F

Splunk Architect

icon briefcase Job Type : Full Time

Number of Applicants

 : 

000+

Click to reveal the number of candidates who applied for this job.
icon loader
icon loader

Let AI Supercharge Your Job Hunt!

JobCopilot scans 500,000+ company career sites daily to find jobs for you

Never miss an opportunity Save hours by auto-filling applications forms Land more interviews with tailored applications
happy man
thunder iconActivate JobCopilot

Job Description - Splunk Architect


 

The Splunk Architect is responsible for the design, implementation, optimization, and sustainment of enterprise logging, monitoring, and security analytics solutions. This role ensures Splunk environments meet availability, performance, compliance, and audit requirements .

Key Responsibilities

  • Architect, deploy, and maintain enterprise Splunk environments, including indexers, search heads, forwarders, and multi-region architectures.
     
  • Design, develop, and sustain custom Splunk dashboards and analytics supporting:
     
    • Security events, audit data, and user activity monitoring (UAM)
       
    • STE/STN compliance, vulnerability and compliance scans
       
    • Network/system observable events by SSP
       
    • Containerized application events by namespace
       
    • Mission metrics, outage tracking, and system/network utilization
       
  • Ensure Splunk dashboards and logging infrastructure maintain =93% operational availability monthly.
     
  • Develop and maintain dashboards for authentication events, privileged access, account management, role escalation, and container security events.
     
  • Integrate data from NetFlow/sFlow, Syslog, Cribl, Nagios, HP NNMi, HPNA, vulnerability scanners, and compliance tools.
     
  • Perform Splunk scaling, performance tuning, data onboarding, and index management.
     
  • Maintain log retention policies ensuring:
     
    • 30 days online searchable logs
       
    • 5 years, 11 months offline retention with restore capability
       
  • Provide Tier-4 support, including vendor escalation and coordination with Splunk engineering.
     
  • Advise architects and security accreditors on Splunk security configurations and audit capabilities.
     
  • Develop automation, parsing, and enrichment logic to reduce false positives and enhance alert fidelity.

Requirements

TS/SCI w/ Polygraph Clearance Required

 

Required Skills

  • Splunk Enterprise architecture and administration
     
  • Security logging, SIEM design, and compliance reporting
     
  • Linux systems administration
     
  • Data onboarding (Syslog, NetFlow, API ingestion)
     
  • Scripting (Python, Bash, SPL)
     

Original job Splunk Architect posted on GrabJobs ©. To flag any issues with this job please use the Report Job button on GrabJobs.
Share Job
Share Job

Auto-Apply to Splunk Architect Jobs with your AI JobCopilot

thunder icon Auto-Apply with AI

Similar Splunk Architect Jobs in the US

GrabJobs is the no1 job portal in the US, connecting you to thousands of jobs fast! Find the best jobs in the US, apply in 1 click and get a job today!

Mobile Apps

Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.