Jobs · Engineering · Tennessee

Splunk Cloud Platform Engineer

First Horizon Bank · Memphis, TN · 2 days ago
EngineeringFull-time

About the role

We are seeking a hands-on Splunk Cloud Platform Engineer to own the day-to-day maintenance, reliability, security, and continuous improvement of our enterprise logging environment. This role will administer Splunk Cloud and the supporting data collection infrastructure, including universal forwarders, deployment servers, heavy forwarders, integrations, and related logging components.

Responsibilities

  • Administer and maintain the Splunk Cloud environment to support availability, performance, security, and operational stability.
  • Manage the lifecycle of universal forwarders and related collection components, including installation, configuration, upgrades, certificate management, health monitoring, and troubleshooting.
  • Operate and maintain deployment servers, heavy forwarders, HTTP Event Collector endpoints, syslog infrastructure, and other data ingestion paths as applicable.
  • Onboard and maintain log sources across servers, endpoints, network devices, cloud services, security tools, and business applications.
  • Configure and validate indexes, data inputs, source types, parsing, routing, retention, and access controls in accordance with platform standards.
  • Monitor ingestion health, data latency, license or workload consumption, forwarder status, queue conditions, and platform alerts; identify and remediate issues before they affect users.
  • Troubleshoot missing, delayed, duplicated, or malformed data across the end-to-end logging pipeline.
  • Build repeatable CI/CD workflows for testing, reviewing, approving, and deploying Splunk applications and configuration changes.
  • Maintain configuration artifacts, scripts, and documentation in Bitbucket using disciplined Git-based branching, pull-request, and peer-review practices.
  • Use Jira and the broader Atlassian stack to manage platform maintenance, enhancements, defects, technical debt, documentation, and stakeholder requests.
  • Automate routine administration, validation, reporting, and health-check activities using Python, PowerShell, Bash, REST APIs, or comparable tools.
  • Apply secure engineering practices, least-privilege access, change controls, secrets handling, vulnerability remediation, and audit-ready documentation.
  • Coordinate with infrastructure, cloud, application, network, security, and vendor teams to resolve incidents and deliver new integrations.
  • Create and maintain runbooks, architecture diagrams, support procedures, standards, and knowledge articles.
  • Participate in incident response, problem management, maintenance windows, and an on-call rotation as required.

Required Qualifications

  • Bachelor’s degree in computer science, information systems, engineering, cybersecurity, or a related field, or equivalent practical experience.
  • One or more years of experience administering Splunk Enterprise, Splunk Cloud, or a comparable enterprise-scale logging platform.
  • Splunk Core Certified Power User certification.
  • Hands-on experience deploying, configuring, upgrading, and troubleshooting Splunk universal forwarders in Windows and Linux environments.
  • Working knowledge of Splunk configuration files, data inputs, source types, indexes, applications, role-based access control, and distributed collection patterns.
  • Experience diagnosing data ingestion and connectivity issues using logs, command-line tools, and Splunk search.
  • Proficiency with Git-based version control; direct Bitbucket experience is preferred, but experience with GitHub, GitLab, or another Git repository platform is transferable.
  • Experience working with CI/CD pipelines and controlled configuration deployment practices.
  • Experience using Jira and other Atlassian tools, or demonstrated ability to transfer experience from comparable work-management and collaboration platforms.
  • Scripting or automation experience with Python, PowerShell, Bash, or a similar language.
  • Strong understanding of TCP/IP, DNS, TLS, certificates, firewalls, proxies, and common logging protocols such as syslog and HTTP.
  • Strong documentation, analytical, troubleshooting, and cross-functional communication skills.

Preferred Qualifications

  • Experience supporting Splunk Cloud in a regulated, security-focused, or highly available enterprise environment.
  • Experience with Splunk deployment servers, heavy forwarders, HTTP Event Collector, syslog aggregation, cloud data inputs, and third-party add-ons.
  • Experience with infrastructure-as-code, configuration management, containers, or orchestration tools.
  • Knowledge of AWS, Microsoft Azure, or Google Cloud logging and integration patterns.
  • Experience defining service-level indicators, operational dashboards, capacity forecasts, and platform health reporting.
  • Preferred Splunk certifications include:
    • Splunk Cloud Certified Admin
    • Splunk Enterprise Security Certified Admin (Legacy)
    • Splunk Enterprise Certified Admin
    • Splunk Enterprise Certified Architect
    • Splunk Core Certified Consultant
  • Experience with IT service management, change management, incident management, or Agile delivery practices.

Similar jobs

Cloud Platform Engineer

Accenture Federal ServicesTampa, FL· 4 wk ago
Information Technology$123k–$161k/yrapply on boards.greenhouse.io