1

Splunk Admin Jobs in Indiana (NOW HIRING)

Administer, configure, and maintain Tripwire Enterprise components, including consoles, agents, policies, rules, and dashboards. * Integrate Tripwire with other systems such as ServiceNow and Splunk ...

Tripwire Platform Engineer

Carmel, IN · On-site

$114K - $139K/yr

Administer, configure, and maintain Tripwire Enterprise components, including consoles, agents, policies, rules, and dashboards. * Integrate Tripwire with other systems such as ServiceNow and Splunk ...

Splunk Admin information

See Indiana salary details

$20

$46

$72

How much do splunk admin jobs pay per hour?

As of May 30, 2026, the average hourly pay for splunk admin in Indiana is $46.82, according to ZipRecruiter salary data. Most workers in this role earn between $37.31 and $55.34 per hour, depending on experience, location, and employer.

What is a Splunk Admin job?

A Splunk Admin is responsible for installing, configuring, and managing Splunk software to ensure optimal system performance and security. They create and maintain dashboards, alerts, and reports while troubleshooting system issues and optimizing queries for better data indexing. Additionally, they manage user access, ensure data integrity, and support teams in leveraging Splunk for log analysis and monitoring.

What are the key skills and qualifications needed to thrive in the Splunk Admin position, and why are they important?

To succeed as a Splunk Admin, you need a solid understanding of Splunk architecture, log management, and data analysis, often supported by degrees in IT or computer science and relevant work experience. Hands-on experience with Splunk Enterprise, knowledge of scripting (such as Python or Shell), and certifications like Splunk Core Certified Power User or Splunk Certified Admin are highly valued. Strong troubleshooting, communication, and teamwork skills help you efficiently manage incidents and collaborate with IT and security teams. These abilities ensure reliable system performance, effective data monitoring, and responsive issue resolution within dynamic technical environments.

What are some common daily responsibilities for a Splunk Admin?

As a Splunk Admin, you’ll typically spend your days monitoring system health, troubleshooting data ingestion issues, and ensuring log data is correctly indexed and searchable. You’ll also manage user access, create custom dashboards or alerts, and collaborate closely with security, IT operations, and development teams to support various business needs. Routine maintenance tasks like version upgrades and capacity planning are part of the role, ensuring the Splunk environment remains robust and secure. This work is often performed either independently or as part of a dedicated monitoring or security operations team, offering plenty of opportunities to develop technical and collaborative skills.
What are the most commonly searched types of Splunk Admin jobs in Indiana? The most popular types of Splunk Admin jobs in Indiana are:
What are popular job titles related to Splunk Admin jobs in Indiana? For Splunk Admin jobs in Indiana, the most frequently searched job titles are:
What job categories do people searching Splunk Admin jobs in Indiana look for? The top searched job categories for Splunk Admin jobs in Indiana are:
Infographic showing various Splunk Admin job openings in Indiana as of May 2026, with employment types broken down into 90% Full Time, and 10% Contract. Highlights an 60% In-person, and 40% Hybrid job distribution, with an average salary of $97,392 per year, or $46.8 per hour.
Splunk SIEM Engineer

Full-time

Medical, Retirement, PTO

Posted 29 days ago


Job description

Position Overview
Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.
We are seeking a skilled Splunk SIEM Engineer to lead the evolution of our Splunk environment into a fully operational, enterprise-grade Security Information and Event Management (SIEM) platform. This role will be responsible for both the build-out and ongoing operations of the platform, ensuring it delivers reliable, actionable security insights and supports evolving cybersecurity initiatives. This is a hybrid position that requires regular onsite presence in Crane, Indiana.
Key Responsibilities
  • Lead the transformation of the Splunk environment into a fully functional SIEM platform
  • Manage and optimize the data ingestion pipeline:
    • Audit existing data sources for relevance and efficiency
    • Eliminate unnecessary data ingestion to control licensing costs
    • Onboard and integrate new data sources
  • Parse, normalize, and map ingested data to the Splunk Common Information Model (CIM)
  • Configure, maintain, and optimize Splunk Enterprise Security (ES)
  • Configure, maintain, and optimize Splunk security orchestration, automation, and response platform (SOAR)
  • Develop and maintain correlation searches, detections, and use cases
  • Create and tune alerts to improve fidelity and reduce false positives
  • Build dashboards and visualizations for operational awareness and trend analysis
  • Monitor overall platform health and performance
  • Perform system upgrades, patching, and capacity planning
  • Manage intra Splunk certificates
  • Manage the lifecycle of security content:
    • Continuously refine detections and correlation rules
    • Enhance visibility and detection coverage based on emerging threats
  • Ensure consistent SIEM operations regardless of hosting environment or infrastructure ownership
  • Support ongoing security operations and future cybersecurity initiatives

Requirements
Required Qualifications
  • A SecurityX, CASP, or equivalent DoD 8140 IAT-3 certification is required.
  • Security Clearance: An interim DoD Secret security clearance or higher is required to start. Applicant selected may be subject to a security investigation and must meet eligibility requirements for access to classified information.
  • Hands-on experience with Splunk Enterprise and Splunk Enterprise Security (ES)
  • Strong understanding of SIEM architecture, design, and operations
  • Experience with log ingestion, parsing, normalization, and CIM mapping
  • Proficiency in developing correlation searches, alerts, and dashboards
  • Experience tuning SIEM content to reduce false positives and improve detection accuracy
  • Familiarity with data onboarding strategies and license optimization
  • Knowledge of cybersecurity principles, threat detection, and incident response
  • Experience with system administration tasks including patching, upgrades, and performance monitoring

Preferred Qualifications
  • Experience operating Splunk in distributed or multi-tenant environments
  • Knowledge of data pipelines and log forwarding technologies (e.g., syslog, APIs, forwarders)
  • Familiarity with frameworks such as MITRE ATT&CK
  • Experience supporting Zero Trust or advanced security architectures
  • Preferred certifications (e.g., Splunk Certified Admin, Splunk ES Certified, Security+)

Benefits
At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.
RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.
Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements.