1

Splunk Engineer Jobs in Iowa (NOW HIRING)

Workiva is seeking a Software Support Engineer to own the technical resolution lifecycle for our ... Experience with logging and observability tools such as Splunk, Sumo Logic, New Relic, and/or ...

Job Title Software Engineer II - Remote Requisition Number R7726 Software Engineer II - Remote ... Monitoring tools including New Relic, Splunk * Apache Camel Messaging Services or ESB experience

next page

Showing results 1-20

Splunk Engineer information

What are the key skills and qualifications needed to thrive as a Splunk Engineer, and why are they important?

To thrive as a Splunk Engineer, you need expertise in data analysis, log management, and scripting languages like Python or Bash, often backed by a degree in computer science or related field. Familiarity with Splunk Enterprise, Splunk Cloud, and certifications such as Splunk Certified Power User or Splunk Certified Admin are typically required. Strong problem-solving abilities, attention to detail, and effective communication help you stand out in this position. These skills are crucial for efficiently managing complex data environments, delivering actionable insights, and supporting organizational security and operations.

What are some common challenges Splunk Engineers face when managing large-scale log data environments?

Splunk Engineers working with large-scale log data environments often encounter challenges related to data ingestion bottlenecks, maintaining indexer performance, and ensuring efficient search query execution. Balancing storage management with retention policies and optimizing dashboards for real-time analysis can also be complex. Successful engineers proactively collaborate with IT, security, and development teams to fine-tune data sources, streamline parsing, and implement best practices for scalability, ensuring that Splunk delivers timely and actionable insights.

What is the difference between Splunk Engineer vs Data Analyst?

AspectSplunk EngineerData Analyst
Required CredentialsSplunk certifications, technical degreesStatistics, data analysis certifications, degrees
Work EnvironmentIT/security teams, tech-focused companiesBusiness, marketing, finance departments
Employer & Industry UsageTech, cybersecurity, enterprise ITFinance, healthcare, retail, marketing

Splunk Engineers focus on deploying, configuring, and maintaining Splunk platforms for data monitoring and security. Data Analysts interpret data to generate insights for business decisions. While both roles work with data, Splunk Engineers specialize in technical implementation of Splunk tools, whereas Data Analysts focus on analyzing data to inform strategies.

What is a Splunk Engineer?

A Splunk Engineer is an IT professional who specializes in deploying, configuring, and managing Splunk software for data analysis and monitoring. They are responsible for setting up data ingestion pipelines, creating dashboards, and developing alerts to help organizations monitor their systems and security. Splunk Engineers often work with large datasets to extract meaningful insights, support troubleshooting, and ensure system health. Their expertise is essential for leveraging Splunk’s capabilities in IT operations, security, and compliance.
What are the most commonly searched types of Splunk Engineer jobs in Iowa? The most popular types of Splunk Engineer jobs in Iowa are:
What are popular job titles related to Splunk Engineer jobs in Iowa? For Splunk Engineer jobs in Iowa, the most frequently searched job titles are:
What job categories do people searching Splunk Engineer jobs in Iowa look for? The top searched job categories for Splunk Engineer jobs in Iowa are:
Infographic showing various Splunk Engineer job openings in Iowa as of July 2026, with employment types broken down into 90% Full Time, 7% Part Time, and 3% Contract. Highlights an 88% Physical, 3% Hybrid, and 9% Remote job distribution.

Splunk Administrator

Belcan Government Solutions

Des Moines, IA

$95K - $105K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 18 days ago


Job description

Job Summary:

The Splunk & Microsoft 365 Administrator will be responsible for managing, monitoring, and optimizing the enterprise Splunk platform and Microsoft 365 environment. The role includes administration of Microsoft Exchange Online, Teams, SharePoint Online, OneDrive, Azure AD/Entra ID, and Microsoft security solutions, while ensuring the reliability, security, and performance of Splunk infrastructure used for log management, monitoring, and security analytics.

The ideal candidate should possess strong troubleshooting skills, experience supporting enterprise collaboration platforms, and expertise in SIEM, monitoring, and cloud administration.

Job Duties:

  • Platform Management
  • Install, configure, and maintain Splunk Enterprise and Splunk Universal Forwarders.
  • Manage Splunk indexers, search heads, deployment servers, cluster masters, and heavy forwarders.
  • Oversee Splunk architecture for performance, scalability, and high availability.
  • Apply patches, upgrades, and version migrations while ensuring platform stability.
  • Data Onboarding & Parsing
  • Onboard new data sources (syslog, APIs, agents, cloud connectors, Windows/Linux logs).
  • Create and maintain inputs.conf, props.conf, and transforms.conf.
  • Develop field extractions, sourcetypes, timestamps, and line-breaking rules.
  • Ensure proper data normalization and schema alignment (CIM compliance where needed).
  • Search, Dashboards, and Visualization
  • Build and optimize SPL queries for dashboards, alerts, reports, and scheduled searches.
  • Develop enterprise-grade dashboards and visualizations for IT operations, security, and business teams.
  • Tune saved searches for performance and resource efficiency.
  • Monitoring, Alerting & Incident Support
  • Create operational and security alerts aligned with business/service requirements.
  • Monitor ingestion volumes, license usage, disk utilization, and system health.
  • Troubleshoot ingestion delays, search performance issues, missing data, and forwarder connectivity.
  • Support incident management teams by providing log insights and analysis.
  • Security & Compliance
  • Manage authentication/authorization (LDAP/AD, SAML, RBAC).
  • Implement access controls, user roles, and knowledge object permissions.
  • Ensure compliance with audit requirements and log retention policies.
  • Maintain data integrity and support security teams in SIEM workflows (if correlated with ES).
  • Performance Tuning & Optimization
  • Optimize index configurations, search head performance, and data retention strategies.
  • Perform load balancing and clustering health checks.
  • Identify inefficient SPL queries and improve search performance.
  • Automation & DevOps
  • Automate deployment of apps, configurations, and forwarders using deployment server or CI/CD pipelines.
  • Create scripted inputs, modular inputs, and REST-based integrations.
  • Utilize tools such as Ansible, Puppet, or Terraform for Splunk environment automation.
  • Documentation & Governance
  • Document data onboarding, field extractions, dashboards, and operational procedures.
  • Maintain runbooks, SOPs, and architectural diagrams.
  • Work with governance teams to validate logging requirements and retention schedules.
  • Collaboration & Customer Support
  • Partner with application teams, network teams, and security analysts to deliver logging solutions.
  • Consult internal stakeholders on best practices for dashboards, alerts, and log ingestion.
  • Provide training for Splunk usage, SPL query writing, and dashboard development.

Key Responsibilities:

Splunk Administration

  • Install, configure, and maintain Splunk Enterprise and Splunk Cloud environments.
  • Manage Splunk Indexers, Search Heads, Forwarders, Deployment Servers, and Clusters.
  • Develop and maintain dashboards, reports, alerts, and monitoring solutions.
  • Configure log ingestion from servers, applications, network devices, and cloud platforms.
  • Optimize Splunk performance, retention policies, and indexing strategies.
  • Perform troubleshooting and root cause analysis of Splunk platform issues.
  • Support security monitoring, threat detection, and compliance reporting requirements.
  • Design and implement Splunk use cases for operational and security monitoring.
  • Work with infrastructure and security teams to onboard new data sources.

Microsoft 365 Administration

  • Administer Microsoft 365 tenant, including Exchange Online, Teams, SharePoint Online, OneDrive, and Microsoft Purview.
  • Manage user provisioning, licensing, groups, and role assignments through Microsoft Entra ID (Azure AD).
  • Configure and support Microsoft Teams policies, calling, meetings, and collaboration services.
  • Administer Exchange Online mailboxes, mail flow, distribution groups, and hybrid configurations.
  • Manage SharePoint Online sites, permissions, and document management solutions.
  • Monitor service health and proactively address performance or availability issues.
  • Support Microsoft Defender and security compliance initiatives.
  • Implement data retention, DLP, eDiscovery, and governance policies.
  • Coordinate tenant migrations, upgrades, and adoption initiatives.

Security & Compliance

  • Ensure adherence to security standards and compliance requirements.
  • Support identity and access management using Entra ID and Conditional Access.
  • Configure MFA, SSO, and security policies for Microsoft 365 services.
  • Monitor and investigate security alerts from Splunk and Microsoft Security tools.
  • Participate in security audits and remediation activities.

Operations & Support

  • Support Incident, Problem, Change, and Request Management processes.
  • Troubleshoot complex infrastructure and application issues.
  • Create and maintain operational documentation and knowledge articles.
  • Participate in on-call and after-hours support activities as required.
  • Collaborate with cross-functional teams to ensure service availability and customer satisfaction.

Required Qualifications:

  • Experience 5-8 Years

Preferred Qualifications & Skills:

  • Splunk
  • Splunk Enterprise
  • Splunk Cloud
  • Splunk Enterprise Security (ES)
  • Splunk ITSI (preferred)
  • Universal Forwarders
  • Search Processing Language (SPL)
  • Dashboard Development
  • Log Management & Monitoring
  • Data Onboarding & Parsing
  • Alerting & Reporting
  • Microsoft 365
  • Exchange Online
  • Microsoft Teams
  • SharePoint Online
  • OneDrive for Business
  • Microsoft Entra ID (Azure AD)
  • Microsoft Defender
  • Microsoft Purview
  • Intune (preferred)
  • Power Platform (preferred)
  • Identity & Security
  • SSO
  • MFA
  • Conditional Access
  • RBAC
  • Zero Trust Security
  • Identity Governance
  • Operating Systems & Scripting
  • Windows Server Administration
  • Linux Administration
  • PowerShell
  • Basic Python or scripting knowledge
  • ITSM & Monitoring
  • ServiceNow
  • ITIL Processes
  • Monitoring & Alerting Platforms


Compensation:

We provide a competitive pay and benefits package. This position is offering a salary range of $95,000-$105,000 Belcan considers several factors when extending an offer, including but not limited to education, experience, geographic location, and discipline. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.

www.belcan.com

Belcan is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.


#INDBGS