Expert Splunk Engineer (Operational Intelligence)
We are seeking a motivated and skilled Expert Splunk Engineer to join our team and drive operational intelligence initiatives by designing, implementing, and optimizing scalable Splunk platforms. This role offers the opportunity to tackle complex challenges in building high-performing infrastructure and data pipelines while enhancing analytics capabilities for our organization.
Responsibilities
Understand the end-to-end technical design of the Splunk Enterprise platform, including core search, indexing, and ingestion
Produce solution documents such as HLD/LLD, data flows, capacity models, SmartStore strategies, network/firewall rules, and security controls
Build Splunk platforms aligned with Splunk Certified Architectures (SVA)
Optimize Linux-based Splunk infrastructure following industry best practices, including workload management, hardening, and filesystem layout
Establish data ingestion pipelines, utilizing Universal/Heavy Forwarders, HEC, syslog (e.g., SC4S or syslog-NG/rsyslog), API-based collectors, and DB inputs
Build parsing and normalization models for high-performing accelerated datasets aligned with the CIM Framework
Develop and optimize alerting and dashboarding to monitor core Splunk platform functionality
Integrate native Splunk deployment capabilities into CI/CD pipelines, adopting a GitOps-oriented use case
Requirements
3+ years of experience engineering large-scale logging/analytics platforms, with at least 3+ years of hands-on experience in Splunk Enterprise (admin, architect, build)
Proven track record of delivering greenfield implementations or major re-platforming projects, preferably on-premise, with hybrid experience as a plus
Strong SPL proficiency along with deep familiarity with props/transforms, CIM, data model acceleration, and search performance tuning
Solid background in Linux (RHEL) administration, including storage, filesystems, networking, performance tuning, and system hardening
Skills in Bash, Python, or Ansible for scripting and automation
Familiarity with Git-based workflows, and experience in packaging Splunk apps or add-ons
Knowledge of security essentials, such as TLS/certificate management, SSO/SAML/OIDC, RBAC, secrets handling, data masking, and compliance principles
Expertise in turning complex designs into comprehensive solution documents and as-built artifacts with clear and concise writing
English language proficiency at an Upper-Intermediate level (B2) or higher
We offer/Benefits
We gather like-minded people:
Engineering community of industry professionals
Friendly team and enjoyable working environment
Flexible schedule and opportunity to work remotely within Poland
Chance to work abroad for up to 60 days annually
Business-driven relocation opportunities
We provide growth opportunities:
Outstanding career roadmap
Leadership development, career advising, soft skills, and well-being programs
Certification (GCP, Azure, AWS)
Unlimited access to LinkedIn Learning, Get Abstract, Cloud Guru
English classes
We cover it all:
Stable income (Employment Contract or B2B)
Participation in the Employee Stock Purchase Plan
Benefits package (health insurance, multisport, shopping vouchers)
Strategically located offices featuring entertainment and relaxation zones, table tennis and football, free snacks, fantastic coffee, and more
Referral bonuses
Corporate, social and well-being events
Please, note:
The set of bonuses might vary based on the role you apply for – specifics will be discussed with our recruiter during the general interview.
We will reach out to selected candidates exclusively.
EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.
Expert Splunk Engineer (Operational Intelligence)
Expert Splunk Engineer (Operational Intelligence)