Position Summary:
The Splunk Environment Manager will be responsible for overseeing the management maintenance and optimization of the Splunk environment to ensure efficient data ingestion search performance and data analysis. This role requires a deep understanding of Splunk architecture strong troubleshooting skills and effective collaboration with stakeholders.
Main Responsibilities:
- Splunk Environment Management:
- Install configure and maintain Splunk environments including search heads indexers deployment servers and forwarders.
- Ensure service quality aligns with SLAs and manage platform versions and configurations.
- Data Ingestion:
- Manage data ingestion processes to ensure accurate and efficient data ingestion into Splunk.
- Performance Tuning:
- Optimize Splunk performance including search performance indexing and data retention policies.
- Security and Compliance:
- Implement and maintain security best practices and ensure compliance with regulations and standards.
- Monitoring and Troubleshooting:
- Monitor Splunk infrastructure for performance issues and troubleshoot problems.
- Analyze and resolve incidents propose technical solutions and implement fixes.
- Dashboard and Report Development:
- Develop and maintain dashboards reports and alerts for system performance and security insights.
- Collaboration:
- Work with IT teams for seamless integration and operation of Splunk.
- Documentation:
- Maintain comprehensive documentation of the Splunk environment.
- Training and Support:
- Provide training and support to team members and endusers on Splunk usage and best practices.
Technical Skills:
- Advanced Splunk administration and development.
- Support maintain and expand Splunk infrastructure.
- Splunk agent deployment and maintenance.
- Troubleshoot Splunk server and agent issues.
- Monitor infrastructure for capacity planning and optimization.
- Automation using scripting languages like Python and Bash.
- Familiarity with Linux/Unix operating systems.
Requirements:
- Over 10 years of IT Security experience with at least 5 years in Splunk administration in the Financial Services industry.
- Degree in Information Technology or equivalent work experience.
- Certification in information security (CISM CISA CCISP) preferred.
- Splunk Certified Admin or Splunk Certified Architect preferred.
- Fluent in English French is a plus.
- Strong technical knowledge in data networks systems databases and cybersecurity.
- Excellent communication and collaboration skills.
- Curiosity responsiveness initiative autonomy and sense of responsibility.
- Ability to correlate datasets conduct research and design innovative solutions.