Splunk Architect Apply
Splunk Architect
Remote
Contract
Job Description:
We are seeking a highly skilled Splunk Architect with 7+ years of experience to join our team in the U.S. The ideal candidate will have extensive expertise in Splunk, including design, implementation, and optimization, along with hands-on experience in OpenTelemetry for observability and distributed tracing. This role requires a deep understanding of monitoring, logging, and security analytics solutions to enhance system performance and reliability.
Key Responsibilities:
Design, architect, and implement Splunk solutions for large-scale enterprise environments.
Develop and optimize Splunk dashboards, alerts, reports, and correlation searches to enhance monitoring and security visibility.
Implement and manage OpenTelemetry for observability, tracing, and application performance monitoring (APM).
Integrate Splunk with cloud platforms (AWS, Azure, GCP) and containerized environments (Kubernetes, Docker).
Define and implement best practices for data ingestion, parsing, indexing, and search optimization in Splunk.
Collaborate with DevOps, security, and engineering teams to enhance logging, monitoring, and incident response strategies.
Develop custom scripts, queries, and automation solutions for Splunk data processing.
Provide guidance on data retention, storage optimization, and performance tuning.
Stay up to date with Splunk Enterprise Security (ES), ITSI, and Observability Suite trends and best practices.
Train and mentor junior team members on Splunk architecture and OpenTelemetry best practices.
Required Skills & Qualifications:
7+ years of experience in Splunk architecture, administration, and optimization.
Strong hands-on experience with OpenTelemetry for observability and distributed tracing.
Proficiency in Splunk SPL (Search Processing Language) and advanced data parsing techniques.
Experience integrating Splunk with cloud platforms (AWS, Azure, GCP) and hybrid environments.
Expertise in log management, security analytics, and performance monitoring.
Strong understanding of IT operations, security, and DevOps methodologies.
Familiarity with scripting languages such as Python, Shell, or PowerShell for automation.
Experience working with Kubernetes, Docker, and microservices architectures.
Excellent problem-solving skills and ability to work independently in a fast-paced environment.
Splunk Certified Architect certification is a plus.
Preferred Qualifications:
Experience with Splunk IT Service Intelligence (ITSI) and Enterprise Security (ES).
Knowledge of APM tools such as New Relic, Datadog, or Prometheus.
Strong background in distributed tracing and telemetry data collection.