EmergencyMD
Lead Splunk Engineer (Cloud Observability)
EmergencyMD, Minneapolis, Minnesota, United States, 55400
OVERVIEW
ROLE:
Lead Splunk Engineer (Cloud Observability)
ROLE TYPE:
Direct Hire
COMPENSATION:
Up to $145,000 base, depending on experience, with flexibility for highly qualified candidates
WORK LOCATION:
100% Remote. Candidates must currently reside in one of the following states: MN, WI, IA, ND, SD. Will consider relocation candidates on a case‑by‑case basis (would need a strong match to provide relocation support).
WORK AUTHORIZATION:
US Citizens, Permanent Residents, or candidates with visas sponsored by a spouse or relative. No other visa types can currently be supported by the end client (H1, OPT, TN, etc.).
START:
Immediate
JOB ID:
N/A
CLIENT ROLE/DETAILS Our client is a large, mission-driven, nationally recognized organization operating at the intersection of healthcare, technology, and community impact. Their teams build and support platforms that serve millions across clinical care, insurance, research, and digital experience domains. The environment balances stability with innovation, with a strong emphasis on engineering craft, continuous improvement, and building technology that delivers measurable value for patients, members, and internal stakeholders.
This role joins a fast-growing
Observability Engineering
group responsible for advancing enterprise-wide insight, performance visibility, and reliability capabilities. The team is modernizing and expanding how the organization uses Splunk—elevating everything from log analytics to distributed tracing and SIEM tooling, enabling data-driven problem solving at scale.
As a
Lead Splunk Engineer , you will serve as the team's specialist and key contributor for Splunk architecture, engineering, automation, optimization, and overall platform evolution. You'll collaborate closely with platform, cloud, site reliability, and application engineering teams to improve observability maturity across the enterprise. This is a hands‑on role for someone who loves building, tuning, automating, and scaling Splunk in complex environments.
WHAT MAKES THIS ROLE DIFFERENT
Expert‑level Splunk engineering experience , including:
Designing, deploying, and scaling Splunk environments
Indexer clustering, search head clustering, forwarder architecture
Deep knowledge of data ingestion pipelines, props/transforms, normalization, dashboards, and performance tuning
Strong experience troubleshooting ingestion, indexing, search performance, and data model issues
Strong experience building
automation
around Splunk and infrastructure (e.g., Ansible, Chef, Terraform, or similar)
Demonstrated ability to write high‑quality code for automation, tooling, integrations, and pipelines
Experience running and supporting
high‑availability, distributed systems
Comfort working across
Linux, networking, storage, and VM/container environments
Hands‑on experience with
public cloud concepts
(AWS, Azure, or GCP) as they relate to observability and automation
Ability to operate in an Agile environment, communicate technical concepts clearly, and drive continuous improvement
Participation in on‑call rotations and troubleshooting across multiple environments
KEY SKILLS
Expert‑level Splunk engineering experience , including:
Designing, deploying, and scaling Splunk environments
Indexer clustering, search head clustering, forwarder architecture
Deep knowledge of data ingestion pipelines, props/transforms, normalization, dashboards, and performance tuning
Strong experience troubleshooting ingestion, indexing, search performance, and data model issues
Strong experience building
automation
around Splunk and infrastructure (e.g., Ansible, Chef, Terraform, or similar)
Demonstrated ability to write high‑quality code for automation, tooling, integrations, and pipelines
Experience running and supporting
high‑availability, distributed systems
Comfort working across
Linux, networking, storage, and VM/container environments
Hands‑on experience with
public cloud concepts
(AWS, Azure, or GCP) as they relate to observability and automation
Ability to operate in an Agile environment, communicate technical concepts clearly, and drive continuous improvement
Participation in on‑call rotations and troubleshooting across multiple environments
NICE TO HAVE REQUIREMENTS
Experience with
Prometheus, Grafana, OpenTelemetry , or other complementary observability technologies
Exposure to
Kubernetes, OpenShift , or container‑based deployment models
Understanding of
Kafka , event streaming, or log transport optimization
Knowledge of CI/CD tools (Bitbucket, GitLab, Jenkins, etc.)
Familiarity with modern architectural patterns such as microservices or service mesh
Experience mentoring junior engineers or influencing platform direction
NOTABLE BENEFITS
Comprehensive medical, dental, and vision plans (multiple tier options, including low‑deductible and high‑deductible choices)
Competitive retirement program with employer contributions up to 7%
Generous
Paid Time Off (PTO)
accruals for full‑time employees
Flexible spending accounts (FSA), HSA options, and dependent care accounts
Employer‑paid
life insurance ,
AD&D , and
short‑term disability
Optional supplemental insurance and legal assistance plans
Professional development, educational support, and continuous learning resources
A people‑first culture emphasizing inclusion, well‑being, and long‑term career growth
HOW TO APPLY If you are a motivated and organized individual passionate about Splunk/Observability in a large‑scale/complex environment, we would love to hear from you. To apply, please answer our applicant questions and submit your resume detailing your qualifications and relevant experience.
* Amplified Sourcing is proud to be an equal‑opportunity talent partner. All qualified applicants will receive consideration without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. If you require accommodations during the hiring process, please let us know.
Offers of employment or continued employment may be contingent upon the successful completion of a background check.
Background checks are standard practice and are a requirement of doing business (contractual obligation, etc.).
Information obtained through a background check will only be used for purposes of determining a candidate's or employee's eligibility for employment (or ongoing employment). Background checks are not intended to disqualify or otherwise limit the pool of individuals eligible for a role, but instead are intended to confirm a decision to hire a candidate. Any information obtained through a background check will not be used to discriminate against a candidate on the basis of their race, color, sex/gender, religion, national origin, age, disability, or any other protected characteristic under federal, state or local law.
#J-18808-Ljbffr
ROLE:
Lead Splunk Engineer (Cloud Observability)
ROLE TYPE:
Direct Hire
COMPENSATION:
Up to $145,000 base, depending on experience, with flexibility for highly qualified candidates
WORK LOCATION:
100% Remote. Candidates must currently reside in one of the following states: MN, WI, IA, ND, SD. Will consider relocation candidates on a case‑by‑case basis (would need a strong match to provide relocation support).
WORK AUTHORIZATION:
US Citizens, Permanent Residents, or candidates with visas sponsored by a spouse or relative. No other visa types can currently be supported by the end client (H1, OPT, TN, etc.).
START:
Immediate
JOB ID:
N/A
CLIENT ROLE/DETAILS Our client is a large, mission-driven, nationally recognized organization operating at the intersection of healthcare, technology, and community impact. Their teams build and support platforms that serve millions across clinical care, insurance, research, and digital experience domains. The environment balances stability with innovation, with a strong emphasis on engineering craft, continuous improvement, and building technology that delivers measurable value for patients, members, and internal stakeholders.
This role joins a fast-growing
Observability Engineering
group responsible for advancing enterprise-wide insight, performance visibility, and reliability capabilities. The team is modernizing and expanding how the organization uses Splunk—elevating everything from log analytics to distributed tracing and SIEM tooling, enabling data-driven problem solving at scale.
As a
Lead Splunk Engineer , you will serve as the team's specialist and key contributor for Splunk architecture, engineering, automation, optimization, and overall platform evolution. You'll collaborate closely with platform, cloud, site reliability, and application engineering teams to improve observability maturity across the enterprise. This is a hands‑on role for someone who loves building, tuning, automating, and scaling Splunk in complex environments.
WHAT MAKES THIS ROLE DIFFERENT
Expert‑level Splunk engineering experience , including:
Designing, deploying, and scaling Splunk environments
Indexer clustering, search head clustering, forwarder architecture
Deep knowledge of data ingestion pipelines, props/transforms, normalization, dashboards, and performance tuning
Strong experience troubleshooting ingestion, indexing, search performance, and data model issues
Strong experience building
automation
around Splunk and infrastructure (e.g., Ansible, Chef, Terraform, or similar)
Demonstrated ability to write high‑quality code for automation, tooling, integrations, and pipelines
Experience running and supporting
high‑availability, distributed systems
Comfort working across
Linux, networking, storage, and VM/container environments
Hands‑on experience with
public cloud concepts
(AWS, Azure, or GCP) as they relate to observability and automation
Ability to operate in an Agile environment, communicate technical concepts clearly, and drive continuous improvement
Participation in on‑call rotations and troubleshooting across multiple environments
KEY SKILLS
Expert‑level Splunk engineering experience , including:
Designing, deploying, and scaling Splunk environments
Indexer clustering, search head clustering, forwarder architecture
Deep knowledge of data ingestion pipelines, props/transforms, normalization, dashboards, and performance tuning
Strong experience troubleshooting ingestion, indexing, search performance, and data model issues
Strong experience building
automation
around Splunk and infrastructure (e.g., Ansible, Chef, Terraform, or similar)
Demonstrated ability to write high‑quality code for automation, tooling, integrations, and pipelines
Experience running and supporting
high‑availability, distributed systems
Comfort working across
Linux, networking, storage, and VM/container environments
Hands‑on experience with
public cloud concepts
(AWS, Azure, or GCP) as they relate to observability and automation
Ability to operate in an Agile environment, communicate technical concepts clearly, and drive continuous improvement
Participation in on‑call rotations and troubleshooting across multiple environments
NICE TO HAVE REQUIREMENTS
Experience with
Prometheus, Grafana, OpenTelemetry , or other complementary observability technologies
Exposure to
Kubernetes, OpenShift , or container‑based deployment models
Understanding of
Kafka , event streaming, or log transport optimization
Knowledge of CI/CD tools (Bitbucket, GitLab, Jenkins, etc.)
Familiarity with modern architectural patterns such as microservices or service mesh
Experience mentoring junior engineers or influencing platform direction
NOTABLE BENEFITS
Comprehensive medical, dental, and vision plans (multiple tier options, including low‑deductible and high‑deductible choices)
Competitive retirement program with employer contributions up to 7%
Generous
Paid Time Off (PTO)
accruals for full‑time employees
Flexible spending accounts (FSA), HSA options, and dependent care accounts
Employer‑paid
life insurance ,
AD&D , and
short‑term disability
Optional supplemental insurance and legal assistance plans
Professional development, educational support, and continuous learning resources
A people‑first culture emphasizing inclusion, well‑being, and long‑term career growth
HOW TO APPLY If you are a motivated and organized individual passionate about Splunk/Observability in a large‑scale/complex environment, we would love to hear from you. To apply, please answer our applicant questions and submit your resume detailing your qualifications and relevant experience.
* Amplified Sourcing is proud to be an equal‑opportunity talent partner. All qualified applicants will receive consideration without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. If you require accommodations during the hiring process, please let us know.
Offers of employment or continued employment may be contingent upon the successful completion of a background check.
Background checks are standard practice and are a requirement of doing business (contractual obligation, etc.).
Information obtained through a background check will only be used for purposes of determining a candidate's or employee's eligibility for employment (or ongoing employment). Background checks are not intended to disqualify or otherwise limit the pool of individuals eligible for a role, but instead are intended to confirm a decision to hire a candidate. Any information obtained through a background check will not be used to discriminate against a candidate on the basis of their race, color, sex/gender, religion, national origin, age, disability, or any other protected characteristic under federal, state or local law.
#J-18808-Ljbffr