterprise
CI/CD tooling
GitHub
JSON

Job description

Job Title: Senior Splunk & Observability Engineer
Job Type: Permanent Full Time

Position Description

Seeking an experienced Senior Splunk & Observability Engineer to support enterprise scale observability platforms within a complex, AWS based production environment. This is a senior hands on role combining advanced Splunk administration and engineering, AWS production support, observability, and automation.

The engineer will manage and support Splunk Enterprise running on AWS, working across the full data lifecycle from source onboarding and ingestion through indexing, search, dashboards, alerts, retention, and recovery. Responsibilities include developing and optimizing SPL queries, troubleshooting ingestion and performance issues, improving platform stability, supporting upgrades and vulnerability remediation, and restoring or replaying data following service interruptions.

The role will also work extensively with AWS, Amazon CloudWatch, OpenTelemetry, and Python based automation to improve enterprise monitoring and resiliency. The engineer will build and maintain OpenTelemetry agents and collectors, support observability integrations across technology stacks, and help automate platform operations and vulnerability remediation.

This position is required in one of the following locations: Lafayette, LA, Knoxville, TN, Columbia, SC, Birmingham, AL

Your future duties and responsibilities
  • Administer, engineer, upgrade, and support Splunk Enterprise in AWS.
  • Deploy, configure, and troubleshoot Splunk components hosted on Amazon EC2.
  • Manage the end to end Splunk data lifecycle, including ingestion, indexing, search, dashboards, alerts, retention, and recovery.
  • Develop and optimize complex SPL queries and troubleshoot query performance issues.
  • Build and maintain enterprise dashboards for production monitoring, resiliency, incident response, and outage triage.
  • Troubleshoot ingestion failures, problematic indexes, missing or delayed data, unexpected data volume growth, and platform availability issues.
  • Restore data flow and replay data following ingestion or platform interruptions.
  • Optimize data ingestion and retention to reduce noise, storage consumption, and operating costs.
  • Integrate Splunk, Amazon CloudWatch, and OpenTelemetry for logs, metrics, dashboards, and alerts.
  • Develop Python based automation for observability and platform operations.
  • Build and maintain OpenTelemetry agent and collector packages across multiple technology platforms.
  • Support Splunk upgrades, patching, configuration changes, plugins, and vulnerability remediation.
  • Use GitLab, GitHub, Terraform Enterprise, JSON, and CI/CD tooling to support infrastructure, configuration, automation, and package deployments.
  • Lead technical troubleshooting calls and coordinate incident investigation and remediation across multiple teams.
  • Participate in an on call rotation and provide after hours support when required for production incidents, upgrades, and planned changes.
Required qualifications to be successful in this role
  • 5+ years of hands on Splunk Enterprise administration and engineering experience in large production environments.
  • Strong understanding of the Splunk ecosystem, including data ingestion, forwarders, indexers, search heads, indexes, dashboards, alerts, and recovery.
  • Advanced SPL query development and performance optimization skills.
  • Hands on experience deploying, configuring, upgrading, troubleshooting, and supporting Splunk on AWS.
  • Strong AWS production experience, particularly with Amazon EC2, Application Load Balancer, and Amazon CloudWatch.
  • Experience building complex Splunk dashboards for production monitoring, resiliency, incident triage, and operational use cases.
  • Strong understanding of OpenTelemetry, including agents, collectors, logs, metrics, instrumentation, and Splunk integration.
  • Experience building or maintaining OpenTelemetry agent and collector packages.
  • Working knowledge of Python for automation and operational tooling.
  • Experience with GitLab, Terraform Enterprise, CI/CD, GitHub, and JSON.
  • Strong production troubleshooting skills, including ingestion failures, data volume issues, platform outages, performance problems, and data recovery.
  • Experience with platform upgrades, patching, vulnerability remediation, and controlled production changes.
  • Ability to lead technical troubleshooting calls, communicate findings clearly, and coordinate effectively across cloud, application, security, database, and production support teams.
Educational Requirements:

?Bachelor's degree in Computer Science, Information Systems, or a related field.??

Ref: #404-IT Pittsburgh

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk & Observability Engineer
Senior Splunk & Observability Engineer

System One • Birmingham (AL)

On-site
USD 120,000 - 180,000
Splunk Observability Engineer
Splunk Observability Engineer

System One • Columbia (SC)

On-site
USD 120,000 - 150,000
Splunk Observability Engineer
Splunk Observability Engineer

System One • Lafayette (LA)

On-site
USD 100,000 - 130,000
Splunk Observability Engineer
Splunk Observability Engineer

System One • Knoxville (TN)

On-site
USD 110,000 - 140,000
Splunk Observability Engineer
Splunk Observability Engineer

System One • Birmingham (AL)

On-site
USD 90,000 - 150,000
Splunk Administrator/Engineer
Splunk Administrator/Engineer

Resolution Technologies, Inc. • Georgia

On-site
USD 80,000 - 110,000
Splunk Subject Matter Expert (SME) & Enterprise Monitoring Engineer
Splunk Subject Matter Expert (SME) & Enterprise Monitoring Engineer

Empower Professionals Inc - Talent & IT Services • Frisco (TX)

Hybrid
USD 120,000 - 150,000
Senior Splunk & Cloud Observability Engineer
Senior Splunk & Cloud Observability Engineer

System One • Columbia (SC)

On-site
USD 150,000 - 185,000
Senior Splunk Infrastructure Engineer
Senior Splunk Infrastructure Engineer

Summit Tech Partners • Washington, Tacoma (WA)

Hybrid
USD 140,000 - 200,000
Senior/Lead Site Reliability Engineer Observability
Senior/Lead Site Reliability Engineer Observability

Tata Consultancy Services • San Jose (CA)

On-site
USD 94,000 - 130,000