2

Full Time Splunk Security Engineer Jobs (NOW HIRING)

SPLUNK ENGINEER MILITARY FRIENDLY & PREFERRED - HOH SPONSOR Zermount is seeking an experienced Splunk Engineer to support our client's enterprise security, operations, and monitoring environment.

The Splunk SOAR Engineer will lead the full lifecycle of platform architecture, integration ... Adhere to security best practices and compliance requirements within the operational environment.

Use Splunk as the primary security platform for your work * Propose innovative uses cases for ... Prefer some experience in network monitoring * 1-3 years of programming experience, e.g., Python ...

Onboard new data sources including network appliances, servers, security tools, and applications ... Employment Type: FULL_TIME

Onboard new data sources including network appliances, servers, security tools, and applications ... Employment Type: FULL_TIME

Onboard new data sources including network appliances, servers, security tools, and applications ... Employment Type: FULL_TIME

Use Splunk as the primary security platform for your work * Propose innovative uses cases for ... Prefer some experience in network monitoring * 1-3 years of programming experience, e.g., Python ...

Onboard new data sources including network appliances, servers, security tools, and applications ... Employment Type: FULL_TIME

Senior Splunk Engineer

Washington, DC · On-site

$129K - $177K/yr

The Senior Splunk Engineer will be responsible for designing, implementing, and optimizing Splunk ... Create custom dashboards, reports, and alerts to support security operations, system monitoring ...

Sr. Splunk Engineer

Scottsdale, AZ · On-site

$115K - $158K/yr

Collaborates with the Security team in security incident resolution and risk evaluations * On call rotation with other Splunk engineers to cover 24x7 response * Sets and supports best practices for ...

next page

Showing results 1-20

Full Time Splunk Security Engineer information

See salary details

$61.5K

$152.8K

$205.5K

How much do full time splunk security engineer jobs pay per year?

As of Jun 13, 2026, the average yearly pay for full time splunk security engineer in the United States is $152,773.00, according to ZipRecruiter salary data. Most workers in this role earn between $143,000.00 and $158,500.00 per year, depending on experience, location, and employer.

Can you make $500,000 a year in cyber security?

Full Time Splunk Security Engineers with advanced skills, certifications, and experience in security monitoring and incident response can potentially earn salaries approaching or exceeding $500,000 annually, especially in high-cost-of-living areas or senior leadership roles. However, such compensation levels are typically reserved for highly specialized or managerial positions with extensive expertise and responsibilities. Most cybersecurity professionals earn lower salaries, but top-tier specialists and those in executive roles can reach high income levels.

How much does a Splunk security engineer make?

A full-time Splunk security engineer typically earns between $90,000 and $130,000 annually, depending on experience, certifications, and location. Professionals with advanced skills in security monitoring, threat detection, and familiarity with Splunk tools tend to earn higher salaries.

What engineer makes $500,000 a year?

A senior or specialized security engineer, such as a Full Time Splunk Security Engineer with extensive experience, advanced certifications, and expertise in security tools, can earn $500,000 or more annually. High-level cybersecurity roles often include bonuses and stock options that contribute to total compensation at this level.

Can you make 300k in cyber security?

Full Time Splunk Security Engineers with extensive experience, advanced skills in security monitoring, and relevant certifications can potentially earn salaries around or above $300,000 annually, especially in high-demand markets. Achieving this level often requires specialized expertise, leadership roles, or working in organizations with large security budgets.

What is the difference between Full Time Splunk Security Engineer vs Security Analyst?

AspectFull Time Splunk Security EngineerSecurity Analyst
CertificationsSplunk Certified Security Intelligence Professional, CISSP (preferred)CompTIA Security+, GIAC Security Essentials (GSEC)
Work EnvironmentFocus on Splunk platform management, security monitoring, and incident responseMonitor security alerts, analyze threats, and support security policies
Industry UsageCommon in cybersecurity teams using Splunk for SIEMWidespread across various industries for security monitoring

The Full Time Splunk Security Engineer specializes in managing and optimizing Splunk security tools, while a Security Analyst focuses on analyzing security data and responding to threats. Both roles require security certifications and work in cybersecurity environments, but the engineer emphasizes Splunk platform expertise, whereas the analyst concentrates on threat analysis and incident response.

What cities are hiring for Full Time Splunk Security Engineer jobs? Cities with the most Full Time Splunk Security Engineer job openings:
What are the most commonly searched types of Splunk Security Engineer jobs? The most popular types of Splunk Security Engineer jobs are:
What states have the most Full Time Splunk Security Engineer jobs? States with the most job openings for Full Time Splunk Security Engineer jobs include:
SPLUNK ENGINEER

Full-time

Posted 12 days ago


Job description

SPLUNK ENGINEER

MILITARY FRIENDLY & PREFERRED - HOH SPONSOR

Zermount is seeking an experienced Splunk Engineer to support our client's enterprise security, operations, and monitoring environment. This role is responsible for the engineering, ongoing administration, maintenance, and enhancements of our client's Splunk environment, ensuring performance, scalability, and operational effectiveness.

The ideal candidate brings proven operational experience in Splunk engineering and data ingestion, strong experience working within structured change management environments, and the ability to collaborate across infrastructure, network, and security teams.

RESPONSIBILITIES

  • Engineer, implement, configure, administer, maintain, upgrade, patch, and troubleshoot the Splunk Enterprise platform in accordance with client policies
  • Design and continuously evaluate Splunk architecture to ensure scalability, performance, and alignment with current and future operational requirements; assess existing implementations and recommend enhancements or redesigns
  • Onboard, ingest, parse, normalize, and troubleshoot new and existing data sources, including network traffic, application logs, databases, and cloud platforms
  • Develop and maintain custom data parsers, field extractions, and data models to ensure accurate and efficient data integration across enterprise systems
  • Install, configure, upgrade, and maintain Splunk Apps, Add-ons, and knowledge objects; extend platform functionality to meet operational needs.
  • Develop and maintain custom searches, alerts, reports, and dashboards to support internal stakeholders, SOC, leadership, and external users; review and enhance detection and reporting capabilities.
  • Monitor and optimize Splunk system performance, connectivity, license utilization, and overall platform health; conduct system tuning and capacity planning. Provide daily health check reports to management and stakeholders.
  • Perform major version upgrades and support full platform lifecycle management, including patching, backup validation, restoration testing, and decommissioning activities
  • Administer and troubleshoot Splunk infrastructure hosted on RHEL servers, including user account management, access controls, certificate maintenance, logging configuration, and configuration backups
  • Troubleshoot ingestion failures, platform issues, and integration challenges; coordinate with internal teams and external vendors through issue resolution
  • Develop technical documentation, architecture and data flow diagrams, and implementation strategies; participate in design reviews, testing cycles, and change management processes
  • Collaborate with stakeholders and management to define requirements, translate business needs into technical deliverables, and provide accurate status updates
  • Track, manage, and report on work through schedules, tickets (service, request, incident), workflows, status reports, dashboards, etc.
  • Provide engineering, administrative and technical support as required to other team members or tools as a member of a cross functional security engineering team.

QUALIFICATIONS

  • 5+ years of hands-on experience engineering and administering enterprise Splunk environments, including multi-site clustered and distributed architectures.
  • Demonstrated expertise in log ingestion, data normalization, field extractions, and custom parser development across diverse data sources (network, application, database, cloud).
  • Proficient with Splunk Search Processing Language (SPL), including development of complex searches, alerts, reports, and dashboards.
  • Experience installing, configuring, upgrading, and performance tuning Splunk Enterprise in Linux environments (RHEL), including direct configuration of Splunk .conf files.
  • Experience integrating Splunk with enterprise security and operational tools, including:
    • Splunk DB Connect and custom SQL queries
    • syslog-ng configuration on RHEL (SELinux environments)
    • Custom integrations using Python, Bash, or PowerShell
  • Experience supporting and optimizing distributed data pipelines, including administration of Cribl deployments and strategies to manage and reduce Splunk license consumption.
  • Experience performing major version upgrades and lifecycle management activities within production environments.
  • Experience operating within formal change management and ticket-driven workflows.
  • Ability to produce technical documentation, architecture diagrams, and implementation artifacts.

EDUCATION / CERTIFICATION(S)

  • Required: A minimum of Splunk Certified Administrator Certification or higher AND at least one IT Security certification reflected on the DOD 8140 IAT level II baseline.
  • Preferred: The following are additional certifications that are preferred but not required: Splunk Certified Architect or Splunk Core Consultant; Linux Administration, and Cribl Certification

CLEARANCE

  • Minimum Background Investigation

HOURS OF OPERATIONS

  • 8:00 am ET – 4:00 pm ET
    • After hours support maybe required to support emergency changes or system outages