Splunk Engineer - Core Consultant Certified/ES Accreditation (R-00041)

2 weeks, 6 days ago
Full-time
Senior
Data Science and Analytics
True Zero Technologies

True Zero Technologies

True Zero Technologies specializes in cybersecurity programs and software solutions, focusing on proactive defense and IT engineering services.

Internet Software & Services
11-50
Founded 2016

Description

  • Maintain and administer multiple clients’ Splunk instances and enterprise Splunk implementations.
  • Support data onboarding activities, including custom parsing rules and Technology Add-On development aligned to Splunk Common Information Model (CIM).
  • Develop custom Splunk content such as scheduled searches, reports, dashboards, and visualizations.
  • Design and implement distributed Splunk environments from the ground up, including Search Heads, Indexers, Heavy Forwarders, and Universal Forwarders.
  • Configure and support advanced Splunk architectures, including Indexer Clustering and Search Head Clustering.
  • Configure indexes, index routing, retention policies, and related Splunk settings.
  • Work across Linux and Windows environments, including storage, SELinux, and file permission configuration.
  • Collaborate closely with multiple customers, manage expectations, and track engagement scope.
  • Contribute to knowledge sharing and team collaboration through workshops, internal resources, and technical support.
  • Help improve operational performance and reduce risk across customer IT environments.

Requirements

  • Splunk Consultant Certification is required.
  • Splunk ES Accreditation is required.
  • Prior Splunk engineering and administration experience is required.
  • Experience with RBA is highly suggested.
  • Experience designing and implementing distributed Splunk installations with all major server roles.
  • Experience with advanced Splunk configuration, including Indexer Clustering and Search Head Clustering.
  • Experience maintaining and administering enterprise Splunk implementations.
  • Experience developing Splunk content such as scheduled searches, reports, dashboards, and visualizations.
  • Experience with data onboarding, custom parsing rules, and Technology Add-On development using Splunk CIM.
  • Experience working in Linux and Windows environments, including storage subsystems, SELinux, file permissions, and familiarity with RedHat, CentOS, and Ubuntu.
  • Excellent written and oral communication skills and the ability to work well with multiple customers and a team.
  • Background supporting federal customers is a plus.

Benefits

  • Competitive salary, paid twice per month.
  • Best-in-class medical coverage with 100% of medical premiums covered by True Zero.
  • Company-wide new business incentive programs.
  • Contribution incentives for white papers, blog posts, internal webinars, and similar activities.
  • 3 weeks of PTO plus 11 paid holidays annually.
  • 401(k) program with 100% company match on the first 4%.
  • Monthly reimbursement for cell phone and home internet costs.
  • Paternity and maternity leave.
  • Investment in training and certifications to expand technical skills.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Staff Threat Research Engineer

Sumo Logic 251-1K Internet Software & Services

Sumo Logic’s Threat Labs is hiring a staff-level threat researcher to turn threat intelligence and original adversary research into high-quality detections for its SIEM platform.

AWS Azure Cybersecurity GCP Machine Learning PowerShell Python SIEM SOC
46 minutes ago

Manager, Engineering (Identity and Access Management)

Bugcrowd 1K-5K Internet Software & Services

Bugcrowd is hiring a Software Engineering Manager to lead its Identity and Access Management team in building secure, scalable authentication, authorization, and identity services across the company’s product ecosystem.

Agile AWS Azure Encryption GCP Go Java JWT Node.js OpenID Connect Ruby SAML Scrum
4 hours, 9 minutes ago

DevSecOps Engineer (TypeScript & Agentic AI)

Arize AI 51-250 IT Services

Arize AI is hiring a remote IT Support Specialist to support Mac-only endpoints, cloud systems, and compliance operations for a distributed team.

Confluence GitHub JIRA TypeScript
10 hours, 45 minutes ago

Senior Cloud Security Engineer (Kubernetes)

Form3 251-1K Diversified Financial Services

Form3 is hiring a defensive security engineer to build and operate security controls for highly available multi-cloud payment systems and advise engineering teams on managing platform risk.

AWS Azure CI/CD CockroachDB Flux GCP Go Helm Kubernetes Linux NATS Penetration Testing SIEM Terraform
11 hours, 19 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers