Splunk SME Jobs
Listed on 2026-08-16
-
IT/Tech
Cybersecurity, Systems Engineer, Information Security & Data Protection, Security Management & Operations
Cybersecurity Engineer / Splunk SME
As a Cybersecurity Engineer / Splunk SME, this candidate is stepping into a mission-critical, high-impact role supporting a major federal customer. Extreme mission impact, the engineer directly safeguards national-level infrastructure by designing and maintaining the Splunk SIEM ecosystem that protects sensitive federal systems and high-value assets. This role is a cornerstone in ensuring cyber readiness, resilience, and uninterrupted mission operations. Work on complex, large-scale, high-visibility systems.
The environment includes advanced Splunk clusters, indexers, search heads, and enterprise ingestion pipelines — the kind of system complexity that appeals to senior engineers seeking impactful technical challenges. Senior leadership influence as a highly-senior SME (10–20+ years), the candidate becomes the technical authority for all Splunk-related decisions, designs, and escalations. They directly influence strategy, architecture, and cybersecurity posture at the enterprise level.
Elite clearance & certification environment. The role requires IAT-III, placing the engineer among the highest-certified cyber professionals in the DoD/IC ecosystem — a career-defining differentiator. The environment and responsibilities align with top-tier federal cyber career paths.
Description Core Responsibilities Architect, implement & maintain Splunk environments Design, implement, and maintain enterprise Splunk infrastructures. Manage Splunk: clusters, indexers, search heads, forwarders, data ingestion pipelines Ensure Splunk architecture meets performance, scalability, and high-availability requirements. Security engineering & compliance. Ensure Splunk configuration and handling of log data comply with organizational standards, industry regulation, DoD security requirements, role-based access control (RBAC), implement advanced Splunk security controls and hardening best practices.
Monitoring & troubleshooting Continuously monitor the health of the Splunk environment. Identify and resolve performance issues, indexing backlogs, search performance bottlenecks, system availability risk. SME-level leadership Serve as the senior cybersecurity/Splunk authority for the program. Mentor teams, guide Splunk best practices, and support engineering escalations. Interact with senior leadership and cross-functional teams to align Splunk strategy with organizational cyber goals.
Top Skills Details MUST HAVE TS/SCI 1. Minimum 10 years cybersecurity/SIEM engineering experience. Extensive background with Splunk Enterprise: ES, ITSI, UBA, searches, dashboarding, tuning
2. Deep knowledge of: security operations, incident response, log parsing and normalization, role-based access control, high-availability Splunk design
3. Must have IAT-III certification. Additional skills & qualifications Experience supporting DoD or other cleared federal environments. Background integrating Splunk with cloud platforms, security automation, external intelligence feeds This is a highly senior role requiring 10+ years minimum, ideally 15–20+ years of cybersecurity/Splunk engineering experience.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).