Overview:
The Splunk Admin plays a crucial role in maintaining and optimizing the Splunk environment within the organization. This role is essential for ensuring data integrity system performance and security. The Splunk Admin is responsible for deploying managing and troubleshooting the Splunk infrastructure to meet the organizations operational needs.
Key Responsibilities:
- Install configure and maintain Splunk infrastructure.
- Monitor and analyze Splunk log files and performance metrics.
- Develop and maintain custom Splunk apps and addons.
- Implement and maintain security and access controls in Splunk.
- Collaborate with crossfunctional teams to gather Splunk requirements.
- Optimize Splunk search performance and indexing strategies.
- Implement data retention and archival strategies in Splunk.
- Provide technical support and troubleshooting for Splunkrelated issues.
- Develop and maintain Splunk documentation and best practices.
- Conduct Splunk system capacity planning and expansion.
- Participate in oncall rotation for Splunk system support.
- Stay updated with new Splunk features and best practices.
- Create and maintain reports and dashboards in Splunk.
- Implement and manage Splunk forwarders and indexers.
- Perform regular Splunk system upgrades and patch management.
Required Qualifications:
- Bachelors degree in Computer Science Information Technology or related field.
- Proven experience as a Splunk Administrator or in a similar role.
- Advanced knowledge of Splunk search processing language (SPL).
- Strong understanding of IT infrastructure and security concepts.
- Experience in scripting languages such as Python PowerShell or Shell scripting.
- Ability to troubleshoot and resolve Splunk platform issues.
- Knowledge of data visualization and reporting in Splunk.
- Excellent communication and collaboration skills.
- Experience with Splunk Enterprise Security is preferred.
- Ability to work in a fastpaced and dynamic environment.
- Strong analytical and problemsolving abilities.
- Understanding of network protocols and log management best practices.
- Experience with Splunk Cloud is a plus.
- Ability to handle multiple priorities and deadlines effectively.
problem-solving,it infrastructure,collaboration skills,spl,communication skills,shell scripting,reporting,log management,splunk admin,scripting,data visualization,splunk,powershell,network protocols,python,security,analytical skills,security concepts,troubleshooting