Splunk Security Architect
Job Description
Now Hiring: Senior Splunk Engineer
Location: Irving, TX (75063)
Duration: 12 Months (Potential Extension)
Role: Contract
About the Role
We’re looking for an experienced Senior Splunk Engineer to lead the administration and optimization of Splunk Enterprise Security in a cloud-hosted environment. If you’re passionate about SIEM operations, security monitoring, and building scalable Splunk architectures, this opportunity is for you!
Required Skills & Experience
5+ years of hands-on Splunk platform administration
Active Splunk Enterprise Certified Admin and/or Splunk ES Certified Admin certification
Experience managing Splunk in AWS / Azure / GCP environments
Strong knowledge of SIEM operations, log management, and event correlation
Advanced SPL (Search Processing Language) skills
Experience with Splunk components:
• Indexers
• Search Heads
• Heavy/Universal Forwarders
• Deployment Servers
• Cluster Management
Familiarity with compliance frameworks: PCI DSS, SOX, NIST CSF
Strong communication skills for collaborating with technical & non-technical stakeholders
Nice to Have
Experience in large-scale retail or high-transaction environments
Knowledge of Splunk SOAR (Phantom) and security automation workflows
Background in Threat Hunting, SOC Operations, or Detection Engineering
Certifications such as CISSP, GIAC (GCIA/GCIH), AWS Security Specialty, AZ-500
Experience with Infrastructure as Code (Terraform, Ansible)
Scripting skills in Python, Bash, or PowerShell
Key Responsibilities
Lead end-to-end administration of Splunk Enterprise Security
Design & manage notable events, risk-based alerting, and threat intelligence integrations
Build and optimize correlation searches, dashboards, and investigations
Onboard enterprise log sources and ensure CIM compliance
Support PCI DSS, SOX, and NIST CSF audit and reporting requirements
Monitor environment health: indexing, search performance, forwarders, licensing
Maintain documentation, runbooks, and troubleshooting guides
Serve as the escalation point for complex Splunk issues
Collaborate with security architecture teams to enhance the overall security ecosystem