Position: Sr. Splunk Engineer
Location: Austin, TX – Onsite role
Candidates must be local to Austin, TX (living within a 25\-mile radius of Austin, TX currently, no relocating candidates will be considered).
Job Description:
Client work to be accomplished
Works with IT developers to facilitate better coordination among operations, development, and testing functions by automating and streamlining integration and deployment processes. DevOps aims at coupling a tighter alignment between IT operations and businesses.
Client Information Technology Division (ITD) is hiring Senior Splunk Engineers for the ITD Centralized Enterprise Logging Project. Specifically, the worker will be working within the ITD Service Integration \& Governance (SIG) Enterprise Architecture – DevSecOps Tools Team.
In this role, the worker will be part of a larger team that will be onboarding hundreds of systems and data sources to Splunk to improve the operational efficiency of ITD. Data sources will include network, cloud, server, and application data sources.
Worker must have hands\-on experience using Splunk for operational monitoring and troubleshooting, including creating and executing searches, using dashboards, and supporting alerting workflows. Candidate must be able to support log onboarding/validation and collaborate with ITD teams to ensure reliable data ingestion and actionable alerting.
Minimum Yrs of Experience, Skills, and Qualifications
8 Hands\-on experience with Splunk Enterprise and/or Splunk Cloud
8 Experience with designing and implementing scalable and highly available Splunk architecture:
- Indexers, Search Heads, Cluster Master
- Heavy Forwarders, Universal Forwarders
- Deployments
- Write efficient, optimized searches
- Use stats, timechart, eval, lookup, transaction, and data model commands
- Tune searches for performance at scale
- Source type design
- Field extraction (regex, props.conf, transforms.conf)
- Timestamp recognition and line breaking
- Index design and strategy
8 Advanced proficiency in Search Processing Language (SPL). Ability to:
8 Experience in data onboarding. Strong skills in:
8 Experience managing Splunk Technology Add\-ons (TAs) for data onboarding, normalization, and CIM alignment.
8 Experience with Common Information Model (CIM) mapping
8 Ability to design, build, and optimize Splunk dashboards and alerts that provide actionable insights, including KPI\-driven visualizations, real\-time and scheduled alerts, threshold and anomaly\-based detections, alert suppression/tuning to reduce noise, and alignment with operational, security, and business use cases.
8 DevOps automation for the management of Splunk environments.
8 Leadership in technical workshops, discovery, and requirement sessions. Ability to explain complex concepts to technical and non\-technical stakeholders.
Preferred Skills and Qualifications
4 Experience with Cloud\-native log source
4 Experience with security tools (EDR, IAM, firewalls, IDS/IPS)
4 Splunk Cloud FedRAMP
N/A One or more Splunk certifications (e.g., Architect, Admin, Certified Consultant)
Thank You,
Andy
Andy@intellisofttech.com
Job Type: Contract
Pay: $50\.00 \- $55\.00 per hour
Expected hours: 40 per week
Work Location: Hybrid remote in Austin, TX 78799