SRE Splunk Admin
Must Have Technical/Functional Skills
Strong hands-on experience with Splunk administration and development
Expertise in SPL for building complex queries
Experience creating dashboards, alerts, and reports
Good understanding of data onboarding, parsing, and indexing
Knowledge of Splunk performance, security, and scalability best practices
Strong troubleshooting and analytical skills
Good to Have
Experience with Splunk Enterprise Security (ES) or ITSI
Exposure to cloud platforms such as AWS, Azure, or Google Cloud Platform
Scripting knowledge in Python or Bash
Splunk certifications (Power User, Admin, Architect)
Roles & Responsibilities
Administer, configure, and maintain Splunk infrastructure, including indexers, search heads, forwarders, and deployment servers
Develop and optimize complex SPL queries, dashboards, reports, and alerts
Manage end-to-end data onboarding including data inputs, parsing, transformations, and indexing
Monitor Splunk platform health and performance and troubleshoot issues proactively
Implement Splunk best practices for performance, scalability, and high availability
Apply security best practices including role-based access control and data protection
Collaborate with application, infrastructure, and security teams for data onboarding
Document configurations, dashboards, and operational procedures