2

Remote Splunk Architect Jobs in Reston, VA (NOW HIRING)

Advanced Splunk Certification(s), e.g., Architect, Consultant, Developer, etc. * Experience ... Hybrid - primarily remote. Occasional onsite work required at the client location in Springfield ...

This opportunity is 100% remote. Work You'll Do: * Measure compliance with OMB Memorandum M-26-14 ... architecture (LRA is released) and provide recommendations for improvement. * Assess and monitor ...

Junior Splunk Engineer

Washington, DC · Remote

$80K - $900K/yr

This opportunity is 100% remote. Work You'll Do: * Measure compliance with OMB Memorandum M-26-14 ... architecture (LRA is released) and provide recommendations for improvement. * Assess and monitor ...

Cloud/Platform Engineer #1768466

Washington, DC · On-site +1

$63.25 - $84.50/hr

This position is primarily remote; however, must be able to come on-site in Washington, DC, as ... Certifications, such as AWS Solutions Architect, Azure Architect, CKA) are preferred * Experience ...

next page

Showing results 1-20

Remote Splunk Architect information

See Reston, VA salary details

$60

$84

$95

How much do remote splunk architect jobs pay per hour?

As of Jun 22, 2026, the average hourly pay for remote splunk architect in Reston, VA is $84.21, according to ZipRecruiter salary data. Most workers in this role earn between $77.79 and $92.02 per hour, depending on experience, location, and employer.

What does a Remote Splunk Architect do?

A Remote Splunk Architect is responsible for designing, implementing, and managing Splunk environments to help organizations collect, analyze, and visualize machine-generated data. They work remotely to assess business requirements, create scalable Splunk architectures, and optimize system performance. Their duties include configuring data ingestion, developing dashboards, and advising on security and compliance best practices. They also collaborate with IT teams to ensure Splunk solutions meet organizational needs and support troubleshooting and maintenance remotely.

What is the difference between Remote Splunk Architect vs Remote Splunk Engineer?

AspectRemote Splunk ArchitectRemote Splunk Engineer
CredentialsSplunk Certified Architect, relevant certificationsSplunk Certified Power User, basic certifications
Work EnvironmentDesigns and oversees Splunk solutions, strategic planningDevelops, implements, and maintains Splunk dashboards and alerts
Industry UsageUsed in enterprise IT, security, and data analyticsUsed in IT operations, security, and data analysis teams

Remote Splunk Architects focus on designing and planning Splunk solutions, requiring advanced certifications and strategic skills. In contrast, Remote Splunk Engineers handle the implementation and maintenance of Splunk systems, often with more technical and hands-on responsibilities. Both roles are vital in organizations leveraging Splunk for data analysis and security, but they differ in scope and seniority.

What are some common challenges faced by Remote Splunk Architects, and how can they be effectively addressed?

Remote Splunk Architects often encounter challenges such as coordinating with distributed teams, ensuring secure access to sensitive data, and maintaining consistent deployment standards across environments. To address these issues, it's important to establish clear communication channels, utilize secure VPNs or access management tools, and document best practices for Splunk implementation. Regular virtual meetings and collaborative platforms can help keep all stakeholders aligned, while automated deployment tools can streamline consistency and reliability in large-scale Splunk environments.

What are the key skills and qualifications needed to thrive as a Remote Splunk Architect, and why are they important?

To thrive as a Remote Splunk Architect, you need deep expertise in Splunk Enterprise deployment, data analytics, and cybersecurity, typically backed by a relevant degree and Splunk certifications (such as Splunk Enterprise Certified Architect). Familiarity with technical tools like Splunk Enterprise, Splunk Cloud, scripting languages (Python, Bash), and cloud platforms is essential. Strong problem-solving, communication, and project management skills help architects effectively collaborate with remote teams and stakeholders. These abilities are vital to designing robust, secure, and scalable Splunk solutions that meet organizational needs in distributed environments.
What are popular job titles related to Remote Splunk Architect jobs in Reston, VA? For Remote Splunk Architect jobs in Reston, VA, the most frequently searched job titles are:
What job categories do people searching Remote Splunk Architect jobs in Reston, VA look for? The top searched job categories for Remote Splunk Architect jobs in Reston, VA are:
What cities near Reston, VA are hiring for Remote Splunk Architect jobs? Cities near Reston, VA with the most Remote Splunk Architect job openings:
Continuous Monitoring Team Lead (Splunk)

Continuous Monitoring Team Lead (Splunk)

SAIC

Arlington, VA • On-site, Remote

Full-time

Posted 11 days ago


SAIC rating

7.8

Company rating: 7.8 out of 10

Based on 78 frontline employees who took The Breakroom Quiz

69th of 204 rated it services


Job description

Job ID: 2613574

Location: Arlington, VA, US

Date Posted: 2026-06-10

Category: Cyber

Subcategory: Cyber GRC

Schedule: Full-Time

Shift: Day Job

Travel: Yes - 10% of the time

Minimum Clearance Required: TS.SCI

Clearance Level Must Be Able to Obtain: None

Potential for Remote Work: ORA_ON_SITE


Description

SAIC is seeking qualified applicants to support a cutting-edge data, analytics, and AI platform. The Continuous Monitoring Team Lead (Splunk) is a critical SME role working across Splunk, ServiceNow, and supporting security platform technologies to build analytic maturity and integrations with SOAR, UEBA, and Zero Trust Architecture.  Mature analytics and normalized data will support 10+ cyber teams who are also working with other task areas that handle customer relationships, service portfolio and catalog management, software engineering & development, data/AI engineering, IT systems operations, and use case intake and analytics for DoW enterprise-scale mission objectives expected in Spring/Summer 2026. 

Positions are contingent pending contract award.  

The work will be performed in the Alexandria, Virginia. Some work may be performed remotely, subject to Government approval.  

Job Responsibilities:  

  • Lead the Continuous Monitoring Team in designing, building, and maturing enterprise cybersecurity analytics across Splunk, supporting continuous monitoring objectives across all CSP/security enclaves.
  • Architect and develop advanced Splunk use cases, dashboards, and custom applications to enable proactive detection, visibility, and decision support for 10+ cyber teams.
  • Design and implement data normalization strategies, including field extractions, CIM alignment, and data model optimization to improve analytic fidelity and reuse.
  • Integrate Splunk with ServiceNow, SOAR platforms, UEBA capabilities, and Zero Trust Architecture to enable automated workflows and enriched operational context.
  • Identify and close visibility gaps by engineering new analytics, correlations, and data onboarding strategies to enhance enterprise monitoring coverage.
  • Collaborate with data/AI engineering teams to incorporate AI/ML-driven analytics, automation, and intelligent alerting into Splunk-based monitoring solutions.
  • Evaluate and optimize data quality, ingestion pipelines, and telemetry sources to ensure high-confidence analytics and reduced false positives.
  • Develop reusable analytic content and patterns based on threat intelligence, lessons learned, and evolving mission requirements, enabling other teams to scale detection and monitoring capabilities. 

Qualifications

  • Bachelors & 14+ years of related experience, Masters & 12+ years of experience, or PhD or JD & 9+ years of experience.
  • Active TS/SCI Clearance.

Knowledge, Skills, Abilities, and Competencies:

  • Deep expertise in Splunk architecture, including experience manipulating the functionality of Splunk roles and clustering architectures. Splunk Enterprise Security certification preferred.  Splunk Architect, Consultant, or Defense Engineer certification preferred.  Splunk Admins with well-defined Splunk App Building experience will be considered.  At least a Splunk Administrator certification is required, with growth expectation of achieving Splunk Architect in 12 months or less.
  • Demonstrated ability to build and deploy custom Splunk apps, preferably including development with AI agents in controlled environments and promotion to production.
  • Strong proficiency in data normalization, including field extraction, CIM compliance, and extensive use of Splunk data models for scalable analytics.
  • Advanced understanding of how data quality impacts analytics, CMDB alignment, AI/ML effectiveness, incident noise reduction, and Zero Trust implementations.
  • Experience integrating Splunk with enterprise platforms such as ServiceNow, Splunk SOAR, and Splunk UEBA, and ServiceNow to support automation and operational workflows.
  • Ability to design and deliver analytic outputs and reporting that provide actionable insights into system performance, vulnerabilities, and cybersecurity posture.
  • Relevant DoD 8140 (or 8570 equivalent) certification required; advanced certifications (e.g., CISSP, CCSP) and exposure to AI/ML or data engineering concepts preferred. 


What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom