Question
5-10

Splunk Engineer

2/2/2026

The Splunk Architect is responsible for designing, implementing, optimizing, and sustaining enterprise logging, monitoring, and security analytics solutions. This includes maintaining Splunk environments to meet availability, performance, compliance, and audit requirements.

Working Hours

40 hours/week

Company Size

51-200 employees

Language

English

Visa Sponsorship

No

About The Company
Fuse Engineering specializes in IT systems engineering and integration. Our core competencies include cyber security, network engineering, server and desktop virtualization, data storage and data protection systems, and UNIX/Linux and Windows system engineering. We have extensive experience working with the Federal Government, primarily in the Intelligence Community.
About the Role

Description

 

The Splunk Engineer is responsible for the design, implementation, optimization, and sustainment of enterprise logging, monitoring, and security analytics solutions. This role ensures Splunk environments meet availability, performance, compliance, and audit requirements .


Key Responsibilities

  • Architect, deploy, and maintain enterprise Splunk environments, including indexers, search heads, forwarders, and multi-region architectures.
     
  • Design, develop, and sustain custom Splunk dashboards and analytics supporting:
     
    • Security events, audit data, and user activity monitoring (UAM)
       
    • STE/STN compliance, vulnerability and compliance scans
       
    • Network/system observable events by SSP
       
    • Containerized application events by namespace
       
    • Mission metrics, outage tracking, and system/network utilization
       
  • Ensure Splunk dashboards and logging infrastructure maintain =93% operational availability monthly.
     
  • Develop and maintain dashboards for authentication events, privileged access, account management, role escalation, and container security events.
     
  • Integrate data from NetFlow/sFlow, Syslog, Cribl, Nagios, HP NNMi, HPNA, vulnerability scanners, and compliance tools.
     
  • Perform Splunk scaling, performance tuning, data onboarding, and index management.
     
  • Maintain log retention policies ensuring:
     
    • 30 days online searchable logs
       
    • 5 years, 11 months offline retention with restore capability
       
  • Provide Tier-4 support, including vendor escalation and coordination with Splunk engineering.
     
  • Advise architects and security accreditors on Splunk security configurations and audit capabilities.
     
  • Develop automation, parsing, and enrichment logic to reduce false positives and enhance alert fidelity.

Requirements

TS/SCI w/ Polygraph Clearance Required


 

Required Skills

  • Splunk Enterprise architecture and administration
     
  • Security logging, SIEM design, and compliance reporting
     
  • Linux systems administration
     
  • Data onboarding (Syslog, NetFlow, API ingestion)
     
  • Scripting (Python, Bash, SPL)
     


Key Skills
Splunk Enterprise ArchitectureSecurity LoggingSIEM DesignCompliance ReportingLinux Systems AdministrationData OnboardingScriptingPythonBashSPL
Categories
TechnologyData & AnalyticsSoftwareSecurity & Safety
Apply Now

Please let Fuse Engineering LLC know you found this job on InterviewPal. This helps us grow!

Apply Now
Prepare for Your Interview

We scan and aggregate real interview questions reported by candidates across thousands of companies. This role already has a tailored question set waiting for you.

Elevate your application

Generate a resume, cover letter, or prepare with our AI mock interviewer tailored to this job's requirements.