Splunk Engineer, Mid

Key Role:

Participate on consulting engagements focused on the assessment, design, and implementation of enterprise-scale Splunk solutions by building, operating, and developing for or maintaining a Splunk log management infrastructure. Manage Splunk and an equivalent hardware infrastructure and oversee production support. Provide architecture-level design to support and operate Splunk using Security Information and Event Management (SIEM) or Security Event Management (SEM) best practices and Splunk enterprise security. Design Splunk systems to meet growth while maintaining the balance between performance, stability, and agility. Manage customer expectations, onboard data into Splunk, support projects in multi-site or clustered Splunk installations, and assist with the development of advanced reports to meet the requirements of key stakeholders. Conduct research in areas driven by customer use cases, architect and support systems used to configure and deploy enterprise SIEM log management solutions and develop automation for security tools management. Assist with the automation, deployment, integration, and testing of enterprise systems and services and create and optimize Big Data correlations as a Splunk search language (SPL) expert. This position is open to remote delivery from any location in the U.S., to include the District of Columbia.

Basic Qualifications:

  • 3+ years of experience in IT infrastructure, networking, architecture, administration, or security
  • 2+ years of experience as a Splunk administrator or architect on a large enterprise level
  • Experience with customer interaction and onboarding, configuration, and optimization in Splunk
  • Experience with using scripting languages to automate tasks and manipulate data
  • Experience with working in a large enterprise environment
  • Knowledge of enterprise logging, including application, OS, and security technology logging
  • Ability to demonstrate SPL expertise
  • Ability to multitask and solve complex technical problems
  • HS diploma or GED

Additional Qualifications:

  • Experience with working in a commercial consulting or professional services environment preferred
  • Experience with infrastructure management and support and system administration in Windows and UNIX environments
  • Experience with enterprise-scale operations and maintenance environments
  • Experience with Linux shell scripting, Python, and Regex
  • Knowledge of networking protocols
  • Bachelor's degree in Computer Science or Information Technology
  • Splunk Administrator Certification
  • CISSP, CEH, or SANS Certification


Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.

The proposed salary range for this position in Colorado is 90,000 to 110,000. Final salary will be determined based on various factors. 

At BoozAllen, we celebrate your contributions, provide you with opportunities and choice, and support your total well-being. Our comprehensive benefit offerings include healthcare, retirement plan, insurance programs, commuter program, employee assistance program, paid and unpaid leave programs, education assistance, and childcare benefits.

We’re an equal employment opportunity/affirmative action employer that empowers our people to fearlessly drive change – no matter their race, color, ethnicity, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, ancestry, age, marital status, sexual orientation, gender identity and expression, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, local, or international law.

Not ready to apply? Join our talent community and sign up for job alerts.