Nasscomm

Senior Splunk Engineer

⭐ - Featured Role | Apply direct with Data Freelance Hub
This role is for a Senior Splunk Engineer, onsite in Bensalem, PA, for a 3+ month contract. Key skills include Splunk architecture, data ingestion, and security integrations. Experience with LDAP, SAML, and cloud telemetry is required.
🌎 - Country
United States
💱 - Currency
$ USD
-
💰 - Day rate
Unknown
-
🗓️ - Date
March 17, 2026
🕒 - Duration
More than 6 months
-
🏝️ - Location
On-site
-
📄 - Contract
Unknown
-
🔒 - Security
Unknown
-
📍 - Location detailed
Bensalem, PA
-
🧠 - Skills detailed
#Cloud #Scala #Documentation #SAML (Security Assertion Markup Language) #Security #Splunk #Compliance #Deployment #Data Normalization #Normalization #"ETL (Extract #Transform #Load)" #Data Ingestion #LDAP (Lightweight Directory Access Protocol) #Monitoring
Role description
Role: Senior Splunk Engineer Location: Onsite (Bensalem, PA) Duration: 3+ Months Contract • Responsible for engineering, deploying, and maintaining a highly available multi-site Splunk Enterprise platform integrated with Splunk Enterprise Security (ES). • Designed and implemented distributed Splunk architectures including Cluster Manager, License Master, Deployer, Deployment Server, Monitoring Console, multi-site indexer clusters, and search head clusters. • Deployed and configured Universal and Heavy Forwarders, developed deployment apps, server classes, and automated rollout processes to streamline data ingestion. • Onboarded diverse data sources such as Windows logs, firewall logs, and cloud telemetry while ensuring proper Common Information Model (CIM) alignment for accurate data normalization. • Configured custom indexes, authentication integrations including LDAP and SAML, SMTP relay, and load balancer configurations to support secure and scalable operations. Installed and operationalized ES, validating data model acceleration, correlation searches, dashboards, notable events, and use case functionality. • Performed continuous tuning of correlation searches, thresholds, data models, and overall platform performance to improve detection efficiency. • Ensured seamless ES content integration with the core Splunk environment. • Validated ingest pipelines, cluster stability, search performance, and CIM compliance. • Produced architecture diagrams, as-built documentation, operational runbooks, and tuning guidance, while delivering hands-on knowledge transfer and technical enablement to engineering teams supporting ongoing platform operations.