Splunk Engineer

United States Digital Space LLC

Redmond (WA)

On-site

USD 130,000 - 200,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Stock options
Discretionary bonuses
Medical, vision, and dental coverage
401(k) plan
Paid parental leave
3 weeks paid vacation
Paid holidays

Job summary

United States Digital Space LLC in Redmond, WA is seeking a Splunk Engineer to deploy, administer and support a distributed Splunk environment at enterprise scale. You will design and automate deployments, write complex SPLs, monitor performance, and onboard data sources for various use cases.

The role requires on-site work in Redmond, with extended hours as needed to protect mission-critical systems.

Qualifications

  • 2+ years of Splunk administration experience.
  • Regex development for field mappings and patterns.
  • Experience with automation frameworks (Puppet/Ansible).

Responsibilities

  • Deploy, Admin and Support distributed Splunk environment at an enterprise scale.
  • Standardize Splunk agent and enterprise deployment, configuration and management with automation.
  • Help monitor and maintain the logging platform's performance, availability, and capacity.
  • Write Complex SPLs to help Infosec and other IT organizations with their dashboards and alerts.
  • Troubleshoot Splunk Instances and Splunk Universal Forwarder problems.
  • Data onboarding, governance, enrichment and fields extraction for various use cases.

Tools

Splunk
Python
Ansible
Puppet

Job description

the company was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today the company is actively developing the technologies to make this possible, with the ultimate goal ofenabling human life on Mars.

SPLUNK ENGINEER

the company is hiring a Splunk Engineer to help protect and drive the the company mission. Our engineers are responsible for deploying, administrating and supporting a distributed Splunk environment at an enterprise scale. As a highly visible and dynamic organization, we must value and guard against damage to our internal information, our physical hardware, and our reputation and brand. It is paramount that we defend against loss of control or confidence in our systems, to guarantee the highest probability of success.

RESPONSIBILITIES:
  • Deploy, Admin and Support distributed Splunk environment at an enterprise scale.
  • Standardize Splunk agent and enterprise deployment, configuration and management with automation.
  • Help monitor and maintain the logging platform's performance, availability, and capacity.
  • Write Complex SPLs to help Infosec and other IT organizations with their dashboards and alerts..
  • Troubleshoot Splunk Instances and Splunk Universal Forwarder problems.
  • Data onboarding, governance, enrichment and fields extraction for various use cases.
BASIC QUALIFICATIONS:
  • 2+ years of experience administering or implementing Splunk in a professional setting.
  • Experience writing complex regex for field mappings and identifying patterns.
  • Experience with Puppet, Ansible, or other automation frameworks.
PREFERRED SKILLS AND EXPERIENCE:
  • Certifications such as Splunk Enterprise Certified Architect, Splunk Enterprise Security Admin and Splunk Core Consultant.
  • Familiarity with integrating enterprise applications and on-boarding new log sources.
  • Familiarity with aerospace, satellite communications, launch vehicle, or factory-floor logging environments.
  • Knowledge in the Common Information Model (CIM) with a strong understanding between the CIM and knowledge objects.
  • Experience maintaining on-premises deployments of Splunk Core and Splunk Enterprise Security by supporting hundreds of users.
  • Experience in identifying visibility gaps for SOC detections and onboarding custom data sources into Splunk.
  • Experience with System Administration, DevOps, or Site Reliability Engineering.
  • Experience developing or extending Splunk with Python (custom commands, modular inputs, alert actions, or apps) beyond basic SPL.
  • Knowledge of Splunk SOAR (or equivalent security orchestration) and integrating Splunk with EDR, threat intel, or other security tools.
  • Experience applying Splunk Machine Learning Toolkit (MLTK) or similar for anomaly detection in operational or security data.
  • Hands-on experience with Git, CI/CD, or infrastructure-as-code practices specifically for Splunk configurations and knowledge objects.
  • Advanced Linux systems knowledge for large-scale Splunk clusters.
  • Experience supporting mission-critical, 24/7 operational environments with strict uptime and rapid incident response requirements.
ADDITIONAL REQUIREMENTS:
  • Must be willing to work extended hours and weekends as needed.
  • This role requires you to be onsite. Hybrid or remote work will not be considered.
COMPENSATION AND BENEFITS:

Pay Range:Level 1: $130,000.00 - $165,000.00Level 2: $150,000.00 - $200,000.00

Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience.

Base salary is just one part of your total rewards package at the company. You may also be eligible for long-term incentives, in the form of company stock or long-term cash awards, as well as potential discretionary bonuses and the ability to purchase additional stock at a discount through an Employee Stock Purchase Plan. You will also receive access to comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short and long-term disability insurance, life insurance, paid parental leave, and various other discounts and perks. You may also accrue 3 weeks of paid vacation and will be eligible for 10 or more paid holidays per year. Employees in Washington State accrue paid sick time in compliance with state and federal law. Company shuttles are offered to employees for roundtrip travel from select Seattle locations to the the company Redmond office Monday to Friday.

ITAR REQUIREMENTS:
  • To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.

the company is an Equal Opportunity Employer; employment with the company is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Applicants wishing to view a copy of the company’s Affir

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Splunk Engineer
Splunk Engineer

InvestedintheMission • Redmond (WA)

On-site
USD 130,000 - 200,000
Stock options and long-term incentives
Medical, vision & dental coverage
Paid vacation and holidays
Splunk Cyber Security SME
Splunk Cyber Security SME

PlanIT Group, LLC • Reston (VA)

On-site
USD 120,000 - 160,000
TS/SCI Splunk Engineer — Mission-Critical Analytics
TS/SCI Splunk Engineer — Mission-Critical Analytics

Peraton • Riverdale Park (MD)

On-site
USD 112,000 - 179,000
Heavily subsidized employee benefits
25 days of PTO annually
Attractive bonus plan
Sr. Splunk Engineer
Sr. Splunk Engineer

ecsfederal • Virginia (MN)

Hybrid
USD 140,000 - 190,000
Splunk Engineer
Splunk Engineer

Peraton • Herndon (VA)

On-site
USD 112,000 - 179,000
Heavily subsidized benefits coverage
25 days PTO accrued annually
Attractive bonus plan
Splunk Engineer
Splunk Engineer

Capgemini • Atlanta (GA)

On-site
USD 54,000 - 84,000
Medical benefits
Dental benefits
Vision benefits
+1
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • College Park (MD)

On-site
USD 80,000 - 110,000
Free Platinum-Level Medical/Dental/Vision coverage
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+2
Splunk Engineer
Splunk Engineer

Linuxconfig • Redmond (WA), Northern (KY)

Hybrid
USD 130,000 - 200,000
Splunk Engineer
Splunk Engineer

Peraton • Riverdale Park (MD)

On-site
USD 112,000 - 179,000
Heavily subsidized employee benefits
25 days of PTO annually
Attractive bonus plan
Delivery Engineer | Splunk (W2PE)
Delivery Engineer | Splunk (W2PE)

Trace3 • Denver (CO)

On-site
USD 100,000 - 125,000
Comprehensive medical, dental, and vision plans
401(k) Retirement Plan with Employer Match
Training and development programs
+1