1

Splunk Administrator Jobs (NOW HIRING)

Splunk Administrator (Level 3) G2IT is seeking an experienced Splunk Administrator (Level 3) to support enterprise cybersecurity, monitoring, and data analytics environments. The ideal candidate will ...

Title: Splunk Administrator Location: San Jose, CA or Raleigh, NC Type: Full-Time Required Skills/Experience: This requirement is to build and optimize a large-scale Splunk infrastructure. This ...

Splunk Administrator

Laurel, MD Β· On-site

$150K - $230K/yr

This isn't just another admin gig - it's your chance to own Splunk across a national security program at one of the highest-clearance sites in the country. You'll optimize logs that matter ...

Splunk Administrator

Potomac, MD Β· On-site

$150K - $230K/yr

This isn't just another admin gig -- it's your chance to own Splunk across a national security program at one of the highest-clearance sites in the country. You'll optimize logs that matter ...

Core4ce is seeking a Senior Splunk Administrator to support mission-critical, classified DoD programs. This role is responsible for the design, deployment, administration, and optimization of ...

Splunk Administrator (Level 3) G2IT is seeking an experienced Splunk Administrator (Level 3) to support enterprise cybersecurity, monitoring, and data analytics environments. The ideal candidate will ...

Core4ce is seeking a Senior Splunk Administrator to support mission-critical, classified DoD programs. This role is responsible for the design, deployment, administration, and optimization of ...

Splunk Administrator

Laurel, MD Β· On-site

$150K - $230K/yr

This isn't just another admin gig - it's your chance to own Splunk across a national security program at one of the highest-clearance sites in the country. You'll optimize logs that matter ...

Splunk Administrator

Washington, DC Β· On-site

$47.75 - $60.25/hr

They are seeking an experienced Splunk Administrator to manage and maintain a distributed Splunk installation, focusing on event log management, custom app creation, and diagnostics to optimize ...

Splunk certification * Experience in design, implementation and support of Splunk core components, including indexers, forwarders, search heads, and cluster managers * Experience with configurations ...

Our Partner is seeking a Splunk Administrator . In this role, you will analyze, design, build and implement Splunk infrastructure solutions for technology needs ensuring that the infrastructure ...

They are seeking a Splunk Admin/Developer who will be responsible for Splunk administration, onboarding and normalizing data, and developing Splunk applications and add-ons. Responsibilities : β€’ 8+ ...

Showing results 21-40

Splunk Administrator information

What is a Splunk administrator?

Splunk Administrators are IT professionals responsible for installing, configuring, managing, and maintaining Splunk environments. They ensure that Splunk software runs efficiently, managing data ingestion, indexing, and user access. Their role often includes troubleshooting issues, optimizing performance, and supporting users with dashboards and searches. Additionally, they may be involved in implementing security controls and integrating Splunk with other tools to enhance data analysis and reporting.

What are the key skills and qualifications needed to thrive as a Splunk administrator?

To thrive as a Splunk Administrator, you need strong knowledge of system administration, log management, and data analysis, typically supported by a bachelor’s degree in IT or related fields. Familiarity with Splunk Enterprise, SPL (Search Processing Language), and certifications like Splunk Certified Power User or Splunk Certified Admin are highly valued. Problem-solving ability, attention to detail, and effective communication are essential soft skills for success in this role. These competencies ensure reliable system performance, efficient data insights, and seamless collaboration with IT and security teams.

What are some common challenges Splunk administrators face when managing large-scale deployments?

Splunk Administrators often encounter challenges related to indexing large volumes of data, maintaining system performance, and ensuring data security across distributed environments. Managing data retention policies, optimizing search queries, and troubleshooting indexing or forwarding issues are routine tasks that require strong problem-solving skills. Collaboration with security, IT, and development teams is essential to ensure data sources are properly onboarded and dashboards meet organizational needs. Staying current with Splunk updates and best practices is also crucial for scalability and system reliability.

What is the difference between Splunk Administrator vs Security Information and Event Management (SIEM) Analyst?

AspectSplunk AdministratorSIEM Analyst
Required CertificationsSplunk Certified User, Splunk Core Certified Power UserGIAC Security Essentials, CompTIA Security+
Work EnvironmentIT teams managing Splunk deployments, data analysisSecurity teams monitoring security events, incident response
Employer & Industry UsageTech, finance, healthcare, any industry using SplunkCybersecurity firms, enterprise security departments

While both roles involve data analysis and security, a Splunk Administrator primarily manages and maintains Splunk platforms, ensuring data ingestion and system performance. In contrast, a SIEM Analyst focuses on analyzing security events, identifying threats, and responding to incidents using SIEM tools, including Splunk. Both roles often collaborate but serve different core functions within an organization's security and data infrastructure.

Is Splunk in high demand?

Splunk administrators are in high demand due to the increasing need for data analysis, security monitoring, and IT operations management. Organizations seek professionals with skills in log management, data visualization, and certifications like Splunk Certified Admin to support cybersecurity and operational efficiency.

What does a Splunk administrator do?

A Splunk administrator manages and maintains the Splunk platform, ensuring data is properly ingested, indexed, and searchable. They configure dashboards, set up alerts, troubleshoot issues, and optimize system performance, often using scripting and knowledge of security protocols. Certification in Splunk and familiarity with IT environments are common requirements.
More about Splunk Administrator jobs

What cities are hiring for Splunk Administrator jobs?

Cities with the most Splunk Administrator job openings:

What are the most commonly searched types of Splunk Administrator jobs?

The most popular types of Splunk Administrator jobs are:

What states have the most Splunk Administrator jobs?

States with the most job openings for Splunk Administrator jobs include:

What are popular job titles related to Splunk Administrator jobs?

For Splunk Administrator jobs, the most frequently searched job titles are:

Infographic showing various Splunk Administrator job openings in the United States as of September 2026, with employment types broken down into 1% As Needed, 83% Full Time, 11% Part Time, 1% Temporary, 3% Contract, and 1% Nights. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution.

Splunk Administrator (Level 3)

Suitland, MD β€’ On-site

G2IT
IT ServicesΒ β€’Β 11 - 50 employees

Full-time

This job post hasΒ expired 1 day ago.Β Applications are no longer accepted.


Job description

Splunk Administrator (Level 3)
G2IT is seeking an experienced Splunk Administrator (Level 3) to support enterprise cybersecurity, monitoring, and data analytics environments. The ideal candidate will have extensive hands-on experience administering and optimizing Splunk environments, supporting Cyber Network Defense (CND) operations, and working within DoD or Intelligence Community environments.
Key Responsibilities
  • Install, integrate, configure, administer, maintain, monitor, troubleshoot, and optimize Splunk environments.
  • Support Splunk Enterprise and advanced applications, including Enterprise Security (ES), SOAR, UEBA, and IT Service Intelligence (ITSI).
  • Install and manage Splunk Technical Add-ons (TAs), Apps, and Universal Forwarders.
  • Develop SPL queries, dashboards, reports, alerts, and other monitoring capabilities.
  • Perform log management, ingestion, parsing, normalization, and analysis.
  • Create REGEX parsing and XML presentations of log data.
  • Maintain Splunk Common Information Model (CIM) compliance and perform automated and manual data mapping.
  • Utilize Python scripting to automate Linux and Splunk administration tasks.
  • Work with Splunk DB Connect, SQL, and database integrations to collect and analyze log data.
  • Create, install, and maintain encryption keys used to secure communication channels.
  • Perform Risk Management Framework (RMF) functions associated with Splunk environments.
  • Support AWS resources and Red Hat Enterprise Linux environments.
  • Troubleshoot LAN/WAN, networking protocols, ports, services, file systems, and Windows/Unix/Linux infrastructure.
  • Develop technical documentation, SOPs, best practices, presentations, and cybersecurity guidance.
  • Support System/Software Development Life Cycle (SDLC) processes.
  • Communicate complex cybersecurity and technical issues to management, mission stakeholders, and customers.
Required Qualifications
  • Must hold an active Top Secret (TS) security clearance and be eligible for TS/SCI access.
  • 10+ years of professional experience with LAN/WAN technologies, networking protocols, file systems, ports, services, and commands within Windows and Unix/Linux environments.
  • 8+ years of concentrated experience within the Cyber Network Defense (CND) discipline.
  • 6+ years of professional hands-on experience with Splunk administration, integration, configuration, maintenance, and optimization.
  • Expert-level knowledge of Splunk Enterprise and Splunk applications, including ES, SOAR, UEBA, and ITSI.
  • Extensive experience with Splunk Add-ons, Apps, Technical Add-ons (TAs), and Universal Forwarders.
  • Strong experience creating SPL queries, dashboards, reports, and alerts.
  • Experience with REGEX parsing and XML presentation of log data.
  • Experience using Python to automate Linux and Splunk administrative tasks.
  • Experience with Splunk DB Connect, SQL, and database log collection.
  • Experience with Splunk Common Information Model (CIM) compliance and data mapping.
  • Experience creating and managing encryption keys for secure communications.
  • Experience administering and managing AWS and Red Hat Enterprise Linux environments.
  • Significant experience supporting RMF functions and cybersecurity compliance.
  • Strong knowledge of Federal, DoD, Intelligence Community, and industry cybersecurity standards.
  • Significant experience with SDLC processes and developing technical documentation, manuals, SOPs, and best practices.
  • Strong analytical, organizational, problem-solving, documentation, and briefing skills.
  • Ability to prioritize and complete tasks with minimal direction in a high-pressure environment.
  • Ability to communicate effectively with technical teams, customers, mission stakeholders, and all levels of management.
Certification Requirements
  • Prior to starting, candidates must possess an applicable DoD cybersecurity certification that satisfies the contract's CSSP Infrastructure Support requirements.
Education
  • Bachelor's degree in Computer Science, Information Technology, Information Assurance, or a related field is desired.
  • Master's degree is preferred.
  • Candidates without a degree should have 15+ years of relevant professional experience.