Requirement | Splunk SME / Architect (C1) |
Expertise | Splunk Enterprise / Cloud (Design, Deployment & Development) |
Key responsibilities | -
Design, implement, and configuration of Splunk Enterprise platform (Enterprise) / Splunk Cloud. -
Present and demonstrate Splunk Core capabilities to the prospective clients -
Designs and optimizes Splunk platform architecture for large-scale and distributed deployments -
Establishes best practices and development standards, and ensures that the team adopts them - Maintains a close partnership with Splunk on feature requests, upgrade planning, and product roadmap alignment
- Develops and customizes Splunk apps and dashboards and Builds advanced visualizations
- Performs assessment of Monitoring estate and derive at recommendations with quantified business benefits
|
Key Skills | -
Design of Splunk platform with multiple data sources as Metrics, Windows sources, HEC, ,etc. -
Migration / upgrade planning & execution for Splunk platform - Should perform in-depth diagnostic of incidents on any specific application and identify the root cause of problems
- Should document resolved issues in an effective manner for knowledge management, cross-train peers with tool usage and assist in creation of best-practices, work independently on multiple assignments, proactively prioritizing focus and effort
- Should have good hands on knowledge of Deployment , Administration and Development of the Splunk Enterprise platform
- Experience in integrating other tools like JIRA, ServiceNow, Jenkins, AWS etc. with Splunk using 3rd party app
- Proficient in writing SPL queries and experience in advanced level dashboarding, scheduled jobs, Data models, Lookups and other knowledge objects
- Experience in performance optimization of existing dashboards, reports and alerts
- Experience in MLTK, DB Connect Apps and experience in any one of the scripting tools (Python / Shell)
|
Good to have Skills | -
Knowledge on Splunk ITSI & idea on at least one Premium App like ITSI, ES, Phantom, UBA, Splunk Observability -
Experience in scripting, Ansible / Puppet for Run book Automation -
Fair understanding of AWS cloud and cloud services -
Splunk certified Architect Professional |