Splunk Engineer/Architect

splunk, architect, design, engineer, index designing,
Contract Corp-To-Corp, C2H Corp-To-Corp, C2H W2
Depends On Experience
Telecommuting not available Travel not required

Job Description

SPLUNK Architect: Splunk Architect will design and implement SPLUNK search solutions to address business problems (8+ years of total exp, at least 2 years + in Splunk) • Provide hands on experience utilizing Splunk in enterprise environments and tool lifecycle management • Identify critical information about environment, volume, users, and requirements • Review checklists and resources to aid in collecting requirements • Splunk log analytics configuration and logging visibility for critical infrastructure and application • Index Designing – Design and size indexes, estimate storage requirements • Enterprise monitoring best practices and procedures including alerting and threshold setting • Perform Clustering recommendations • Identify common Integration techniques • Performance Monitoring and Tuning

 

SPLUNK Engineer: Splunk Engineer will configure, deploy, and customize Splunk (6+ years of total exp, at least 2 years in Splunk) • Provide hands on experience utilizing Splunk in enterprise environments and tool lifecycle management • Splunk log analytics configuration and logging visibility for critical infrastructure and application • Install a search head, deployment server and indexers • Perform a scripted installation of universal forwarders • Deploy all specified configurations via deployment server • Gather data from forwarders and send to multiple indexers • Configure index-time knowledge • Create search-time field extractions • Create searches and dashboards for each required use case

 

Duties

  • Architect, design, support, and maintain Splunk infrastructure for a highly available and disaster recovery configuration
  • Administer Splunk and Splunk Application for Enterprise Security (ES) log management
  • Standardize Splunk agent deployment, configuration and maintenance across a variety of UNIX and Windows platforms
  • Troubleshoot Splunk server and agent problems and issues
  • Assist internal users of Splunk in designing and maintaining production-quality dashboards
  • Mentor users and other groups on their use of Splunk
  • Monitor the agent and server infrastructure for capacity planning and optimization
  • Design core systems performance and troubleshooting logs
  • Support Splunk on Unix, Linux and Windows-based platforms
  • Perform data mining and analysis, utilizing various queries and reporting methods
  • Solve complex Integration challenges and debug complex configuration issues
  • Technical writing/creation of formal documentation such as architecture diagrams, technical designs, and SOPs

Required Qualifications

  • Bachelors degree in Computer Science, Information Security or related technical field; or 7 - 9 years of relevant work experience
  • Splunk experience - minimum 2 to 5 years' experience architecting, configuring, deploying, and customizing the tool
  • Strong understanding of Splunk configuration files and architecture
  • Knowledge of advanced search and reporting commands
  • Demonstrated ability to create complex dashboards, forms, and visualizations
  • Understanding of System Log Files and other structured and non-structured data
  • Intermediate level understanding of Solaris, Linux and Windows operating systems
  • Current Secret Clearance required; SSBI preferred
  • Security+ certification
  • Effective verbal and written communication skills that include the ability to describe highly technical concepts in non-technical terms

Desired Qualifications

  • Splunk Architect or Splunk Administrator certification preferred
  • Knowledge of a scripting language and UNIX command line
  • Strong knowledge of application monitoring and event management
  • Knowledge in the Common Information Model (CIM), Understand the relationship between the CIM and knowledge objects, ability to create a lookup file and create a lookup definition& field aliases and calculated fields
  • In depth understanding of Splunk license management preferred

Posted By

Nick Perrine

Dice Id : 10489004
Position Id : 561268
Have a Job? Post it

Similar Positions

Splunk SME with ITSI exp
  • KMM Technologies, Inc
  • Reston, VA
Splunk Engineer
  • Synapse Business Systems
  • Reston, VA
Splunk Administrator
  • TekStream Solutions, LLC
  • Washington, DC
Splunk Administrator
  • GEICO
  • Chevy Chase, MD
Splunk Subject Matter Expert
  • CyberData Technologies
  • Rockville, MD
Splunk Engineer
  • Net2Source Inc.
  • Reston, VA
Splunk Knowledge Management Specialist
  • NTT DATA, Inc.
  • Washington, DC
Senior Splunk Security Specialist
  • Maximus, Inc.
  • Lanham, MD
Splunk Admin/Engineer
  • Infojini
  • Reston, VA
Splunk Consultant/Architect
  • Nasscomm, Inc.
  • Herndon, VA
Splunk Analyst/ Engineer
  • NIKSOFT SYSTEMS CORP
  • Falls Church, VA