Splunk Engineer/Architect

Piper Companies

Morrisville (NC)

On-site

USD 140,000 - 180,000

Part time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Comprehensive benefits

Job summary

Piper Companies is seeking a Splunk Engineer / Architect to support a leading organization in the cybersecurity and enterprise technology industry. This role focuses on backend engineering and architectural design for enterprise-scale Splunk environments within a SOC, not on dashboards or end-user analytics.

The position is a long-term contract requiring an active Secret Clearance and onsite work five days a week in RTP, NC.

Qualifications

  • 5+ years hands-on Splunk Engineering/Architecture experience (backend focus)
  • Experience with large-scale Splunk Enterprise installations
  • Experience with data ingestion, indexing, clustering, and search optimization
  • Experience supporting Splunk within a SOC and SIEM strategies
  • Security-focused mindset and ability to implement MITRE ATT&CK mappings

Responsibilities

  • Design and deploy scalable Splunk architectures across on-prem, cloud, and hybrid environments
  • Lead Splunk engineering efforts: installation, configuration, upgrades, maintenance
  • Develop and execute data ingestion strategies: onboarding, normalization, parsing, performance tuning
  • Establish governance, standards and best practices for long-term scalability
  • Build and tune SIEM use cases, correlations, and alerts for SOC operations
  • Collaborate with cybersecurity and infrastructure teams to improve threat detection

Skills

Splunk engineering
SOC operations
Data ingestion
Architecture design
Backend engineering

Tools

Splunk Enterprise
Splunk ES

Job description

Piper Companies is seeking a Splunk Engineer / Architect to support a leading organization in the cybersecurity and enterprise technology industry. The Splunk Engineer / Architect will play a critical role in designing, implementing, and optimizing enterprise-scale Splunk environments within a SOC, with a strong focus on backend engineering and architectural design rather than dashboarding or end-user analytics. The Splunk Engineer/Architect is a long term contract opportunity, requires an active Secret Clearance and requires you to work onsite 5 days per week in RTP, NC.

Responsibilities of the Splunk Engineer / Architect:
  • Design and deploy scalable, highly available Splunk architectures across on‑prem, cloud, and hybrid environments.
  • Lead Splunk engineering efforts including installation, configuration, upgrades, and ongoing platform maintenance (indexers, search heads, forwarders, clustering).
  • Develop and execute data ingestion strategies, including onboarding, normalization, parsing, and performance optimization.
  • Establish governance, platform standards, and best practices to ensure long‑term scalability and reliability.
  • Support SOC operations by building and tuning SIEM use cases, correlation searches, and alerts aligned with MITRE ATT&CK.
  • Collaborate with cybersecurity and infrastructure teams to enhance threat detection, monitoring, and incident response capabilities.
Requirements of the Splunk Engineer / Architect:
  • Active Secret Clearance required.
  • 5+ years of hands‑on Splunk Engineering/Architecture experience (backend focus, not dashboarding).
  • Strong expertise with Splunk Enterprise and Splunk Enterprise Security (ES) in large‑scale environments.
  • Deep understanding of data ingestion, indexing, clustering (indexer/search head), and search optimization.
  • Experience supporting Splunk within a SOC and contributing to SIEM/security monitoring strategies.
Compensation for the Splunk Engineer / Architect:
  • $140,000-$180,000
  • Full Comprehensive Benefits: Health, Vision, Dental, PTO, Paid Holiday and Sick Leave if Required by Law.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk Engineer/Architect — SOC Backend (Secret Clearance)
Splunk Engineer/Architect — SOC Backend (Secret Clearance)

Piper Companies • Morrisville (NC)

On-site
USD 140,000 - 180,000
Comprehensive benefits
Splunk Engineer
Splunk Engineer

Piper Companies • Durham (NC)

On-site
USD 150,000 - 170,000
Comprehensive benefits package
401(k)
PTO
+1
Senior Splunk Engineer – SOC Dashboards & Threat Analytics
Senior Splunk Engineer – SOC Dashboards & Threat Analytics

Piper Companies • Durham (NC)

On-site
USD 150,000 - 170,000
Comprehensive benefits package
401(k)
PTO
+1
SIEM Engineer
SIEM Engineer

Piper Companies • Raleigh (NC)

Hybrid
USD 115,000 - 135,000
SIEM Engineer - Secret Cleared
SIEM Engineer - Secret Cleared

Piper Companies • Fulton (MD), Raleigh (NC)

Hybrid
USD 115,000 - 125,000
Medical benefits
Dental benefits
Vision benefits
+2
Cybersecurity Integration Engineer
Cybersecurity Integration Engineer

Zachary Piper Solutions • North Carolina

Hybrid
USD 120,000 - 140,000
Splunk Architect (Secret Cleared)
Splunk Architect (Secret Cleared)

Verigent • Doral (FL)

On-site
Splunk Administrator/Engineer
Splunk Administrator/Engineer

Resolution Technologies, Inc. • Georgia

On-site
USD 80,000 - 110,000
Splunk Architect at Kanak Elite Services Inc Doral, FL
Splunk Architect at Kanak Elite Services Inc Doral, FL

CDL Labor Logistics • Florida

On-site
USD 120,000 - 180,000
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • College Park (MD)

On-site
USD 80,000 - 110,000
Free Platinum-Level Medical/Dental/Vision coverage
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+2