We are seeking an experienced Senior Splunk Engineer to join our team. Reporting to the Cyber Security Operations Center Manager, the ideal candidate will have a strong background in designing, implementing, and managing Splunk environments, with a focus on data ingestion, search optimization, and security event management. As a Senior Splunk Engineer, you will work closely with cross-functional teams to develop, deploy, and support scalable Splunk solutions for cyber security event monitoring, analytics, and reporting.
Essential Functions
Understanding of networking components and devices, ports, protocols, and basic networking troubleshooting.
The ability to troubleshoot issues with log feeds, search time, and field extractions.
The ability to troubleshoot problems related to data solutions.
Lead the deployment, configuration, and maintenance of Splunk infrastructure.
Design and implement Splunk apps, dashboards, and reports to meet business and security needs.
Optimize Splunk search queries and indexing to ensure performance efficiency.
Troubleshoot and resolve issues related to Splunk data ingestion, searches, and alerts.
Collaborate with IT, business units, and other teams to integrate Splunk with various systems and data sources.
Mentor junior engineers and provide guidance on best practices for Splunk administration.
Ensure proper data security, compliance, and data retention policies are followed.
Assist with cyber incident response and investigations.
Based on knowledge and experience, this position offers an hourly rate of $65-75/hr.
We are a company committed to creating inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity employer that believes everyone matters. Qualified candidates will receive consideration for employment opportunities without regard to race, religion, sex, age, marital status, national origin, sexual orientation, citizenship status, disability, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to
Human Resources Request Form. The EEOC "Know Your Rights" Poster is available
here.
To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy:
https://insightglobal.com/workforce-privacy-policy/ .
6+ years of experience within Cyber Security Engineering
3+ years of experience with design, implementation, and support of Splunk core components, including indexers, forwarders, search heads, and cluster managers
3+ years of experience with configuration and administration of Splunk ingestion and forwarding for new and existing applications and data
Experience troubleshooting Splunk dataflow issues between the various Splunk core components
Experience configuring and deploying data collection for a variety of operating systems and networking platforms
Experience creating dashboards and analytics in Splunk
Experience working with monitoring systems supporting auditing, incident response, and system health
Experience in the Utility or O&G industry
Benefit packages for this role will start on the 31st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.