Principal Data Engineer- Getting Data In

Job Description

Join us as we pursue our exciting new vision to harness machine data in the next generation of IT and Security analytics products! We are a company filled with people who are passionate about our products and seek to deliver the best experience for our customers. At Splunk, we’re committed to our work, customers, having fun and commemorate each other’s success.

Splunk's Getting Data In (GDI) team is seeking a leader in the IT Service Monitoring or Security Information Event Management (SIEM) space to guide the development of integrations between Splunk and cloud and on-prem solutions and services. This technical role will ensure that the Technology Integrations (Add-Ons) developed by the team will meet the high standards that are expected by our customers.

Your work will help us achieve our goal of getting performance, IT and Security data into Splunk seamlessly and enriching it with high quality domain knowledge and insights. It will further position Splunk as the world-class Data to Everything Platform.

Role Details

  • Be the technical lead on a team developing 50+ Technology Add-Ons (TAs) that get data from IT and Security devices and Cloud services into Splunk.
  • Influence the development process by discussing technical and schedule related challenges with the team and providing creative solutions for overcoming them.
  • Provide requirements to ensure that Technology Add-Ons extract meaningful information from log data and integrate seamlessly with downstream Splunk applications such as Enterprise Security (ES) and IT Service Intelligence (ITSI).
  • Interact with customers to resolve issues and to understand new requirements.
  • Work with Product Management on priorities and timelines and be responsible for achieving them
  • Promote our Open Source strategy and interact with the Splunk community
  • Suggest and develop tools to automate manual processes.


  • 10+ years of experience in Security or IT monitoring, including data onboarding and content creation.
  • Good understanding of Security and IT Operations use cases and how customers expect to interact with log data
  • Hands on content creation with Splunk (preferably) or other SIEM and IT Monitoring Systems
  • Good knowledge of Python or other scripting or programming languages.
  • Familiarity with logs of cloud and on-prem solutions such as IT Service Management, File Sharing, Content Management, Databases and Operating Systems
  • A passion for customer focus and commitment in the product design phase and while responding to issues.
  • High integrity and reliability: ability to work independently, be responsible for upholding schedules and work with remote teams.

What We Offer You:

  • A constant stream of new challenges and learning opportunities.
  • A set of exceptionally talented and dedicated peers, all the way from Engineering and QA to Product Management and Customer Success.
  • Growth and mentorship. We believe in growing engineers through ownership and leadership opportunities. We also believe mentors help both sides of the equation.
  • A stable, collaborative and supportive work environment.
  • Good work/life balance. We trust our colleagues to be responsible with their time and dedication and believe that balance helps cultivate a phenomenal environment.
  • We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Splunk's Hiring Practices
Splunk turns machine data into answers. Organizations use market-leading Splunk solutions with machine learning to solve their toughest IT, Internet of Things and security challenges.

Individuals seeking employment at Splunk are considered without regards to race, religion, color, national origin, ancestry, sex, gender, gender identity, gender expression, sexual orientation, marital status, age, physical or mental disability or medical condition (except where physical fitness is a valid occupational qualification), genetic information, veteran status, or any other consideration made unlawful by federal, state or local laws. Click here to review the US Department of Labor’s EEO is The Law notice. Please click here to review Splunk’s Affirmative Action Policy Statement.

Splunk also has policies in place to protect the personal information candidates disclose to us as part of the application process. Please click here to review Splunk’s Career Site Privacy Policy.

Splunk does not discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Please click here to review Splunk’s Pay Transparency Nondiscrimination Provision. 
For job positions in San Francisco, CA, and other locations where required, we will consider for employment qualified applicants with arrest and conviction records.

Splunk is also committed to providing access to all individuals who are seeking information from our website. Any individual using assistive technology (such as a screen reader, Braille reader, etc.) who experiences difficulty accessing information on any part of Splunk’s website should send comments to Please include the nature of the accessibility problem and your e-mail or contact address. If the accessibility problem involves a particular page, the message should include the URL of that page.

Splunk doesn't accept unsolicited agency resumes and won't pay fees to any third-party agency or firm that doesn't have a signed agreement with Splunk.

To check on your application click here.
Find out what makes Splunk such a great place to work
Our Values

Splunkers are encouraged and empowered to be Innovative, Passionate, Disruptive, Open and Fun.
Learn More

Our Locations

From San Francisco to Shanghai, Splunkers work in 25+ offices across the globe.
Learn More

University Recruiting Program

Intern with people you want to hang out with, even outside the office.
Learn More

Our Blog

Hear from Splunkers on the latest.
Learn More

Diversity & Inclusion

Culture of Inclusion: Splunkers Share Their Stories
Learn More


Follow Splunk on LinkedIn for job announcements, company news, and more.
Learn More