Splunk Platform Engineer - SIEM & Data Pipeline Ownership

Experis Technology Group

Richmond (VA)

On-site

USD 90,000 - 96,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health benefits
Dental plan
Vision plan
Health Savings Account
Flexible Spending Account (HSA/FSA)

Job summary

Experis Technology Group is seeking a Splunk Platform Engineer for Charlotte, Richmond, or Pennington to join our Platform Operations team, supporting security log ingestion and SIEM enablement.

The ideal candidate has 5+ years of hands-on experience with Splunk Enterprise or Splunk Cloud, strong clustering expertise, and proficiency with Linux administration.

You will own end-to-end production support, incident response, and Cribl data-pipeline optimization for reliability and threat detection.

Qualifications

  • 5+ years of hands-on experience with Splunk Enterprise or Splunk Cloud.
  • Experience with indexer clustering and search head clustering, and with forwarder architectures.
  • Proven ability to lead production incidents, perform RCA, and drive preventive solutions.

Responsibilities

  • Own end-to-end production support for a distributed Splunk environment (search head clusters, indexer clusters, deployers, deployment servers, and forwarders).
  • Ensure high availability, performance, and resiliency of the Splunk platform for security and operational use cases.
  • Lead incident response, troubleshooting, RCA, and service restoration for Splunk and Cribl platforms.
  • Identify risks, capacity constraints, and bottlenecks; implement preventive and tuning measures.
  • Enable Information Security and SOC teams by ensuring timely, accurate ingestion of security logs and SIEM readiness.

Skills

Splunk administration
Indexer/SH clustering
Linux administration
SPL/search optimization
Security log ingestion

Tools

Cribl

Job description

Experis Technology Group is seeking a Splunk Platform Engineer for Charlotte, Richmond, or Pennington to join our Platform Operations team, supporting security log ingestion and SIEM enablement.

The ideal candidate has 5+ years of hands-on experience with Splunk Enterprise or Splunk Cloud, strong clustering expertise, and proficiency with Linux administration.

You will own end-to-end production support, incident response, and Cribl data-pipeline optimization for reliability and threat detection.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Splunk Platform Engineer (Charlotte, Richmond, or Pennington)
Splunk Platform Engineer (Charlotte, Richmond, or Pennington)

Experis Technology Group • Richmond (VA)

On-site
USD 90,000 - 96,000
Health benefits
Dental plan
Vision plan
+2
Splunk Architect: Enterprise SIEM & Analytics Lead
Splunk Architect: Enterprise SIEM & Analytics Lead

Fuse Engineering • Fort Meade (MD)

On-site
USD 120,000 - 150,000
Senior SIEM Engineer (Splunk)
Senior SIEM Engineer (Splunk)

Quantum Sky • Washington

On-site
USD 140,000 - 210,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates Inc. • Richmond (VA)

On-site
USD 110,000 - 160,000
Splunk Administrator/Engineer
Splunk Administrator/Engineer

Resolution Technologies, Inc. • Georgia

On-site
USD 80,000 - 110,000
SIEM & Platform Automation Engineer
SIEM & Platform Automation Engineer

SAP • Herndon (VA)

On-site
USD 131,000 - 272,000
Splunk Engineer
Splunk Engineer

RapidSoft Corp • Reston (VA)

On-site
USD 90,000 - 120,000
Senior SIEM/SOAR Engineer (Elastic & Splunk)
Senior SIEM/SOAR Engineer (Elastic & Splunk)

BreakPoint Labs LLC • Charleston (SC), Northern (KY)

Hybrid
USD 90,000 - 130,000
Cybersecurity Engineer
Cybersecurity Engineer

Accylerate, LLC. • Richmond (VA)

On-site
USD 110,000 - 140,000
Splunk / SOC Engineer - 174235 - 174717 - 175230
Splunk / SOC Engineer - 174235 - 174717 - 175230

Piper Companies • North Carolina

Hybrid
USD 100,000 - 120,000