Splunk Architect Lead

agile-defense· Cybersecurity
Apply Now ↗
📍 Reston, VARegular

About this role

About Agile Defense   At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next.   Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests. Requisition #: 1440 Job Title: Splunk Architect Lead Location: Reston, VA Clearance Level: Secret (TS Eligible)   SUMMARY   Agile Defense is seeking a Splunk Architect/Lead to support enterprise cybersecurity programs delivering 24/7/365 Cyber Security Operations Center (CSOC) services of USG customers. The Splunk Lead will provide expert technical leadership for enterprise-scale logging, monitoring, SIEM engineering, and custom log integration. This role is responsible for ensuring the reliability, performance, and modernization of the enterprise logging ecosystems across on-premises, cloud, and hybrid environments.   JOB DUTIES AND RESPONSIBILITIES   Lead the design, engineering, configuration, and optimization of enterprise logging platforms supporting CSOC operations. Act as the primary technical authority for SIEM architecture, log ingestion pipelines, parsing, normalization, enrichment, and storage strategies. Manage onboarding of new data sources across applications, endpoints, networks, cloud environments, and identity systems. Ensure log health monitoring, cluster health, pipeline resiliency, and integrity validation for continuous reliability. Enable dashboard creation, correlation rules, and alerting by guaranteeing high-quality, normalized data. Maintain compliance with logging standards, federal mandates, and Zero Trust visibility requirements. Drive modernization initiatives, including automation, cloud logging integrations, and data optimization. Produce technical documentation, including architecture diagrams, data dictionaries, and detailed reports. Support vulnerability assessments, compliance audits, and cross-team engineering reviews.   QUALIFICATIONS Required Certifications   Active Certified Splunk Architect (II) Education, Background, and Years of Experience Bachelor’s degree in computer science, engineering, Cybersecurity, STEM or related field.   ADDITIONAL SKILLS & QUALIFICATIONS Required Skills   An understanding and practical experience in applying project management principles; experience with diverse interconnected systems; strong understanding of industry best practices and technologies with experience in the application supporting a large Federal Government security operations organization   Experience in an enterprise IT environment as an applications or systems administrator working in Windows and Linux environments   Experience with bash, python and or PowerShell scripting languages and automation; strong networking background; strong security background; experience with cloud orchestration tools and a strong understanding of Amazon Web Services cloud services   Last 5 years of experience serving as a senior Certified Splunk Administrator or Architect in large environment.   Preferred Skills   Splunk Certified Admin/Engineer Splunk Core Certified Consultant Active Certified Information System Security Professional (CISSP) Cloud provider certifications (AWS Certified Solutions Architect, Azure Solutions Architect Expert, etc) Experience using cribl   WORKING CONDITIONS Environmental Conditions   Hybrid in Reston, VA Strength Demands Physical Requirements

Frequently Asked Questions

Is the salary disclosed for the Splunk Architect Lead position at agile-defense?
The salary for this Splunk Architect Lead role at agile-defense is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Splunk Architect Lead position at agile-defense located?
This Splunk Architect Lead role at agile-defense is based in Reston, VA. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Splunk Architect Lead role at agile-defense full-time or part-time?
This is listed as a Regular position. It is posted as a Splunk Architect Lead role in the Cybersecurity department at agile-defense.
Which team or department does the Splunk Architect Lead at agile-defense belong to?
This Splunk Architect Lead position is part of the Cybersecurity department at agile-defense. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Splunk Architect Lead position at agile-defense?
Click the "Apply Now" button on this page. You will be redirected to agile-defense's official application portal hosted on lever where you can submit your application directly.
When was the Splunk Architect Lead job at agile-defense posted?
This Splunk Architect Lead position at agile-defense was posted on Feb 19, 2026. Apply as soon as possible — early applications are often reviewed first.
Splunk Architect Lead
agile-defense
Apply for this role ↗

You'll be redirected to agile-defense's official application page on Lever.