1

Splunk Admin Jobs (NOW HIRING)

Title: Splunk Administrator Location: San Jose, CA or Raleigh, NC Type: Full-Time Required Skills/Experience: This requirement is to build and optimize a large-scale Splunk infrastructure. This ...

Title: Splunk Administrator Location: San Jose, CA or Raleigh, NC Type: Full-Time Required Skills/Experience: This requirement is to build and optimize a large-scale Splunk infrastructure. This ...

Splunk Administrator Location: San Jose, CA or Raleigh, NC Type: Full-Time Required Skills/Experience: This requirement is to build and optimize a large-scale Splunk infrastructure. This person won't ...

Splunk Administrator Location: San Jose, CA or Raleigh, NC Type: Full-Time Required Skills/Experience: This requirement is to build and optimize a large-scale Splunk infrastructure. This person won't ...

Jr. Splunk Administrator

Pensacola, FL · On-site

$70K - $80K/yr

Splunk certifications (e.g., Splunk Enterprise Certified Admin, Splunk Core Certified Power User). Physical Requirements: While performing the duties of this job, the employee is regularly required ...

Splunk certifications (e.g., Splunk Enterprise Certified Admin, Splunk Core Certified Power User). Physical Requirements: While performing the duties of this job, the employee is regularly required ...

Splunk certifications (e.g., Splunk Architect, Splunk Admin, Power User) * Experience with Splunk SOAR / Phantom * Experience with DevSecOps and Infrastructure as Code * Background in enterprise data ...

This isn't just another admin gig -- it's your chance to own Splunk across a national security program at one of the highest-clearance sites in the country. You'll optimize logs that matter ...

Splunk Administrator certification is a plus. Demonstrated ability to work and communicate effectively with peers in operations, programming and engineering. Experienced with the use and ...

next page

Showing results 1-20

Splunk Admin information

See salary details

$21

$49

$76

How much do splunk admin jobs pay per hour?

As of Jun 14, 2026, the average hourly pay for splunk admin in the United States is $49.21, according to ZipRecruiter salary data. Most workers in this role earn between $39.18 and $58.17 per hour, depending on experience, location, and employer.

Who is Splunk's biggest competitor?

For a Splunk Admin, the biggest competitors are other security information and event management (SIEM) platforms such as IBM QRadar, ArcSight, and LogRhythm. These tools offer similar log management, threat detection, and data analysis capabilities, and organizations often evaluate them when implementing or upgrading their security infrastructure.

What are the key skills and qualifications needed to thrive in the Splunk Admin position, and why are they important?

To succeed as a Splunk Admin, you need a solid understanding of Splunk architecture, log management, and data analysis, often supported by degrees in IT or computer science and relevant work experience. Hands-on experience with Splunk Enterprise, knowledge of scripting (such as Python or Shell), and certifications like Splunk Core Certified Power User or Splunk Certified Admin are highly valued. Strong troubleshooting, communication, and teamwork skills help you efficiently manage incidents and collaborate with IT and security teams. These abilities ensure reliable system performance, effective data monitoring, and responsive issue resolution within dynamic technical environments.

Is Splunk in high demand?

Splunk administrators are in high demand due to the increasing need for data analysis, security monitoring, and IT operations management. Organizations seek professionals with skills in managing Splunk environments, often requiring certifications and experience with related tools, making it a valuable role in the tech industry.

What does a Splunk admin do?

A Splunk admin is responsible for managing and maintaining the Splunk platform, including configuring data inputs, creating dashboards, and ensuring system performance and security. They often troubleshoot issues, optimize searches, and may hold certifications to support data analysis and security operations.

What is a Splunk Admin job?

A Splunk Admin is responsible for installing, configuring, and managing Splunk software to ensure optimal system performance and security. They create and maintain dashboards, alerts, and reports while troubleshooting system issues and optimizing queries for better data indexing. Additionally, they manage user access, ensure data integrity, and support teams in leveraging Splunk for log analysis and monitoring.

What are some common daily responsibilities for a Splunk Admin?

As a Splunk Admin, you’ll typically spend your days monitoring system health, troubleshooting data ingestion issues, and ensuring log data is correctly indexed and searchable. You’ll also manage user access, create custom dashboards or alerts, and collaborate closely with security, IT operations, and development teams to support various business needs. Routine maintenance tasks like version upgrades and capacity planning are part of the role, ensuring the Splunk environment remains robust and secure. This work is often performed either independently or as part of a dedicated monitoring or security operations team, offering plenty of opportunities to develop technical and collaborative skills.

How much do Splunk admins make?

Splunk administrators typically earn a median annual salary ranging from $80,000 to $120,000, depending on experience, certifications, and location. Senior roles or those with advanced skills in data analysis and security can earn higher salaries, often exceeding $130,000 annually.
More about Splunk Admin jobs
What cities are hiring for Splunk Admin jobs? Cities with the most Splunk Admin job openings:
What are the most commonly searched types of Splunk Admin jobs? The most popular types of Splunk Admin jobs are:
What states have the most Splunk Admin jobs? States with the most job openings for Splunk Admin jobs include:
What job categories do people searching Splunk Admin jobs look for? The top searched job categories for Splunk Admin jobs are:
Infographic showing various Splunk Admin job openings in the United States as of June 2026, with employment types broken down into 50% Full Time, and 50% Contract. Highlights an 100% In-person job distribution, with an average salary of $102,350 per year, or $49.2 per hour.
Continuous Monitoring Team Lead (Splunk)

Continuous Monitoring Team Lead (Splunk)

Science Applications International Corporation

Arlington, VA • On-site, Remote

Other

Posted 4 days ago


SAIC rating

7.8

Company rating: 7.8 out of 10

Based on 78 frontline employees who took The Breakroom Quiz

71st of 204 rated it services


Job description

SAIC is seeking qualified applicants to supportacutting-edgedata, analytics, and AI platform. The Continuous Monitoring Team Lead (Splunk) is a critical SME role working across Splunk, ServiceNow, and supporting security platform technologies to build analytic maturity and integrations with SOAR, UEBA, and Zero Trust Architecture.  Mature analytics and normalized data will support 10+ cyber teams who are also working with other task areas that handle customer relationships, service portfolio and catalog management, software engineering & development, data/AI engineering, IT systems operations, and use case intake and analytics forDoWenterprise-scale missionobjectives expected in Spring/Summer 2026. 

Positions are contingent pending contract award.  

The work will be performed in the Alexandria, Virginia. Some work may be performed remotely, subject to Government approval.  

Job Responsibilities:  

  • Lead the Continuous Monitoring Team in designing, building, and maturing enterprise cybersecurity analytics across Splunk, supporting continuous monitoring objectives across all CSP/security enclaves.
  • Architect and develop advanced Splunk use cases, dashboards, and custom applications to enable proactive detection, visibility, and decision support for 10+ cyber teams.
  • Design and implement data normalization strategies, including field extractions, CIM alignment, and data model optimization to improve analytic fidelity and reuse.
  • Integrate Splunk with ServiceNow, SOAR platforms, UEBA capabilities, and Zero Trust Architecture to enable automated workflows and enriched operational context.
  • Identify and close visibility gaps by engineering new analytics, correlations, and data onboarding strategies to enhance enterprise monitoring coverage.
  • Collaborate with data/AI engineering teams to incorporate AI/ML-driven analytics, automation, and intelligent alerting into Splunk-based monitoring solutions.
  • Evaluate and optimize data quality, ingestion pipelines, and telemetry sources to ensure high-confidence analytics and reduced false positives.
  • Develop reusable analytic content and patterns based on threat intelligence, lessons learned, and evolving mission requirements, enabling other teams to scale detection and monitoring capabilities. 
SAIC is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives.

We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.
  • Bachelors & 14+ years of related experience, Masters & 12+ years of experience, or PhD or JD & 9+ years of experience.
  • Active TS/SCI Clearance.

Knowledge, Skills, Abilities, and Competencies:

  • Deep expertise in Splunk architecture, including experience manipulating the functionality of Splunk roles and clustering architectures. Splunk Enterprise Security certification preferred.  Splunk Architect, Consultant, or Defense Engineer certification preferred.  Splunk Admins with well-defined Splunk App Building experience will be considered.  At least a Splunk Administrator certification is required, with growth expectation of achieving Splunk Architect in 12 months or less.
  • Demonstrated ability to build and deploy custom Splunk apps, preferably including development with AI agents in controlled environments and promotion to production.
  • Strong proficiency in data normalization, including field extraction, CIM compliance, and extensive use of Splunk data models for scalable analytics.
  • Advanced understanding of how data quality impacts analytics, CMDB alignment, AI/ML effectiveness, incident noise reduction, and Zero Trust implementations.
  • Experience integrating Splunk with enterprise platforms such as ServiceNow, Splunk SOAR, and Splunk UEBA, and ServiceNow to support automation and operational workflows.
  • Ability to design and deliver analytic outputs and reporting that provide actionable insights into system performance, vulnerabilities, and cybersecurity posture.
  • Relevant DoD 8140 (or 8570 equivalent) certification required; advanced certifications (e.g., CISSP, CCSP) and exposure to AI/ML or data engineering concepts preferred. 

What SAIC employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom