Splunk/DevOps Engineer
Long term contract, 2+ years fully fundedLocation: Fully remote EST timezoneOur client, a national government integrator, is currently supporting their end customer, a government agency in helping them deploy Splunk from scratch in an AWS environment.Our cli
Key Responsibilities
- Manage and maintain a large-scale Splunk deployment hosted in AWS.
- Integrate, configure, and optimize Splunk for log analysis, monitoring, and troubleshooting.
- Collaborate with development and operations teams to ensure system performance, scalability, and security.
- Automate and optimize deployment processes, monitoring, and infrastructure using Infrastructure as Code (IaC) tools such as Terraform, Ansible, or CloudFormation.
- Implement security best practices and leverage Splunk Enterprise Security for system monitoring.
- Troubleshoot production issues and resolve system/application errors within the Splunk ecosystem.
- Set up and manage SC4S (Splunk Connect for Syslog) for log collection.
- Execute standard Splunk onboarding procedures, ensuring proper log ingestion, parsing, and adherence to the Splunk Common Information Model (CIM).
- Implement and manage Splunk apps and add-ons for specialized use cases and data visualizations.
Required Skills & Qualifications
- 8+ years of experience as a Splunk Security Engineer or DevOps Engineer in a large, distributed environment.
- US Citizenship or Green Card holder
- Proven experience operating and managing Splunk in cloud (AWS) and/or hybrid environments.
- Strong knowledge of AWS infrastructure and services, with hands-on experience in platform optimization.
- Proficiency in Linux, shell scripting, and GitHub for code management.
- Hands-on experience with Terraform, CloudFormation, or similar automation tools.
- Familiarity with CI/CD tools.
- Experience with containerization (Docker, Kubernetes) and working within cloud environments (AWS, Azure, GCP).
- Strong problem-solving and troubleshooting skills, particularly in multi-tenant enterprise environments.
- Expertise in Splunk Search Processing Language (SPL), dashboard creation, and complex query development.
- Excellent communication and collaboration skills, with the ability to work under pressure in fast-paced environments.
Preferred Qualifications
- Experience with Splunk HTTP Event Collector (HEC), syslog, log management and security monitoring.
- Hands-on expertise with AWS Cloud infrastructure governance and performance optimization.
- Strong scripting skills in Python, Bash, or other equivalent languages.
Certifications (Preferred)
- Splunk Enterprise Certified Architect or equivalent.
- AWS Certified Solutions Architect or DevOps Engineer.