Splunk Security Architect
10 days ago
Irving
?? Now Hiring: Senior Splunk Engineer ?? Location: Irving, TX (75063) ?? Duration: 12 Months (Potential Extension) ?? Role: Contract About the Role We're looking for an experienced Senior Splunk Engineer to lead the administration and optimization of Splunk Enterprise Security in a cloud-hosted environment. If you're passionate about SIEM operations, security monitoring, and building scalable Splunk architectures, this opportunity is for you! Required Skills & Experience ? 5+ years of hands-on Splunk platform administration ? Active Splunk Enterprise Certified Admin and/or Splunk ES Certified Admin certification ?? Experience managing Splunk in AWS / Azure / GCP environments ?? Strong knowledge of SIEM operations, log management, and event correlation ?? Advanced SPL (Search Processing Language) skills ?? Experience with Splunk components • Indexers, • Search Heads, • Heavy/Universal Forwarders, • Deployment Servers, • Cluster Management ?? Familiarity with compliance frameworks: PCI DSS, SOX, NIST CSF ?? Strong communication skills for collaborating with technical & non-technical stakeholders Nice to Have ?? Experience in large-scale retail or high-transaction environments ?? Knowledge of Splunk SOAR (Phantom) and security automation workflows ?? Background in Threat Hunting, SOC Operations, or Detection Engineering ?? Certifications such as CISSP, GIAC (GCIA/GCIH), AWS Security Specialty, AZ-500 ?? Experience with Infrastructure as Code (Terraform, Ansible) ?? Scripting skills in Python, Bash, or PowerShell Key Responsibilities ?? Lead end-to-end administration of Splunk Enterprise Security ?? Design & manage notable events, risk-based alerting, and threat intelligence integrations ?? Build and optimize correlation searches, dashboards, and investigations ?? Onboard enterprise log sources and ensure CIM compliance ?? Support PCI DSS, SOX, and NIST CSF audit and reporting requirements ?? Monitor environment health: indexing, search performance, forwarders, licensing ?? Maintain documentation, runbooks, and troubleshooting guides ?? Serve as the escalation point for complex Splunk issues ?? Collaborate with security architecture teams to enhance the overall security ecosystem