1

Splunk Jobs in Washington (NOW HIRING)

The Lead Splunk Architect is responsible for defining, governing, and leading the architecture, implementation, optimization, and operational maturity of the enterprise Splunk platform supporting ...

Administer Splunk Enterprise security. * Develop and deploy complex Splunk searches. * Administer search head clusters, indexer clusters, and Splunk forwarders. * Work with users to troubleshoot ...

Use Splunk as the primary security platform for your work * Propose innovative uses cases for security and compliance * Design and implement dashboards and reports; create rapid prototypes * Keep ...

Splunk Engineer : Familiar with Splunk architectures in addition to RMF and Splunk best practices. Experience with Splunk vendor modules and solutions such as: SOAR, IT Services Infrastructure (ITSI ...

Use Splunk as the primary security platform for your work * Propose innovative uses cases for security and compliance * Design and implement dashboards and reports; create rapid prototypes * Keep ...

... the Splunk platform Job Qualifications: • Experience SPLUNK and ITSI. • Candidate should have SPLUNK Architecture certification. • Knowledge of cloud computing platforms • Scripting and ...

CyberLinx Solutions, LLC is seeking for a Splunk Architect. Candidate must have a Security Clearance(WP). Systems engineers will be requested to participate in the process by which a new software ...

Showing results 41-60

Splunk information

See Washington salary details

$46

$68

$86

How much do splunk jobs pay per hour?

As of Aug 16, 2026, the average hourly pay for splunk in Washington is $68.15, according to ZipRecruiter salary data. Most workers in this role earn between $60.19 and $75.14 per hour, depending on experience, location, and employer.

Is Splunk in high demand?

Splunk professionals are in high demand due to the increasing need for data analysis, security monitoring, and IT operations management. Skills in Splunk, along with certifications and knowledge of cybersecurity, can improve job prospects in various industries. The role often requires familiarity with log management and data visualization tools.

What are the key skills and qualifications needed to thrive in the Splunk position, and why are they important?

To thrive in a Splunk role, you should possess strong analytical skills, experience with data analysis and security monitoring, and a solid understanding of IT infrastructures. Familiarity with the Splunk platform, related modules (such as Enterprise Security or IT Service Intelligence), and certifications like Splunk Core Certified User are highly valued. Problem-solving, attention to detail, and effective communication are key soft skills, especially when collaborating across technical and business teams. These skills are vital for efficiently transforming raw data into actionable insights and supporting organizational security and operational goals.

Is Splunk a good place to work?

Splunk offers roles such as data analysts, security analysts, and software engineers, often requiring skills in data analysis, cybersecurity, and cloud platforms. Employees generally report a collaborative environment with opportunities for professional growth, though experiences can vary by team and location.

What does a Splunk do?

In a Splunk position, your primary responsibilities typically include designing and maintaining Splunk dashboards, creating and optimizing searches, and setting up alerts for various IT operations and security events. You'll often collaborate with network, security, and operations teams to analyze system logs and investigate incidents or anomalies. Regular tasks may also involve onboarding data sources, fine-tuning system performance, and documenting configurations and processes. This role offers the opportunity to develop your technical skills while playing a key part in your organization's cybersecurity and data-driven decision-making.

What is a Splunk?

A Splunk job typically involves monitoring, analyzing, and visualizing machine-generated data using Splunk software. Professionals in this role manage data ingestion, create dashboards, write queries using SPL (Search Processing Language), and optimize system performance. They may also troubleshoot issues, set up alerts, and ensure security compliance. Splunk jobs are common in IT operations, cybersecurity, and data analytics across various industries.

What are jobs in Splunk?

Jobs in Splunk typically involve managing and analyzing large volumes of machine-generated data using the Splunk platform. Roles may include Splunk administrator, developer, or analyst, requiring skills in data querying, scripting, and familiarity with the platform's tools and certifications. These positions often demand problem-solving abilities and knowledge of cybersecurity, IT operations, or data analytics.

What are entry level Splunk positions?

Entry-level Splunk positions typically include roles such as Splunk Analyst, Splunk Administrator, or Junior Security Analyst. These roles often require basic knowledge of Splunk software, scripting skills, and understanding of cybersecurity or IT operations, with some positions offering on-the-job training or requiring relevant certifications like Splunk Core Certified User.

What are the most commonly searched types of Splunk jobs in Washington?

The most popular types of Splunk jobs in Washington are:

What are popular job titles related to Splunk jobs in Washington?

For Splunk jobs in Washington, the most frequently searched job titles are:

What cities in Washington are hiring for Splunk jobs?

Cities in Washington with the most Splunk job openings:

Infographic showing various Splunk job openings in Washington as of August 2026, with employment types broken down into 73% Full Time, and 27% Contract. Highlights an 100% In-person job distribution, with an average salary of $141,756 per year, or $68.2 per hour.

Lead Splunk Architect

CYKOR

Annapolis, MD • On-site

Full-time

Re-posted 8 days ago


Job description

Description:

CyKor is a fast-growing Technology Solutions Provider to both federal and commercial clients. We attribute our continued growth to our core values, our professional team, and the valuable relationships with our clients. Our small and growing team fosters an environment in which each team member is respected, valued, and appreciated for their contributions.


The Lead Splunk Architect is responsible for defining, governing, and leading the architecture, implementation, optimization, and operational maturity of the enterprise Splunk platform supporting cybersecurity operations, threat detection, incident response, compliance, and enterprise observability.


ROLE & RESPONSIBILITIES


Splunk Architecture & Platform Strategy

  • Define and architect enterprise Splunk architecture supporting high availability, scalability, resilience, disaster recovery, and long-term growth
  • Design and oversee distributed Splunk environments including: Indexer Clusters, Search Head Clusters, Deployment Servers, Cluster Managers, Heavy Forwarders, Universal Forwarders, License Management, Splunk Cloud and Hybrid architectures
  • Develop technical roadmaps, modernization strategies, migration plans, and platform lifecycle recommendations
  • Evaluate current platform capabilities and recommend architectural improvements supporting SOC operations and enterprise cybersecurity initiatives

Technical Leadership

  • Serve as the technical lead for all Splunk engineering activities
  • Provide mentorship and technical direction to Splunk Engineers, Security Engineers, Detection Engineers, and SOC Analysts
  • Review architecture, engineering designs, implementation plans, dashboards, searches, integrations, and custom applications
  • Establish engineering standards and best practices across index naming, Sourcetypes, CIM compliance, field extractions, knowledge objects, configuration management, change control, application lifecycle management, role-based access control

Platform Engineering & Operations

  • Architect scalable and resilient Splunk infrastructure supporting enterprise data volumes
  • Lead platform optimization including Search performance, Index performance, Storage management, Retention policies, License utilization, Data lifecycle management, Search concurrency, Data Model Acceleration
  • Guide upgrades, patching, backup, disaster recovery, and high availability planning
  • Lead troubleshooting of complex ingestion, parsing, indexing, search, and performance issues

Data Engineering & Integration

  • Define enterprise data onboarding strategies across security, infrastructure, cloud, identity, endpoint, network, and application data sources
  • Oversee parsing, routing, index design, field extraction, source normalization, CIM implementation, retention policies, data quality
  • Lead integrations with firewalls, IDS/ IPS, EDR, NDR, Identity providers, Cloud platforms, Vulnerability management, Ticketing systems, SIEM and SOAR technologies, Threat Intelligence platforms

Security Operations Enablement

  • Architect Splunk capabilities supporting Threat Detection, Threat Hunting, Incident Response, Security Monitoring, Risk-Based Alerting, Compliance Reporting
  • Guide development of Correlation Searches, Dashboards, Reports, Data Models, Detection Content, Enterprise Security Content
  • Improve detection fidelity while reducing false positives
  • Ensure Splunk capabilities support rapid investigation, evidence collection, event reconstruction, and executive reporting

Splunk SOAR & Automation

  • Architect automation strategies using Splunk SOAR
  • Design and oversee playbooks for Incident enrichment, IOC validation, Threat intelligence lookups, Malware analysis, Case management, Automated containment, Notification workflows
  • Integrate SOAR with enterprise security technologies using Python, REST APIs, and supported applications
  • Establish automation governance and reusable orchestration standards

Governance & Quality Assurance

  • Establish engineering governance for Configuration Management, App Lifecycle, Knowledge Object Management, Detection Content, Source Onboarding, Dashboard Standards
  • Review deployment packages and engineering deliverables prior to production release
  • Ensure engineering activities comply with change management, testing, documentation, rollback, and operational readiness requirements

Stakeholder Engagement

  • Serve as the primary technical advisor for Splunk architecture and platform strategy
  • Communicate technical risks, roadmap priorities, and architectural recommendations to executive leadership and program stakeholders
  • Translate business and mission requirements into scalable technical solutions
  • Coordinate activities with infrastructure, cloud, networking, identity, cybersecurity, and vendor teams

Documentation & Continuous Improvement

  • Develop and maintain Architecture diagrams, Engineering standards, Technical designs, Runbooks, Standard Operating Procedures, Disaster Recovery documentation, Knowledge Base articles, Technical decision records
  • Evaluate emerging Splunk capabilities and recommend improvements to maximize platform value
  • Foster engineering excellence through mentorship, standards, and continuous process improvement


Requirements:
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or related field; equivalent professional experience may be substituted.
  • 8+ years of enterprise Splunk administration and engineering experience
  • 5+ years designing enterprise-scale distributed Splunk environments
  • Experience leading Splunk Enterprise Security implementations
  • Experience with Splunk Cloud and hybrid architectures
  • Experience supporting Security Operations Centers (SOC)
  • Experience leading technical teams and architecture initiatives
  • Experience with enterprise cybersecurity monitoring and incident response
  • Active security clearance strongly preferred (Public Trust or higher)


CERTIFICATIONS:

Required: Splunk Enterprise Certified Architect

Preferred: Splunk Enterprise Security Certified Admin; Splunk Core Certified Consultant; Splunk SOAR Certified Automation Developer; CISSP; GIAC (GCIA, GCIH, or GCED); AWS, Azure, or Google Cloud certifications


LOCATION AND TRAVEL:

  • Remote schedule with availability for some related travel (0%-25%)