Here is an example query of how to find log data in Splunk when using this plugin.
index="jenkins*" sourcetype="text:jenkins" source="job/deadmanssnitch%20(DO%20NOT%20DELETE)/5830/console"
The main issue is that the plugin escapes the " " and makes it "%20" but that application in Splunk expects there to be a " " not "%20".
Here is an example search that the Splunk Jenkins application runs
index="jenkins_console" host="platform-engineering-test.jenkins.nonprod.bxt.com" source="job/deadmanssnitch (DO NOT DELETE)/5830/console
It seems like over time that the Splunk Jenkins app version 2.0.4 has fell out of sync with the Jenkins Splunk plugin version 1.9.7.