We are currently seeking a skilled Splunk Admin for a permanent role, responsible for managing and maintaining the Splunk infrastructure and supporting the organization's log management and monitoring needs.
Key Responsibilities:
Manage and maintain Splunk infrastructure to ensure optimal performance and scalability.
Support the organization's log management and monitoring needs through effective use of Splunk Enterprise Security and other Splunk apps.
Deploy, configure, and manage Splunk Universal Forwarders, Indexers, and Search Heads.
Develop strong understanding of Splunk architecture and components, as well as scripting languages like Python or PowerShell.
Troubleshoot and resolve issues related to Splunk infrastructure and data ingestion.
Ensure knowledge of log management, monitoring, and security event management principles and best practices.
Requirements:
Previous experience as a Splunk Admin or similar role.
In-depth knowledge of Splunk architecture and components.
Experience in deploying, configuring, and managing Splunk Universal Forwarders, Indexers, and Search Heads.
Strong understanding of Splunk Enterprise Security, Splunk App for Infrastructure, and other Splunk apps.
Familiarity with scripting languages like Python or PowerShell.
Knowledge of log management, monitoring, and security event management principles and best practices.
Ability to troubleshoot and resolve issues related to Splunk infrastructure and data ingestion.
Experience with Splunk data onboarding, data parsing, and knowledge of regex.
Excellent communication and collaboration skills.
Relevant Splunk certifications are a plus.
Read more