This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a skilled and proactive Splunk Engineering Manager to join our SRE and Observability CoE team. This role will be responsible for the implementation, optimization, and maintenance of Splunk platforms across enterprise and cloud-native environments.
Job Responsibility:
Install, configure, and maintain Splunk Enterprise or Splunk Cloud environments
Manage indexers, forwarders, deployment servers, and heavy forwarders
Architect and manage data ingestion pipelines from varied sources (syslogs, apps, databases, cloud services)
Design and implement SPL queries, alerts, dashboards, and scheduled reports
Develop reusable visualization templates and KPIs for operational teams
Customize dashboards for Infrastructure, Security, and Application Observability
Integrate and configure Splunk Observability Cloud components: Infrastructure Monitoring (SignalFx), APM and Real User Monitoring (RUM), Log Observer / Explorer
Develop detectors, charts, and alert rules for cloud-native workloads (Kubernetes, AWS, GCP, Azure)
Integrate Splunk with DevOps tools (CI/CD, Terraform, Jenkins, Ansible) for automated telemetry enablement
Support custom source integration using Python, REST APIs, or OpenTelemetry
Work with SRE, NOC, and application teams to perform correlated triaging using logs, metrics, and traces
Enable root cause analysis and performance insights from Splunk data
Implement data governance, retention, and masking policies
Ensure platform meets security and compliance requirements (SOC2, HIPAA, etc.)
Document standard operating procedures (SOPs), onboarding guides, and troubleshooting runbooks
Requirements:
Deep hands-on experience in Splunk Core (Enterprise/Cloud)
Deep hands-on experience in SPL (Search Processing Language)
Experience in Splunk Observability Suite (SignalFx, APM, RUM, Log Observer) is optional