JOB DESCRIPTION:
Splunk administrator that manages the system utilizing linux cluster and management console, applications. 30% - management of daily spunk operation systems. 35% - linux administration 10% - collaborate and liaise with other units and serve as a technical resource and subject matter expert. 15% - contribute to research and development projects as required. 10% - train and advise less skilled systems programmers and provide expert technical assistance for others.
Splunk Administration:
The splunk system is installed in a linux cluster. Admin will need a general understanding of linux, daily care of verifying splunk is running properly. Creation of new indexes and updating applications adding new source types, adding new servers and logs to splunk, Daily verification of license counts, ability to create dashboards (and able to teach others how to make dashboards, use of splunk management console and applications.
Linux Administration:
Understand and implement application file permissions. Frequently use version control(git, bitbucket) and configuration management(saltstack, ansible) tools. Configuring/maintaining linux file systems(nfs)
Technical Source:
Be a technical source to help windows and linux admins install the splunk uf client and verify logs are flowing to the splunk clusters, general linux and windows knowledge to be able to help with log collection on the client side. Ability to train other admins in advanced log searching techniques. General splunk troubleshooting techniques and knowledge on how to work with splunk (the company)
Splunk Architecture:
They will be given access to the cluster. If they are able to find deficiencies in the design, they are welcome to implement the changes.
Skills
- Universal forwarders and splunk enterprise version upgrades.
- 5+ years of experience with Splunk Administration
- 5+ years of experience with Linux Administration
- 5+ year of experience with Bash Scripting; VDI preferred