Splunk Engineer
Experience: 7 + years
Location: Remote Opportunity based anywhere in Canada. Must be eligible to work in the country
We are seeking a highly skilled Splunk Administrator / Splunk Cloud Engineer to lead the design, implementation, and support of large-scale Splunk environments. The role involves managing multi-terabyte-per-day Splunk Cloud and AWS-based deployments, driving platform stability, performance, and security while partnering with application, infrastructure, and security teams.
Please note, this role is not able to offer visa transfer or sponsorship now or in the future*
Key Roles & Responsibilities
Lead implementation, administration, and support of Splunk Cloud environments processing multi-terabyte daily ingestion.
Design, deploy, and manage Splunk clusters on AWS capable of handling enterprise-scale data volumes.
Onboard and integrate new data sources using HEC, REST APIs, and third-party streaming tools.
Provide operational support for large Splunk implementations exceeding 400 TB/day of log ingestion.
Install, configure, and maintain Splunk Universal Forwarders across application, web, and database servers.
Perform Splunk upgrades, patching, and infrastructure maintenance in compliance with best practices.
Monitor, analyze, and remediate security vulnerabilities across Splunk platforms, add-ons, and applications.
Develop automation scripts to streamline Splunk administration and operational tasks.
Define, measure, and report KPIs and platform health metrics.
Build and maintain 24×7 monitoring and alerting to ensure high availability and optimal performance.
Optimize SPL queries and coach end users on Splunk best practices.
Evaluate, test, and deploy Splunk technical add-ons and applications.
Participate in on-call rotations, troubleshoot production issues, and ensure timely resolution.
Collaborate with Splunk Support and internal stakeholders to resolve complex issues.
Assess business and system changes for scope and impact on Splunk environments.
Maintain awareness of emerging technologies and recommend improvements to maximize Splunk value.
Provide consultative support to internal application, infrastructure, and security teams.
Communicate platform strategy, roadmap, and business value to senior and executive stakeholders.
Required Qualifications
7+ years of hands-on experience administering enterprise Splunk environments.
Strong experience with Splunk Cloud, Splunk Enterprise, and AWS infrastructure.
Expertise in high-volume log ingestion, indexing, and search optimization.
Solid knowledge of Linux/Unix systems, networking, and security concepts.
Experience with automation and scripting (Python, Shell, etc.).
Proven experience supporting 24×7 mission-critical platforms.
Excellent troubleshooting, communication, and stakeholder engagement skills.
This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.
Compensation: we are offering an annual salary between $56,650-103,000
Disclaimer: The salary, other compensation, and benefits information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
At Cognizant, we're eager to meet people who believe in our mission and can make an impact in various ways! We strongly encourage you to apply even if you only meet the required skills listed. Consider what transferrable experience and skills make you an outstanding applicant and help us see how you'd be helpful to this role.
Cognizant will only consider applicants for this position who are legally authorized to work in Canada without requiring employer sponsorship, now or at any time in the future.
At Cognizant, we strive to provide flexibility wherever possible, and we are here to support a healthy work-life balance though our various wellbeing programs.
Note: The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
#CB
#IND123
关于高知特 (Cognizant)
高知特(Cognizant)(纳斯达克代码:CTSH)作为一家AI Builder和相关技术服务提供商,致力于通过打造全栈AI解决方案,帮助企业将人工智能投资转化为实际价值。公司凭借深厚的行业经验、流程优化和工程技术专长,将企业独特的业务场景融入科技系统,赋能组织释放人才潜能,推动切实成果,并帮助全球企业在瞬息万变的环境中保持领先。如需了解更多详情,敬请访问 cognizant.ai 或关注@cognizant。
补充雇佣信息
薪酬信息截至本职位发布之日为准。Cognizant 保留在适用法律允许的范围内随时修改该信息的权利。
申请人可能需要通过现场面试或视频会议的方式参加面试。此外,候选人在每次面试时可能需要出示其当前所在州或政府签发的有效身份证件。
Cognizant 是一家提供平等就业机会的雇主。在招聘过程中,您的申请和候选资格不会因种族、肤色、性别、宗教、信仰、性取向、性别认同、国籍、残疾、遗传信息、怀孕、退伍军人身份或任何其他受联邦、州或地方法律保护的特征而受到影响。







