1

Splunk Engineer Jobs in California (NOW HIRING)

Sr. Splunk Engineer

San Francisco, CA · Hybrid

$134K - $185K/yr

The Senior Splunk Engineer maintains the logging infrastructure for Splunk Enterprise and other dependent infrastructure, such as syslog (syslog-ng/rsyslog) to ensure that reports are available, fast ...

SPLUNK> coding * Object oriented programming skill * Good to have: SPLUNK> Configuration * Unix/Linux OS skill * Shell, Perl Scripting * DB Concepts / SQL Queries * Good communication * Team player

Seeking a highly motivated individual to join the Advanced Technical Support Operations team as Staff Engineer 4. The role will perform platform administration for Splunk, Hadoop and EMC Smarts. The ...

SRE Engineer

San Francisco, CA · Remote

$67.25 - $89.25/hr

Whether requirements can be fulfilled using Splunk, Dynatrace, or both The most efficient, scalable ... Splunk Engineering Design and optimize Splunk-based logging and monitoring solutions Develop ...

next page

Showing results 1-20

Splunk Engineer information

See California salary details

$68.5K

$122.3K

$170.9K

How much do splunk engineer jobs pay per year?

As of Jun 8, 2026, the average yearly pay for splunk engineer in California is $122,326.00, according to ZipRecruiter salary data. Most workers in this role earn between $97,433.00 and $140,029.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Splunk Engineer, and why are they important?

To thrive as a Splunk Engineer, you need expertise in data analysis, log management, and scripting languages like Python or Bash, often backed by a degree in computer science or related field. Familiarity with Splunk Enterprise, Splunk Cloud, and certifications such as Splunk Certified Power User or Splunk Certified Admin are typically required. Strong problem-solving abilities, attention to detail, and effective communication help you stand out in this position. These skills are crucial for efficiently managing complex data environments, delivering actionable insights, and supporting organizational security and operations.

What are some common challenges Splunk Engineers face when managing large-scale log data environments?

Splunk Engineers working with large-scale log data environments often encounter challenges related to data ingestion bottlenecks, maintaining indexer performance, and ensuring efficient search query execution. Balancing storage management with retention policies and optimizing dashboards for real-time analysis can also be complex. Successful engineers proactively collaborate with IT, security, and development teams to fine-tune data sources, streamline parsing, and implement best practices for scalability, ensuring that Splunk delivers timely and actionable insights.

What is the difference between Splunk Engineer vs Data Analyst?

AspectSplunk EngineerData Analyst
Required CredentialsSplunk certifications, technical degreesStatistics, data analysis certifications, degrees
Work EnvironmentIT/security teams, tech-focused companiesBusiness, marketing, finance departments
Employer & Industry UsageTech, cybersecurity, enterprise ITFinance, healthcare, retail, marketing

Splunk Engineers focus on deploying, configuring, and maintaining Splunk platforms for data monitoring and security. Data Analysts interpret data to generate insights for business decisions. While both roles work with data, Splunk Engineers specialize in technical implementation of Splunk tools, whereas Data Analysts focus on analyzing data to inform strategies.

What is a Splunk Engineer?

A Splunk Engineer is an IT professional who specializes in deploying, configuring, and managing Splunk software for data analysis and monitoring. They are responsible for setting up data ingestion pipelines, creating dashboards, and developing alerts to help organizations monitor their systems and security. Splunk Engineers often work with large datasets to extract meaningful insights, support troubleshooting, and ensure system health. Their expertise is essential for leveraging Splunk’s capabilities in IT operations, security, and compliance.
What are the most commonly searched types of Splunk Engineer jobs in California? The most popular types of Splunk Engineer jobs in California are:
What are popular job titles related to Splunk Engineer jobs in California? For Splunk Engineer jobs in California, the most frequently searched job titles are:
What job categories do people searching Splunk Engineer jobs in California look for? The top searched job categories for Splunk Engineer jobs in California are:
What cities in California are hiring for Splunk Engineer jobs? Cities in California with the most Splunk Engineer job openings:
Principal Splunk Engineer

Principal Splunk Engineer

Early Warning Services

San Francisco, CA • Hybrid

Full-time

Medical, Dental, Vision, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Job description

At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle, Paze, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

Purpose
The Principal Splunk Engineer operates as a logging architecture subject matter expert across all domains of logging and event monitoring. This includes working directly in collaboration with Technology and Security teams to design, implement and maintain Production Assurance and Reliability Operations Services and ensure that the company operates a world-class enterprise log management solution. The Principal Splunk Engineer maintains the logging infrastructure for Splunk Enterprise and Cloud and other dependent infrastructure, such as Cribl to ensure that reports are available, fast and efficient. The Principal Splunk Engineer leads and/or consults on efforts pertaining to design, architecture, scalability, business continuity, and disaster recovery as needed.
Essential Functions

  • Leads the Splunk Engineering team in technical and risk based decision making, focusing on data quality and business needs

  • Architects Splunk Enterprise infrastructure and leads tuning Splunk for optimal onboarding of data, performance, and capacity management; identifies gaps and areas of duplication; provides recommendations for optimization

  • Leads operating and maintaining efforts for a complex multi-site hybrid environment and ensures the infrastructure remains available and scalable.

  • Significantly influences the overall technology direction of Early Warning from the perspective of log management

  • Works collaboratively with business customers to intake and define new logging architectures and solutions for various business units at Early Warning

  • Leads and approves changes for logging infrastructure from a security perspective

  • Ensures our logging environment provides for effective threat detection and response in direct partnership with information security teams

  • Participates in incident management & incident response during an outage or security investigation when needed

  • Creates documentation for any addition or change to our environment. Reviews and updates on a regular basis to ensure accuracy.

  • Ensures the tools are supporting all compliance efforts in collaboration with auditors

  • Provides metrics for platform performance, capacity, and user management

  • Leads root cause analysis efforts pertaining to log engineering issues

  • On call rotation with other Splunk engineers to cover 24x7 response

  • Sets and supports best practices for end users and company standards. Stays current on the latest industry technologies, trends, and strategies

  • Support the company's commitment to protect the integrity and confidentiality of systems and data

  • Advises as the subject matter expert and contributes to the development of Early Warning security policy and procedures

  • Mentors new team members

Minimum Qualifications

  • Education and experience typically obtained through completion of a Bachelor's degree in Computer Science, Engineering, Math or Physical Science

  • Typically has 15 years of progressive Splunk administration, Splunk architect and/or logging experience in a multisite environment is necessary

  • Certification: Splunk Certified Administrator required

  • Subject matter expert:

    • Splunk Enterprise and Cloud

    • Splunk SPL query language

    • Common ingestion strategies such as UFs, HFs, HEC, TAs/Add-ons and syslog

  • Demonstrated proficiency with the full Splunk lifecycle, including all major components for enterprise deployments.

  • Must have solid foundation in Linux and possess a competence to troubleshoot various aspects of the integration including operating system, application, and networking components as they relate to both Splunk and syslog implementations

  • Experience with supporting technologies such as Cribl

  • Ability to handle large projects as well as take care of day-to-day operations

  • Strong sense of responsibility, ownership, and pride in delivering quality results.

  • In addition, troubleshooting and organizational skills with a can-do attitude and the ability to adjust to changing requirements are essential.

  • Demonstrated ability to communicate across all levels of the organization is necessary; must be able to clearly articulate technical ideas to a non-technical audience both verbally and in writing.

  • Background and drug screen


Preferred Qualifications

  • Shell/Interpreter scripting a plus (e.g., Bash, PERL, Python)

  • Certifications: Splunk Enterprise Certified Architect, Splunk Cloud Certified Admin (working towards or achieved strongly desired)

  • Unix/Linux administration background a strong plus

  • Experience with Splunk ES / UBA

  • Logging technologies (implementation/administration) - syslog-ng/rsyslog, ELK, Filebeat, Kafka, Fluentd, Graylog

  • X.509/PKI fundamentals with experience on practical implementation

  • Practical understanding and troubleshooting experience with the following: UDP, TCP, SSL/TLS, HTTP/S, Rest APIs, load balancers, forward proxies

Physical Requirements
Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.
Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.

The above job description is not intended to be an all-inclusive list of duties and standards of the position. Incumbents will follow instructions and perform other related duties as assigned by their supervisor.

Early Warning Services is an affirmative action and equal opportunity employer.

The base pay scale for this position in:
Phoenix, AZ/ Chicago, IL in USD per year is: $184,000 - $230,000.
San Francisco, CA in USD per year is: $221,000 - $276,000.
Additionally, candidates are eligible for a discretionary incentive plan and benefits.
This pay scale is subject to change and is not necessarily reflective of actual compensation that may be earned, nor a promise of any specific pay for any specific candidate, which is always dependent on legitimate factors considered at the time of job offer. Early Warning Services takes into consideration a variety of factors when determining a competitive salary offer, including, but not limited to, the job scope, market rates and geographic location of a position, candidate's education, experience, training, and specialized skills or certification(s) in relation to the job requirements and compared with internal equity (peers). The business actively supports and reviews wage equity to ensure that pay decisions are not based on gender, race, national origin, or any other protected classes.

Some of the Ways We Prioritize Your Health and Happiness

  • Healthcare Coverage-Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.

  • 401(k) Retirement Plan-Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.

  • Paid Time Off -Flexible Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.

  • 12 weeks of Paid Parental Leave

  • Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.

AndSOmuch more! We continue to enhance our program, so be sure tocheck our Benefits page herefor the latest. Ourteamcan share more during the interview process!

Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.

Early Warning Services LLC is a proud participant in E-Verify, a federal program to help ensure a legal and authorized workforce. As part of our hiring process, we electronically verify the employment eligibility of all new hires through E-Verify. For more information on your rights and responsibilities under E-Verify please visit Home | E-Verify.