1

Splunk Power User Jobs in Utah (NOW HIRING)

Splunk Power User information

See Utah salary details

$26.4K

$106.5K

$144.3K

How much do splunk power user jobs pay per year?

As of Sep 2, 2026, the average yearly pay for splunk power user in Utah is $106,514.00, according to ZipRecruiter salary data. Most workers in this role earn between $90,100.00 and $121,500.00 per year, depending on experience, location, and employer.

What is a Splunk Power User?

Splunk Power Users are individuals who have advanced knowledge and skills in using Splunk for searching, analyzing, and visualizing machine data. They are proficient in creating complex searches, dashboards, alerts, and reports, and often help organizations derive insights from large volumes of data. Power Users typically have access to more features than standard users, such as creating knowledge objects and managing data models, but less access than Splunk administrators. They play a crucial role in maximizing the value of Splunk within an organization by building efficient queries and sharing actionable insights with teams.

What are the key skills and qualifications needed to thrive as a Splunk Power User, and why are they important?

To thrive as a Splunk Power User, you need a solid understanding of data analysis, search processing language (SPL), and system monitoring, typically supported by experience with IT operations or cybersecurity. Familiarity with the Splunk platform, dashboards, reports, and ideally a Splunk Power User certification are important technical assets. Strong problem-solving, attention to detail, and effective communication skills help users interpret data insights and collaborate with technical teams. These skills and qualities enable efficient use of Splunk for identifying issues, optimizing performance, and supporting organizational security and compliance.

How does a Splunk Power User typically collaborate with IT and security teams within an organization?

A Splunk Power User frequently acts as a bridge between raw data and actionable insights for both IT and security teams. They work closely with team members to create meaningful dashboards, alerts, and reports tailored to each department's needs. This role often involves translating technical requirements into Splunk searches and visualizations, facilitating faster troubleshooting and incident response. Regular collaboration ensures that data sources are properly onboarded and that the organization leverages Splunk's full potential for monitoring, compliance, and security.

What is the difference between Splunk Power User vs Splunk Administrator?

AspectSplunk Power UserSplunk Administrator
CredentialsBasic Splunk certifications, familiarity with Splunk queriesAdvanced certifications, deeper knowledge of Splunk architecture
Work EnvironmentEnd-users, analysts, and reporting rolesSystem management, deployment, and maintenance
Industry UsageData analysis, troubleshooting, and reportingSystem setup, configuration, and health monitoring

Splunk Power Users focus on analyzing data and creating reports using Splunk, while Splunk Administrators handle system setup, configuration, and maintenance. Both roles require familiarity with Splunk but differ in technical depth and responsibilities.

What are popular job titles related to Splunk Power User jobs in Utah?

For Splunk Power User jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Splunk Power User jobs in Utah look for?

The top searched job categories for Splunk Power User jobs in Utah are:

What cities in Utah are hiring for Splunk Power User jobs?

Cities in Utah with the most Splunk Power User job openings:

Defensive Cyber Operations (DCO) Analyst

Dark Wolf Solutions

Ogden, UT

$90K - $145K/yr

Full-time, Contractor

Posted 25 days ago


Job description

Dark Wolf Solutions is looking for a Defensive Cyber Operations Analyst who will perform continuous system monitoring to identify malicious cyber-attacks while supporting the containment and remediation of IT threats. This role will function as an operator responsible for hands-on incident response, correlation, and threat detection both on-premise using ELK and across AWS GovCloud environments using Splunk Enterprise. Additionally, this position will leverage Artificial Intelligence (AI) and Machine Learning capabilities to enhance threat detection, streamline incident analysis, and accelerate response actions across monitored networks and applications. This role will be fully on-site at Hill AFB in Ogden, Utah. 

Key Responsibilities:

  • Active monitoring, detection, and analysis across on-prem (ELK) and cloud-hosted AWS GovCloud (Splunk Enterprise) environments. 
  • Utilize AI-assisted analysis, automation, and correlation of data from various log sources to triage security events, detect anomalies, and reduce response times for complex threats.
  • Vulnerability Management actions to include providing recommendations and implement mitigations. 
  • Conduct intrusion analysis and correlation of unauthorized activities; provide and implement recommendations to improve detection and customer mitigation processes. 
  • Participate in the Root Cause Analysis process and documentation capturing efforts taken to mitigate unauthorized actions.
  • Participate in the development of DCO tactics, techniques, and procedures (TTPs) and supporting documentation.
  • Identify security discrepancies and report and respond to security incidents. 
  • Provide research and analysis in support of expanding programs and areas of responsibility. 
  • Draft documentation for briefings, reports, and informational analyses. 
  • Participate in customer exercises (after duty hours may be required). 
  • Adhere to defined policies, master plans and schedules.
  • Complete all initial and annual training requirements and disclosures as outlined by BSTG. 
  • Perform all other duties as required, consistent with the goals, objectives, and responsibilities of the department. 

Required Qualifications:

  • 4+ years of relevant cybersecurity experience, including direct SOC / vSOC / CSSP incident response experience.
  • 2+ years of hands-on experience using Splunk Enterprise and ELK Stack (Elasticsearch, Logstash, Kibana) for event correlation and threat detection.
  • Direct experience monitoring, ingesting, and analyzing security telemetry within AWS GovCloud environments (e.g., CloudTrail, VPC Flow Logs, AWS GuardDuty).
  • Hands-on experience utilizing GitLab (e.g., source control, CI/CD pipelines, issue tracking, or DevSecOps workflows).
  • 2+ years of experience with employment of DoD cybersecurity requirements, policies, and procedures to include assessment and authorization activities.
  • Department of Defense Directive (DoDD) 8140 / 8570 IAT CSSP Certification must be obtained prior to hire (CEH, Security+, GCIH, CySA+ or Equivalent). 
  • Bachelor's degree in Computer Science, Information Technology, or a related field. 
  • US Citizenship and an active Top Secret/SCI security clearance required. 

Desired Qualifications:

  • Experience with AI/ML security tools (e.g., generative AI for query generation, automated threat intelligence, or AI-driven behavioral analytics).
  • AWS Certified Security – Specialty certification.
  • Splunk Core Certified Power User / Admin or Elastic Certified Analyst certifications.
  • Experience writing search queries using SPL (Splunk Processing Language) and KQL/Lucene (Kibana Query Language).
  • Experience with SentinelOne (or similar EDR platforms) for endpoint detection, threat hunting, and automated remediation.
  • Familiarity with Infrastructure-as-Code (IaC) tools such as Terraform or Ansible within a DevSecOps environment.
  • Experience performing cybersecurity activities in support of software and system requirements, design, development, testing, and sustainment. 
  • Experience with HBSS, ACAS, SCAP Compliance Checker (SCC), DISA STIGs. 
  • Working knowledge of NIST 800-53 Security and Privacy Controls. 
  • Experience with various operation systems such as RHEL and Windows. 
  • Experience in performing post-incident computer forensics without destruction of critical data. 
  • Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff. 

The estimated salary range for this role is $90,000.00 - $145,000.00, commensurate on experience and technical skillset. 

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.

In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.

We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.