Job Title: Splunk Developer ITSI Location: Charlotte, North Carolina (Onsite) Role Type : Contract
Job Summary
We are seeking an experienced Splunk Developer with strong hands-on experience in Splunk IT Service Intelligence (ITSI) to design, develop, and support advanced monitoring, observability, and service analytics solutions. The ideal candidate will have deep expertise in SPL, ITSI service modeling, KPIs, glass tables, and integrations across enterprise environments.
Key Responsibilities
Design, develop, and maintain Splunk ITSI service models, KPIs, entities, and episodes.
Build and customize ITSI Glass Tables for real-time service health visualization.
Develop and optimize SPL queries for ITSI KPIs, alerts, and analytics.
Configure ITSI correlation searches, adaptive thresholds, and anomaly detection.
Onboard and normalize data sources for ITSI using Splunk TA s, APIs, and forwarders.
Integrate ITSI with infrastructure, cloud, and application monitoring tools.
Troubleshoot ITSI performance issues, KPI gaps, and data quality problems.
Collaborate with SRE, DevOps, and Operations teams to define service health indicators.
Support Splunk upgrades, ITSI tuning, and best-practice implementations.
Document ITSI configurations, dashboards, and operational procedures.
Required Skills & Qualifications
Strong experience as a Splunk Developer / Engineer with ITSI hands-on expertise.
In-depth knowledge of Splunk ITSI components: Services, KPIs, Entities, Glass Tables, Episodes.
Advanced SPL (Search Processing Language) skills.
Experience with Splunk Enterprise / Splunk Cloud.
Knowledge of IT operations monitoring, observability, and APM concepts.
Experience working in Linux/Unix environments.
Scripting experience (Python, Shell, or PowerShell).
Preferred Skills
Experience with Splunk Enterprise Security (ES).
Cloud monitoring experience (AWS, Azure, Google Cloud Platform).
Familiarity with DevOps / SRE practices and CI/CD pipelines.
Experience integrating ITSI with tools like ServiceNow, Dynatrace, AppDynamics, New Relic.
Splunk certifications: ITSI Certified Administrator / Power User / Developer.