1

Splunk Engineer Jobs in Towson, MD (NOW HIRING)

Sr. Engineer

Owings Mills, MD · On-site

$99K - $136K/yr

... Splunk, Grafana, AWS monitoring tools, and mainframe job Scheduler. • Troubleshoot and resolve application failures, batch job issues, Informatica ETL workflows and data processing errors across ...

Software Integration Engineer

Jessup, MD · On-site

$107K - $144K/yr

Create/support monitoring using tools like Nagios, Thruk, Prometheus, Splunk, and Grafana ... Partner with engineering and operations teams to improve reliability and efficiency Required ...

Firewall Engineer

Linthicum, MD · On-site

$47.25 - $63.25/hr

Firewall Engineer Location: Linthicum, MD Hybrid The interview is in-person, so kindly share ... Monitor firewall activity logs and integrate log forwarding with Splunk SIEM for real-time threat ...

Sr. DevOps Engineer

Baltimore, MD · On-site

$129K - $165K/yr

... Engineer with our esteemed client. If you are interested then please share your updated resume at ... Familiarity with ITIL or DevSecOps practices and using tools like JIRA, ServiceNow, or Splunk for ...

DevOps Engineer

Fort George G Meade, MD · On-site

$58.75 - $80.50/hr

... Engineer-II to build and maintain infrastructure, deploy applications, and automate operational ... Working knowledge of monitoring tools like Splunk or Datadog. Additional Requirements: * Applicants ...

Sr. Network Engineer

Baltimore, MD

$103K - $141K/yr

Prior experience with Cis logs, IronPort Web filtering, and Splunk is a plus Sr.- Network Optimization Engineer Need a Sr level Engineer (5-7 years) Trouble shooting and optimization End to end CISCO ...

Showing results 41-60

Splunk Engineer information

What is a Splunk Engineer?

A Splunk Engineer is an IT professional who specializes in deploying, configuring, and managing Splunk software for data analysis and monitoring. They are responsible for setting up data ingestion pipelines, creating dashboards, and developing alerts to help organizations monitor their systems and security. Splunk Engineers often work with large datasets to extract meaningful insights, support troubleshooting, and ensure system health. Their expertise is essential for leveraging Splunk’s capabilities in IT operations, security, and compliance.

What are the key skills and qualifications needed to thrive as a Splunk Engineer?

To thrive as a Splunk Engineer, you need expertise in data analysis, log management, and scripting languages like Python or Bash, often backed by a degree in computer science or related field. Familiarity with Splunk Enterprise, Splunk Cloud, and certifications such as Splunk Certified Power User or Splunk Certified Admin are typically required. Strong problem-solving abilities, attention to detail, and effective communication help you stand out in this position. These skills are crucial for efficiently managing complex data environments, delivering actionable insights, and supporting organizational security and operations.

What are some common challenges Splunk Engineers face when managing large-scale log data environments?

Splunk Engineers working with large-scale log data environments often encounter challenges related to data ingestion bottlenecks, maintaining indexer performance, and ensuring efficient search query execution. Balancing storage management with retention policies and optimizing dashboards for real-time analysis can also be complex. Successful engineers proactively collaborate with IT, security, and development teams to fine-tune data sources, streamline parsing, and implement best practices for scalability, ensuring that Splunk delivers timely and actionable insights.

What is the difference between Splunk Engineer vs Data Analyst?

AspectSplunk EngineerData Analyst
Required CredentialsSplunk certifications, technical degreesStatistics, data analysis certifications, degrees
Work EnvironmentIT/security teams, tech-focused companiesBusiness, marketing, finance departments
Employer & Industry UsageTech, cybersecurity, enterprise ITFinance, healthcare, retail, marketing

Splunk Engineers focus on deploying, configuring, and maintaining Splunk platforms for data monitoring and security. Data Analysts interpret data to generate insights for business decisions. While both roles work with data, Splunk Engineers specialize in technical implementation of Splunk tools, whereas Data Analysts focus on analyzing data to inform strategies.

Is Splunk a good place to work?

Splunk engineers typically work in a technology-focused environment that emphasizes data analysis, security, and system monitoring. The company offers opportunities for skill development with tools like Splunk Enterprise and often provides a collaborative workplace culture. Job satisfaction can vary based on individual roles and team dynamics.

Is Splunk in high demand?

Splunk engineers are in high demand due to the increasing need for data analysis, security monitoring, and IT operations management. Organizations seek professionals skilled in Splunk, often requiring knowledge of scripting, dashboards, and certifications, leading to strong job growth in this field.

What is a Splunk engineer's salary?

A Splunk engineer's salary typically ranges from $80,000 to $130,000 annually, depending on experience, location, and certifications. Senior roles or those with specialized skills in data analysis and security can earn higher compensation, often exceeding $150,000.

What job categories do people searching Splunk Engineer jobs in Towson, MD look for?

The top searched job categories for Splunk Engineer jobs in Towson, MD are:

What cities near Towson, MD are hiring for Splunk Engineer jobs?

Cities near Towson, MD with the most Splunk Engineer job openings:

Infographic showing various Splunk Engineer job openings in Towson, MD as of August 2026, with employment types broken down into 88% Full Time, 9% Part Time, and 3% Contract. Highlights an 85% Physical, 6% Hybrid, and 9% Remote job distribution.

SIEM Engineer (5384) (TS/SCI) (Ft. Meade, MD)

SMX

Fort George G Meade, MD • On-site

Full-time

Re-posted 21 days ago


Job description

SMX is seeking a Security Information and Event Management (SIEM) Engineer responsible for implementing, configuring, and managing SIEM environments to support the organization's data analytics, security, and operational goals. This role focuses on onboarding new data sources, optimizing search queries, building dashboards and reports, and maintaining the stability of the SIEM infrastructure. The scope of this position includes all Army Intelligence security domains as defined by the Cybersecurity Director, and the Engineer will verify that all solutions and configurations meet the required security standards and compliance requirements. Additionally, the SIEM Engineer is responsible for ensuring ICS 500-27 audit compliance, maintaining the integrity and security of the SIEM system, and collaborating closely with analysts and architects to implement data solutions that provide real-time visibility into critical systems and processes.

This is a full-time onsite position in Ft. Meade, MD.

Essential Duties & Responsibilities

  • SIEM Platform Migration (Splunk to Elastic)

  • Lead the end-to-end migration of the enterprise Security Information and Event Management (SIEM) capability from Splunk to the Elastic Stack (Elasticsearch, Logstash, Kibana), including planning, stakeholder coordination, execution, and post-migration validation to ensure zero degradation in security monitoring and detection coverage.

  • Develop and manage the migration roadmap and program schedule, defining phased cutover milestones, resource requirements, and risk mitigation strategies while ensuring parallel operation of both platforms during transition to maintain continuous threat detection and incident response readiness.

  • Splunk Implementation and Maintenance:
    • Set up and configure Splunk instances, including forwarders, indexers, and search heads.
    • Onboard new data sources into Splunk while ensuring proper parsing, field extraction, and indexing.
    • Manage Splunk licenses, user access controls, and configurations to maintain stability and security. 
  •  Data Analysis and Visualization:
    • Build and optimize dashboards, alerts, and reports for security monitoring, IT operations, and business use cases.
    • Develop and enhance Splunk Search Processing Language (SPL) queries to facilitate advanced analytics.
    • Collaborate with teams to ensure that data sources meet the requirements for analysis and visualization.
  • Troubleshooting and Performance Tuning:
    • Monitor the health of the Splunk system, identify issues, and implement solutions to maintain high availability and performance.
    • Optimize queries, alerts, and settings to lower resource use and improve efficiency.
    • Resolve data ingestion and indexing issues.
  • Service Level Agreement (SLA) Management and Monitoring:
    • Maintain and monitor the Service Level Agreement (SLA) of the Splunk system, ensuring that the system meets the required uptime, performance, and data ingestion targets.
    • Monitor the ingest of data sources, particularly high-value or high-impact systems, and alert stakeholders when these systems stop sending events or experience disruptions.
    • Develop and implement monitoring dashboards and alerts to quickly identify and respond to SLA breaches or data ingest issues.
  •  Disaster Recovery and High Availability:
    • Design and implement disaster recovery and high availability solutions for the Splunk system, ensuring minimal downtime and data loss in the event of a disaster or system failure.
    • Develop and maintain disaster recovery plans, including backup and restore procedures, to ensure business continuity.
    • Configure and manage Splunk clustering, replication, and indexing to ensure high availability and redundancy.
  • Compliance and Security:
    • Maintain RMF (Risk Management Framework) ATO (Authority to Operate) compliance for the Splunk system, ensuring that all security controls and configurations are in place and up-to-date.
    • Ensure STIG (Security Technical Implementation Guide) compliance for the Splunk system, including configuration and vulnerability management.
    • Maintain accurate and up-to-date documentation, including:
    • Data flow diagrams to illustrate data ingestion and processing.
    • Architecture diagrams to depict the Splunk system architecture.
    • System inventories to track hardware and software components.
    • Collaborate with the security team to ensure that the Splunk system meets all relevant security requirements and standards.
  •  SIEM Management:
    • Manage the onboarding process for new systems and log types, including:
    • Maintaining onboarding documents for each system/log type.
    • Developing and maintaining a detailed list of event codes per operating system and application type.
    • Ensure that all data sources are properly configured and sending events to the Splunk system.
    • Collaborate with analysts and architects to develop and implement use cases for security monitoring and incident response.
  •  Collaboration and Support:
    • Collaborate with architects and analysts to create and implement solutions that align with the organization's objectives.
    • Provide technical support and assist end users with Splunk-related issues, ensuring timely resolution and minimal downtime.
  •  Documentation and Continuous Improvement:
    • Document the configurations, workflows, and troubleshooting procedures to enhance team knowledge sharing.
    • Research and suggest enhancements to Splunk infrastructure and analytics capabilities.

Required Skills, Experience & Education

  • Active Top Secret (TS) security clearance with eligibility for SCI and NATO read-on before starting work (and willingness for SAP and CI Poly).
  • Certifications:
    • Splunk Enterprise Certified Architect
    • Security+ (or above)
  • Education
    • Bachelor's degree in computer science, Information Technology, or a similar field OR Minimum of 5 years of experience working with Splunk, including installation, configuration, and management.
  • Technical Skills
    • 2-3 years of experience an Elastic SIEM environment
    • Proficiency in managing Splunk components including forwarders, indexers, and search heads.
    • Strong understanding of SPL and the capacity to create custom dashboards and reports.
    • Experience in data parsing, field extraction, and indexing.

Desired Skills/Experience

  • Experience transitioning a SIEM environment from Splunk to Elastic
  • Experience supporting Splunk Enterprise Security (ES) or IT Service Intelligence (ITSI).
  • Familiarity with scripting languages (e.g., Python, Bash) for automation.
  • Knowledge of security operations, including SIEM best practices.

Application Deadline: September 7, 2026

#CJPOST

#LI-onsite