Senior Splunk & Observability Engineer

System One Holdings, LLC

$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of hands-on Splunk Enterprise administration in large production environments.
  • Advanced SPL query development and performance optimization skills.
  • Strong AWS experience, notably with Amazon EC2 and CloudWatch.
  • Proficient in OpenTelemetry agent and collector package management.
  • Working knowledge of Python for automation tasks.

Responsibilities

  • Administer and support Splunk Enterprise in AWS environments.
  • Deploy and troubleshoot Splunk components on Amazon EC2.
  • Manage the entire Splunk data lifecycle from ingestion to recovery.
  • Develop complex SPL queries and troubleshoot performance issues.
  • Build enterprise dashboards for monitoring and incident response.
  • Integrate Splunk with AWS and OpenTelemetry for enhanced observability.
  • Lead technical troubleshooting calls and coordinate incident resolutions.

Benefits

  • Opportunity for hands-on work in a complex AWS production environment.
  • Engage with a variety of cutting-edge technologies and tools.
  • Contribute to the development of enterprise-scale observability platforms.
  • Participate in an on-call rotation for production support.
Full Job Description
Job Title: Senior Splunk & Observability Engineer
Job Type: Permanent Full Time


Position Description

Seeking an experienced Senior Splunk & Observability Engineer to support enterprise scale observability platforms within a complex, AWS based production environment. This is a senior hands on role combining advanced Splunk administration and engineering, AWS production support, observability, and automation.

The engineer will manage and support Splunk Enterprise running on AWS, working across the full data lifecycle from source onboarding and ingestion through indexing, search, dashboards, alerts, retention, and recovery. Responsibilities include developing and optimizing SPL queries, troubleshooting ingestion and performance issues, improving platform stability, supporting upgrades and vulnerability remediation, and restoring or replaying data following service interruptions.

The role will also work extensively with AWS, Amazon CloudWatch, OpenTelemetry, and Python based automation to improve enterprise monitoring and resiliency. The engineer will build and maintain OpenTelemetry agents and collectors, support observability integrations across technology stacks, and help automate platform operations and vulnerability remediation.

This position is required in one of the following locations: Lafayette, LA, Knoxville, TN, Columbia, SC, Birmingham, AL

Your future duties and responsibilities

. Administer, engineer, upgrade, and support Splunk Enterprise in AWS.

. Deploy, configure, and troubleshoot Splunk components hosted on Amazon EC2.

. Manage the end to end Splunk data lifecycle, including ingestion, indexing, search, dashboards, alerts, retention, and recovery.

. Develop and optimize complex SPL queries and troubleshoot query performance issues.

. Build and maintain enterprise dashboards for production monitoring, resiliency, incident response, and outage triage.

. Troubleshoot ingestion failures, problematic indexes, missing or delayed data, unexpected data volume growth, and platform availability issues.

. Restore data flow and replay data following ingestion or platform interruptions.

. Optimize data ingestion and retention to reduce noise, storage consumption, and operating costs.

. Integrate Splunk, Amazon CloudWatch, and OpenTelemetry for logs, metrics, dashboards, and alerts.

. Develop Python based automation for observability and platform operations.

. Build and maintain OpenTelemetry agent and collector packages across multiple technology platforms.

. Support Splunk upgrades, patching, configuration changes, plugins, and vulnerability remediation.

. Use GitLab, GitHub, Terraform Enterprise, JSON, and CI/CD tooling to support infrastructure, configuration, automation, and package deployments.

. Lead technical troubleshooting calls and coordinate incident investigation and remediation across multiple teams.

. Participate in an on call rotation and provide after hours support when required for production incidents, upgrades, and planned changes.

Required qualifications to be successful in this role

. 5+ years of hands on Splunk Enterprise administration and engineering experience in large production environments.

. Strong understanding of the Splunk ecosystem, including data ingestion, forwarders, indexers, search heads, indexes, dashboards, alerts, and recovery.

. Advanced SPL query development and performance optimization skills.

. Hands on experience deploying, configuring, upgrading, troubleshooting, and supporting Splunk on AWS.

. Strong AWS production experience, particularly with Amazon EC2, Application Load Balancer, and Amazon CloudWatch.

. Experience building complex Splunk dashboards for production monitoring, resiliency, incident triage, and operational use cases.

. Strong understanding of OpenTelemetry, including agents, collectors, logs, metrics, instrumentation, and Splunk integration.

. Experience building or maintaining OpenTelemetry agent and collector packages.

. Working knowledge of Python for automation and operational tooling.

. Experience with GitLab, Terraform Enterprise, CI/CD, GitHub, and JSON.

. Strong production troubleshooting skills, including ingestion failures, data volume issues, platform outages, performance problems, and data recovery.

. Experience with platform upgrades, patching, vulnerability remediation, and controlled production changes.

. Ability to lead technical troubleshooting calls, communicate findings clearly, and coordinate effectively across cloud, application, security, database, and production support teams.

Educational Requirements:

?Bachelor's degree in Computer Science, Information Systems, or a related field.??

Ref: #404-IT Pittsburgh

Similar Jobs

More Jobs at System One Holdings, LLC

More Information Technology Jobs

Find similar Senior Splunk & Observability Engineer jobs: