Description

Key Skills: Splunk Administration, Splunk Development, LINUX, Scripting/ automation experience (Python, Shell, Bash, Ansible, etc.), GIT for source code management

Splunk Administrator or Architect certification will be an added advantage

Good to Have: Ansible, AWS / Kubernetes integration with Splunk (basics is fine

Experience with Splunk Engineering, administration, deployment, troubleshooting, onboarding data and maintenance for a large-scale network environment

Experience with Linux and Windows agents for Splunk administration with a solid understanding of the Splunk system

Implement and maintain Splunk Platform Infrastructure and Configuration, involved in standardizing Splunk forwarder deployment, configuration and maintenance across UNIX and Windows platform

Apps/Dashboards for license usage and Application errors

Monitor and maintain Splunk performance, availability and capacity Storage performance, CPU, Memory, Forwarder installations and patching upgrades

Hands on experience in scripting languages, regular expressions to automate tasks and manipulate data, KV store collection and lookup management, index and search time field extractions

Hands on experience in creating & customizing Splunk dashboards, visualizations, configurations using customized Splunk queries, reports, scheduled searches and alerts, Splunk workflow actions, KPI services and undertake day-to-day operational and user support

Knowledge about Splunk architecture and various components (indexer, forwarder, search head, deployment server), Heavy and Universal Forwarder

Hands on experience in scripting languages, regular expressions to automate tasks and manipulate data, restrict access to sensitive logs/data. Identifying bad searches/dashboards and partnering with the creators to improve performance

Knowledge of enterprise logging, including application, OS, security technology logging and Splunkit framework

Lead Proof-of-Concepts (POC) on Splunk implementation, mentored and guided other team members on understand the use case of Splunk

Ensure data quality in line with clients use cases and maintain current functional and technical knowledge of the Splunk platform

Expertise in writing advanced queries and knowledge on Splunk Development Activities. Knowledge on SPL commands (streaming, generating, transforming, orchestrating & dataset processing commands)

Develop reliable, efficient queries, summary indexes, data models that will feed custom alerts and dashboards

Provide regular support and guidance to Splunk project teams on complex solution and issue resolution

Education

ANY GRADUATE