Splunk Architect Lead

Agile Defense
United States
Workplace: HybridFull timeFunction: Solutions Engineering & Sales EngineeringEducation: bachelorsSkills: ["Leadership","Collaboration","Communication","Problem-solving"]

Led by a Splunk Architect/Lead, this role designs and optimizes enterprise logging platforms for CSOC operations across on-premises, cloud, and hybrid environments. You will govern SIEM architecture, data ingestion, parsing, normalization, and dashboards while driving modernization, automation, and compliance efforts for federal customer environments.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Agile Defense
Agile Defense
6 months ago

Splunk Architect Lead

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 6 hours agoStatus: Live

Job Summary

Led by a Splunk Architect/Lead, this role designs and optimizes enterprise logging platforms for CSOC operations across on-premises, cloud, and hybrid environments. You will govern SIEM architecture, data ingestion, parsing, normalization, and dashboards while driving modernization, automation, and compliance efforts for federal customer environments.
Location: United States
Workplace: Hybrid
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering

Key Responsibilities

  • •Lead the design, engineering, configuration, and optimization of enterprise logging platforms supporting CSOC operations.
  • •Act as the primary technical authority for SIEM architecture, log ingestion pipelines, parsing, normalization, enrichment, and storage strategies.
  • •Manage onboarding of new data sources across applications, endpoints, networks, cloud environments, and identity systems.
  • •Ensure log health monitoring, cluster health, pipeline resiliency, and integrity validation for continuous reliability.
  • •Drive modernization initiatives, including automation, cloud logging integrations, and data optimization.

Key Requirements

  • •Active Certified Splunk Architect (II)
  • •Bachelor’s degree in computer science, engineering, Cybersecurity, STEM or related field
  • •Experience with bash, python and/or PowerShell scripting languages and automation; strong networking background; strong security background; experience with cloud orchestration tools and a strong understanding of AWS cloud services
  • •Last 5 years of experience serving as a senior Certified Splunk Administrator or Architect in large environment.
  • •Strong understanding of industry best practices and technologies in application supporting a large Federal Government security operations organization
Experience:CybersecurityCloudSplunk
Education:Bachelor's
Skills:LeadershipCollaborationCommunicationProblem-solving
Certifications:Splunk Architect
Tech Stack:SplunkPythonPowerShellBashAWSWindowsLinuxCribl

Eligibility

Security Clearance:Secret

Company Brief

Agile Defense
Provides cybersecurity services including managed detection and response, incident response, vulnerability assessments, and security operations to help organizations detect, respond to, and remediate cyber threats while meeting regulatory and compliance requirements.
Industry: Cybersecurity
Website