Kentro

Mid-Level Splunk Analyst – Migration Specialist

Kentro

full-time

Posted on:

Location Type: Remote

Location: Remote • 🇺🇸 United States

Visit company website
AI Apply
Apply

Job Level

Mid-LevelSenior

Tech Stack

AnsibleITSMPythonServiceNowSplunkTerraform

About the role

  • Execute the inventorying of dashboards and saved searches via SOC REST APIs to prepare for migration.
  • Manually translate Splunk (SPL) queries into Observe (OPAL) with high semantic fidelity, ensuring critical financial logic (e.g., fraud detection filters) is preserved.
  • Perform all code translations and query logic updates manually or via approved scripts; the use of AI tools (e.g., O11y GPT) is strictly prohibited for this project due to security and accuracy requirements.
  • Assist in configuring data ingestion pipelines using OpenTelemetry agents and intermediaries like Cribl or Fluent Bit.
  • Map data models to Observe’s Snowflake-backed data lake and implement sampling strategies (e.g., 10-20% for traces) during testing phases.
  • Rebuild and validate dashboards in the Observe UI/API for real-time monitoring.
  • Conduct parallel query comparisons and replay scripts to validate data accuracy between the legacy Splunk environment and the new Observe environment.
  • Monitor ingestion health and anomaly detection post-migration to ensure user adoption and reduce alert fatigue.
  • Maintain rigorous Git-versioned documentation of all migration scripts, configurations, and rollback plans.
  • Participate in retrospectives to refine processes for financial audits and scalability.

Requirements

  • - Education – Bachelor’s degree (BA/BS) in Computer Science, Information Systems, Engineering, or a related field.
  • - 3–5 years of hands-on experience in Splunk engineering or analysis, specifically focused on event processing and dashboard management.
  • - Proven experience working in complex IT environments; prior experience in the financial sector is highly valued due to the low-latency nature of the data.
  • **Technical Expertise:**
  • - Deep Splunk Proficiency: Strong command of SPL, knowledge management, pre / post indexing data transformations and event management, as this will be the foundation for learning Observe.
  • - Scripting Skills: Competency in Python or Bash for API interactions (e.g., Splunk SDK) and automation tasks.
  • - Infrastructure as Code (IaC): Familiarity with tools like Terraform or Ansible for configuration management.
  • **Communication & Problem Solving: **
  • - Ability to explain technical concepts (such as query logic) to non-technical stakeholders or compliance teams.
  • - Strong problem-solving skills under pressure, particularly regarding data accuracy in volatile market environments.
  • **Preferred Qualifications**
  • - Splunk Certifications: Certified Power User, Admin, or Architect credentials.
  • - Observability Exposure: Prior exposure to Observe Inc. or the OPAL language is a plus, though comprehensive training will be provided.
  • - Intermediary Tools: Experience with Cribl or Vector for data forwarding and routing.
  • - ITSM Integration: Familiarity with integrating monitoring tools into platforms like ServiceNow or PagerDuty.
Benefits
  • **The Company**
  • We believe in generating success collaboratively, enabling long-term mission success, and building trust for the next challenge. With you as our partner, let’s solve challenges, think innovatively, and maximize impact. As a valued member of our team, you have the unique opportunity to work in a diverse range of technology and business career paths, all while supporting our nation and delivering innovative technology solutions. We are a close community of experts that pride ourselves on creating an environment defined by teamwork, dedication, and excellence.
  • We hold three ISO certifications (27001:2013, 20000-1:2011, 9001:2015) and two CMMI ML 3 ratings (DEV and SVC).
  • **Industry Recognition**
  • Growth | Inc 5000’s Fastest Growing Private Companies, DC Metro List Fastest Growing; Washington Business Journal: Fastest Growing Companies, Top Performing Small Technology Companies in Greater D.C.
  • Culture | Northern Virginia Technology Council Tech 100 Honoree; Virginia Best Place to Work; Washington Business Journal: Best Places to Work, Corporate Diversity Index Winner – Mid-Size Companies, Companies Owned by People of Color; Department of Labor’s HireVets for our work helping veterans transition; SECAF Award of Excellence finalist; Victory Military Friendly Brand; Virginia Values Veterans (V3); Cystic Fibrosis Foundation Corporate Breath Award
  • **Benefits**
  • We offer competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401k including an employer match, discount perks, rewards, and more. We invest in our employees – Every employee is eligible for education reimbursement for certifications, degrees, or professional development. Reimbursement amounts may fluctuate due to IRS limitations. We want you to grow as an expert and a leader and offer flexibility for you to take a course, complete a certification, or other professional growth and networking. We are committed to supporting your curiosity and sustaining a culture that prioritizes commitment to continuous professional development.
  • We work hard; we play hard. Kentro is committed to incorporating fun into every day. We dedicate funds for activities – virtual and in-person – e.g., we host happy hours, holiday events, fitness & wellness events, and annual celebrations. In alignment with our commitment to our communities, we also host and attend charity galas/events. We believe in appreciating your commitment and building a positive workspace for you to be creative, innovative, and happy.
  • **Commitment Equal Opportunity Employment & VEVRAA**
  • Kentro is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state or local law.
  • Kentro is strongly committed to compliance with VEVRAA and other applicable federal, state, and local laws governing equal employment opportunity. We have developed comprehensive policies and procedures to ensure our hiring practices align with these requirements.
  • As part of our VEVRAA compliance efforts, Kentro has established an equal opportunity plan outlining our commitment to recruiting, hiring, and advancing protected veterans. This plan is regularly reviewed and updated to ensure its effectiveness.
  • We encourage protected veterans to self-identify during the application process. This information is strictly confidential and will only be used for reporting and compliance purposes as required by law. Providing this information is voluntary and will not impact your employment eligibility.
  • Our commitment to equal employment opportunity extends beyond legal compliance. We are dedicated to fostering an inclusive workplace where all employees, including protected veterans, are treated with dignity, respect, and fairness.
  • **How to Apply**
  • To apply to Kentro Positions- Please click on the: “Apply for this Job” button at the bottom of this Job Description or the button at the top: “Application.” Please upload your resume and complete all the application steps. You must submit the application for Kentro to consider you for a position. If you need alternative application methods, please email careers@kentro.us and request assistance.
  • **Accommodations**
  • To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable Accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. If you need to discuss reasonable accommodations, please email careers@kentro.us.

Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard skills
SplunkSPLPythonBashOpenTelemetryTerraformAnsibledata ingestiondata modelingquery logic
Soft skills
communicationproblem solvingtechnical explanationcollaborationprocess refinement
Certifications
Certified Power UserCertified AdminCertified Architect