1

Splunk Sme Jobs (NOW HIRING)

Splunk SOAR & Splunk Engineer/ SME Location: Baltimore, MD Key Responsibilities * Design, develop, and maintain automated playbooks using Splunk SOAR (Phantom) to streamline SOC workflows.

With our core focus in emerging technologies, we provide global technology workforce solutions in USA, Canada, Mexico, Brazil, UK & Australia JD:- Splunk SME should be able to lead and mentor the ...

With our core focus in emerging technologies, we provide global technology workforce solutions in USA, Canada, Mexico, Brazil, UK & Australia JD:- Splunk SME should be able to lead and mentor the ...

Splunk ITSI Lead SME Location: New York, NY Job Type: Contract Role Overview The Splunk ITSI Lead SME will be responsible for designing, configuring, and governing IT Service Intelligence (ITSI) to ...

The Splunk Content Developer SME will install and maintain Splunk infrastructure, gather requirements from customers, onboard data, and assist end users with searches, dashboards, reports, and ...

The Splunk Content Developer SME will install and maintain Splunk infrastructure, gatherrequirements from customers, onboard data, and assist end users with searches, dashboards, reports, and ...

Leverage SME expertise across technical sales, marketing, product management, engineering, and ... Familiarity with Splunk or comparable SIEM, observability, or security analytics platforms is a ...

OR ยท On-site

Leverage SME expertise across technical sales, marketing, product management, engineering, and ... Familiarity with Splunk or comparable SIEM, observability, or security analytics platforms is a ...

Senior Splunk Engineer

Arlington, VA ยท On-site

$120.20K - $165.10K/yr

The Splunk Engineer SME will install and maintain Splunk infrastructure, gather requirements from customers, onboard data, and assist end users with searches, dashboards, reports, and knowledge ...

next page

Showing results 1-20

Splunk Sme information

See salary details

$29K

$117K

$158.5K

How much do splunk sme jobs pay per year?

As of May 30, 2026, the average yearly pay for splunk sme in the United States is $117,001.00, according to ZipRecruiter salary data. Most workers in this role earn between $99,000.00 and $133,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Splunk SME, and why are they important?

To thrive as a Splunk SME, you need deep expertise in Splunk architecture, log analysis, and security information and event management (SIEM), typically supported by a degree in IT or related fields and relevant Splunk certifications. Proficiency with Splunk Enterprise, Splunk Apps, scripting languages (like Python or Shell), and experience integrating Splunk with other security tools is essential. Strong analytical thinking, problem-solving abilities, and clear communication skills help in translating technical findings into actionable insights for diverse stakeholders. These skills and qualities are crucial for ensuring robust system monitoring, incident detection, and effective data-driven decision-making within an organization.

What are some common challenges Splunk SMEs face when implementing log management solutions across large organizations?

Splunk SMEs often encounter challenges such as integrating data from diverse sources, ensuring data normalization, and maintaining performance as log volume increases. Coordinating with multiple teams to establish consistent data standards, handling sensitive data securely, and optimizing search queries for efficiency are also common hurdles. Effective communication and collaboration with IT, security, and application teams are essential to address these challenges and deliver scalable, reliable Splunk solutions.

What is a Splunk SME?

A Splunk SME (Subject Matter Expert) is a professional with deep expertise in using and managing Splunk, a powerful platform for searching, monitoring, and analyzing machine-generated big data. Splunk SMEs design and implement Splunk solutions, create dashboards and reports, and help organizations gain insights from their data. They also provide guidance on best practices, perform troubleshooting, and often train other users on how to use Splunk effectively. Their role is essential for organizations looking to leverage Splunk for IT operations, security, and business intelligence.

What is the difference between Splunk Sme vs Splunk Administrator?

AspectSplunk SmeSplunk Administrator
CredentialsSplunk certifications, technical expertiseSplunk certifications, system administration skills
Work EnvironmentSecurity, IT operations, data analysis teamsIT operations, system management teams
Employer & IndustryTech, finance, healthcare, security sectorsIT departments across various industries
Search & Comparison IntentUnderstanding role scope, responsibilities, and skillsClarifying job functions, requirements, and career path

The Splunk Sme focuses on providing expert support, troubleshooting, and strategic guidance for Splunk deployments, often working closely with security and data teams. The Splunk Administrator manages daily system operations, configurations, and maintenance of Splunk environments. While both roles require Splunk certifications, the Sme emphasizes expertise and consulting, whereas the Administrator concentrates on system management and stability.

More about Splunk Sme jobs
What job categories do people searching Splunk Sme jobs look for? The top searched job categories for Splunk Sme jobs are:
Infographic showing various Splunk Sme job openings in the United States as of May 2026, with employment types broken down into 69% Full Time, 4% Part Time, and 27% Contract. Highlights an 82% In-person, 6% Hybrid, and 12% Remote job distribution, with an average salary of $117,001 per year, or $56.3 per hour.

Full-time

Posted 17 days ago


Job description

Overview:
Role: Splunk SOAR & Splunk Engineer/ SME
Location: Baltimore, MD
Key Responsibilities
  • Design, develop, and maintain automated playbooks using Splunk SOAR (Phantom) to streamline SOC workflows.
  • Integrate SOAR with security tools, IT systems, ticketing platforms, and threat intelligence feeds.
  • Administer and optimize Splunk Enterprise in distributed, high-ingest environments.
  • Implement Splunk best practices for indexing, data models, SPL optimization, and knowledge objects.
  • Manage data ingestion and routing using Cribl, and leverage Redis for caching and enrichment.
  • Develop SQL-based integrations for data correlation, enrichment, and reporting.
  • Collaborate with SOC and IT teams to align automation with detection and response strategies.
  • Monitor Splunk platform health, scalability, and redundancy.

Essential Skills
  • 5+ years of hands-on experience with Splunk Enterprise, including multi-TB daily ingest environments.
  • 2+ years of Splunk SOAR (Phantom) playbook design and development experience.
  • Advanced SPL knowledge, search optimization, and object management.
  • Strong experience with Cribl, Redis, and SQL for data ingestion, enrichment, and correlation.
  • Proficiency in Python (JSON/XML parsing, API integrations, regex); familiarity with PowerShell and Bash.
  • Experience integrating REST APIs with OAuth and key-based authentication.
  • Solid understanding of SOC operations, cybersecurity fundamentals, and MITRE ATT&CK framework.
  • Strong knowledge of Linux/Unix administration, networking concepts, and authentication systems.
  • Experience with Git/version control systems.
  • Splunk Certified Admin and Splunk SOAR Developer certifications.

Nice-to-Have Skills
  • Threat intelligence integrations (TAXII, MISP, Recorded Future).
  • Experience with Splunk upgrades and platform migrations.
  • Knowledge of Splunk MLTK, UBA, ITSI.
  • Understanding of data lifecycle management (compliance, retention, normalization).
  • Familiarity with Docker, Kubernetes, and DevOps practices.
  • Knowledge of Zero Trust security architecture.

Experience Required
  • 10+ years overall IT/Security experience.