×
Register Here to Apply for Jobs or Post Jobs. X

Principal Splunk Engineer

Job in Scottsdale, Maricopa County, Arizona, 85261, USA
Listing for: Early Warning
Full Time position
Listed on 2026-02-23
Job specializations:
  • Engineering
    Cybersecurity, Systems Engineer
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 100000 - 125000 USD Yearly USD 100000.00 125000.00 YEAR
Job Description & How to Apply Below

At Early Warning, we’ve powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

Purpose

The Principal Splunk Engineer operates as a logging architecture subject matter expert across all domains of logging and event monitoring. This includes working directly in collaboration with Technology and Security teams to design, implement and maintain Production Assurance and Reliability Operations Services and ensure that the company operates a world-class enterprise log management solution. The Principal Splunk Engineer maintains the logging infrastructure for Splunk Enterprise and Cloud and other dependent infrastructure, such as Cribl to ensure that reports are available, fast and efficient.

The Principal Splunk Engineer leads and/or consults on efforts pertaining to design, architecture, scalability, business continuity, and disaster recovery as needed.

Essential Functions
  • Leads the Splunk Engineering team in technical and risk based decision making, focusing on data quality and business needs

  • Architects Splunk Enterprise infrastructure and leads tuning Splunk for optimal onboarding of data, performance, and capacity management; identifies gaps and areas of duplication; provides recommendations for optimization

  • Leads operating and maintaining efforts for a complex multi-site hybrid environment and ensures the infrastructure remains available and scalable.

  • Significantly influences the overall technology direction of Early Warning from the perspective of log management

  • Works collaboratively with business customers to intake and define new logging architectures and solutions for various business units at Early Warning

  • Leads and approves changes for logging infrastructure from a security perspective

  • Ensures our logging environment provides for effective threat detection and response in direct partnership with information security teams

  • Participates in incident management & incident response during an outage or security investigation when needed

  • Creates documentation for any addition or change to our environment. Reviews and updates on a regular basis to ensure accuracy.

  • Ensures the tools are supporting all compliance efforts in collaboration with auditors

  • Provides metrics for platform performance, capacity, and user management

  • Leads root cause analysis efforts pertaining to log engineering issues

  • On call rotation with other Splunk engineers to cover 24x7 response

  • Sets and supports best practices for end users and company standards. Stays current on the latest industry technologies, trends, and strategies

  • Support the company’s commitment to protect the integrity and confidentiality of systems and data

  • Advises as the subject matter expert and contributes to the development of Early Warning security policy and procedures

  • Mentors new team members

Minimum Qualifications
  • Education and experience typically obtained through completion of a Bachelor’s degree in Computer Science, Engineering, Math or Physical Science

  • Typically has 15 years of progressive Splunk administration, Splunk architect and/or logging experience in a multisite environment is necessary

  • Certification:
    Splunk Certified Administrator required

  • Subject matter expert:
    Splunk Enterprise and Cloud;
    Splunk SPL query language;
    Common ingestion strategies such as UFs, HFs, HEC, TAs/Add-ons and syslog

  • Demonstrated proficiency with the full Splunk lifecycle, including all major components for enterprise deployments.

  • Must have solid foundation in Linux and possess a competence to troubleshoot various aspects of the integration including operating…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary