Position Summary
Wyandotte Technologies is seeking a highly experienced Senior Splunk Engineer / SME to support mission-critical systems for Southwestern Power Administration (SWPA), U.S. Department of Energy. This is a hands-on senior Splunk engineering role focused on enterprise Splunk architecture and administration, advanced SPL, data onboarding, platform health, operational observability, automation, and complex troubleshooting in secure, highly restricted environments, including real-time SCADA operations.
The successful candidate will be the senior technical authority for Splunk: independently engineering and optimizing the platform, establishing technical standards, expanding actionable monitoring, automating repeatable operational work, and improving the reliability, visibility, and supportability of critical systems.
What You'll DoSplunk Engineering & Architecture
· Serve as the senior Splunk SME and technical owner for enterprise and operational Splunk capabilities.
· Design, administer, optimize, and troubleshoot distributed Splunk environments, including search heads, indexers, forwarders, deployment components, and clustered architectures as applicable.
· Develop and optimize advanced SPL for operational intelligence, troubleshooting, analytics, correlation, alerting, and performance at scale.
· Own data onboarding and normalization, including indexes, sourcetypes, props/transforms, field extractions, forwarder configuration, retention, access controls, and platform health.
· Engineer dashboards, reports, and actionable alerts that reduce time to detect, diagnose, and resolve operational issues.
Automation, Integration & Platform Engineering
· Design production-grade automation using PowerShell, Python, Bash, REST APIs, and other appropriate technologies to support Splunk and enterprise operations.
· Automate deployments, configuration, validation, monitoring, reporting, remediation, and recurring support activities.
· Integrate Splunk with applications, ServiceNow, automation workflows, infrastructure, security tooling, and other enterprise systems.
· Analyze application, infrastructure, security, and operational telemetry to identify trends, anomalies, failures, performance issues, and root causes.
· Establish reusable engineering standards, documentation, configuration practices, and support procedures.
· Mentor engineers and administrators and provide technical leadership for complex Splunk and observability issues.
· Identify manual, repetitive, and error-prone processes and engineer reliable automated solutions.
DevOps, CI/CD & Software Engineering
· Design, implement, and improve CI/CD pipelines and deployment automation.
· Automate build, test, release, deployment, validation, and rollback processes.
· Develop, enhance, integrate, and support custom enterprise applications.
· Modernize legacy applications and operational processes into secure, supportable architectures.
· Troubleshoot complex production issues and perform detailed root-cause analysis.
· Participate in Agile/Scrum development and sprint activities and create clear technical documentation.
Mission-Critical Operations
· Support systems operating in secure and highly restricted environments, including real-time operational and SCADA-related systems.
· Participate in a 24/7 on-call rotation and occasional evening/weekend maintenance or deployment activities.
· Work closely with SWPA stakeholders, technical teams, and leadership to translate operational needs into reliable technical solutions.
Required Qualifications
· Bachelor’s degree in Computer Science, Software Engineering, Information Technology, Cybersecurity, or a related technical field plus 7+ years of relevant professional experience; OR 11+ years of relevant Splunk, infrastructure, systems engineering, automation, DevOps, or implementation experience.
· 7+ years of enterprise infrastructure, security, systems, observability, automation, or related engineering experience.
· 5+ years of hands-on Splunk engineering or administration in enterprise or production environments, with demonstrated senior-level ownership.
· Advanced SPL expertise, including complex search development, troubleshooting, correlation, and search optimization.
· Hands-on experience administering core Splunk platform components such as indexers, search heads, universal/heavy forwarders, deployment server, and distributed or clustered environments.
· Demonstrated experience with data onboarding and normalization, including indexes, sourcetypes, props/transforms, field extractions, forwarders, and retention.
· Strong Linux and/or Windows systems troubleshooting experience and the ability to diagnose platform, application, network, and data-ingestion problems.
· Strong scripting/automation experience using PowerShell, Python, Bash, REST APIs, or comparable technologies.
· Experience with Git and CI/CD or configuration/deployment automation.
· Strong communication, client relationship, root-cause analysis, documentation, mentoring, and independent technical ownership skills.
Preferred Qualifications
· Splunk Enterprise Certified Admin, Splunk Enterprise Certified Architect, or comparable advanced Splunk certification strongly preferred.
· Splunk Enterprise Security (ES), security monitoring/SIEM, or advanced operational observability experience.
· Large-scale distributed Splunk architecture, clustering, capacity/performance optimization, upgrade/migration, and platform lifecycle experience.
· Automated remediation, event-driven automation, REST APIs, ServiceNow integrations, and enterprise workflow automation.
· Experience supporting Linux and Windows in secure, restricted, federal, or other highly controlled computing environments.
· SCADA, industrial control systems, OT/IT integration, utilities, energy, real-time operational systems, or other critical-infrastructure experience.
· Technical leadership, architecture ownership, or mentoring of Splunk engineers and administrators.
The Candidate We're Looking For
This is a hands-on Senior Splunk SME role—not a traditional application-development or general controls-engineering position. We are looking for an engineer who has personally administered and engineered Splunk in production, can independently diagnose complex platform and data issues, and can establish Splunk engineering standards for the team.
Important Applicant Screening: This position requires 5+ years of hands-on Splunk engineering/administration, U.S. Citizenship, and 100% onsite work in Springfield, Missouri. Please apply only if you meet all three requirements.
Employment Requirements
· U.S. Citizenship is required due to federal customer/system-access requirements.
· Must successfully complete a 7-year background investigation.
· This is a 100% onsite position in Springfield, Missouri. Candidates must be able and willing to work onsite; this is not a remote or hybrid role.
· Must participate in an on-call rotation supporting mission-critical systems.
· Must be available for occasional evening or weekend maintenance and deployment activities.
Why This Role Matters
Support critical federal power infrastructure by improving how mission systems are automated, monitored, deployed, diagnosed, and supported. This role has direct influence on operational reliability and engineering modernization.
If you bring deep hands-on Splunk engineering expertise, senior technical ownership, automation skills, and the ability to work onsite in Springfield, Missouri, we want to hear from you.
#WTECH
Pay: $110,000.00 - $115,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Flexible spending account
- Health insurance
- Life insurance
- Paid time off
- Vision insurance
Experience:
- hands on Splunk Engineering/Admin: 5 years (Required)
Ability to Commute:
- Springfield, MO 65807 (Required)
Work Location: In person