

Senior Splunk Engineer
β - Featured Role | Apply direct with Data Freelance Hub
This role is for a Senior Splunk Engineer, hybrid (2-3 days onsite in Arlington, VA), with a contract length of "unknown" and a pay rate of "unknown." Requires TS/SCI clearance, Splunk Certified Administrator, and 3+ years of Splunk deployment experience.
π - Country
United States
π± - Currency
$ USD
-
π° - Day rate
-
ποΈ - Date discovered
June 10, 2025
π - Project duration
Unknown
-
ποΈ - Location type
Hybrid
-
π - Contract type
Unknown
-
π - Security clearance
Yes
-
π - Location detailed
Arlington, VA
-
π§ - Skills detailed
#Linux #Monitoring #Ansible #Documentation #Scala #AWS (Amazon Web Services) #Compliance #Python #Vulnerability Management #Data Ingestion #DevSecOps #Agile #Security #Kubernetes #Terraform #Cloud #Docker #Automation #DevOps #GitLab #Scripting #"ETL (Extract #Transform #Load)" #Deployment #Bash #Splunk #Visualization #Cybersecurity
Role description
Heading 1
Heading 2
Heading 3
Heading 4
Heading 5
Heading 6
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur.
Block quote
Ordered list
- Item 1
- Item 2
- Item 3
Unordered list
- Item A
- Item B
- Item C
Bold text
Emphasis
Superscript
Subscript
β’ This is a hybrid position, 2-3 days onsite in Arlington, VA.
β’ TS/SCI clearance required. TS/SCI Poly preferred
β’ Splunk Certified Administrator required, Certified Architect preferred
Our client is seeking a Senior Splunk Engineer to support a premier analytics platform. This engineer will join a high-performing cloud and cybersecurity team, directly supporting critical initiatives to modernize and secure the enterprise's analytics capabilities. You will play a pivotal role in moving Splunk from AWS cloud platform to CI/CD pipelines. You will also be enhancing Splunk deployments, optimizing data ingestion, and ensuring seamless performance through infrastructure automation, security best practices, and continuous integration.
Responsibilities:
β’ Architect, deploy, and manage enterprise-level Splunk environments in alignment with CI/CD best practices.
β’ Design and implement Splunk infrastructure using Terraform, Ansible, and GitLab to support automated, scalable deployments.
β’ Lead version upgrades across clustered Splunk environments; manage Indexers, Search Heads, and Universal Forwarders.
β’ Ingest and normalize diverse data sources (Syslog, HEC, APIs, log monitoring) and optimize for performance and license usage.
β’ Develop documentation, user guides, and internal SOPs for streamlined knowledge transfer across engineering teams.
β’ Create dashboards, reports, alerts, and custom visualizations to support mission operations.
β’ Support SSL configuration, STIG compliance, and RHEL patching for secure deployments.
β’ Collaborate with DevOps, Cloud, and Security teams to troubleshoot issues and implement security analytics using Splunk ES and UBA.
β’ Interface with end users, government stakeholders, and analysts to improve Splunk adoption and performance across the platform.
Qualifications:
β’ 3+ years of hands-on experience with Splunk Enterprise deployments, upgrades, and data onboarding.
β’ Experience administering Linux (RHEL/CentOS) and Windows systems.
β’ Experience with infrastructure-as-code tools like Terraform and Ansible.
β’ Proficiency with scripting languages such as Python or Bash.
β’ Strong understanding of Splunk configuration files (inputs.conf, props.conf, transforms.conf).
β’ Experience managing clustered environments across bare metal and VM infrastructures.
β’ Familiarity with AWS and cloud-native technologies is a plus.
β’ Splunk Certified Administrator required; Splunk Certified Architect (preferred or in-progress).
β’ CompTIA Security+ (DoD 8570 IAT II compliant).
β’ Excellent verbal and written communication skills, and ability to collaborate in agile team environments.
Preferred:
β’ Experience with Splunk Enterprise Security (ES), User Behavior Analytics (UBA), and automation pipelines.
β’ Knowledge of Docker, Kubernetes, or Ansible in DevSecOps pipelines.
β’ Familiarity with compliance frameworks, endpoint tools (Tanium, Palo Alto), and vulnerability management.