Overview
Skills
Job Details
1. Experience doing Splunk content development for creating searches, dashboards, and working within Splunk. Specifically, familiarity with the configuration file options that are not available through the GUI. Experience working with Splunk ES (Enterprise Security) specifically. Understanding of Splunk "Search" language, Splunk Dashboards, Reports, Lookup Tables, and Summary Indexes. Knowledge of how to customize Dashboards via the XML source. Awareness of the Common Information Model and how to apply it directly and indirectly to data feeds. Expert-level capabilities with regular expressions. Experience with Splunk Apps (both using and making).
2. Experience doing correlation searches, how to set up correlation searches within Splunk ES within Splunk ES, saved searches, and doing correlations in this.
Experience working within signatures in the IDS and IPS space, doing signature analysis and signature writing, analyzing these, looking to see if they are set right or not.
3. Awareness of how to handle null data and its impact on statistical analysis
4. Using Regex to write and make custom signatures, to be used in the front end and the backend of Splunk
Thank and Regards
Gopi M