Install, configure, and maintain Splunk infrastructure, including forwarders, indexers, and search heads.
- Perform regular system upgrades and patching to maintain security and performance.
- Monitor system performance and troubleshoot issues to ensure optimal functionality of Splunk.
- Collaborate with IT and security teams to integrate Splunk with other systems and applications.
- Provide technical Splunk support and training to end-users and stakeholders.
- Develop and maintain documentation for system configurations, processes, and procedures.
- Implement and manage data ingestion processes, ensuring data integrity and availability.
- Develop and manage Splunk dashboards, reports, alerts, and visualizations.
Minimum Qualifications
- Splunk Enterprise Certified Administrator
- Effective communication and collaboration skills
- Problem-solving skills and the ability to think strategically about security
- Continuous learning mindseta
- Experience with data onboarding, parsing, and indexing in Splunk
- Minimum 5 years of hands-on experience in Splunk Administration
- Minimum 3 years of hands-on experience with AWS