Splunk Lead
CurrentProvide Splunk Architect services for Splunk Enterprise with clustered environment for various Department of the Navy contracts.• Provide Splunk leadership to junior Splunk staff for PMW-220 customer.• Provide architecture-level design and consultation for a 7TB implementation for PMW-220 customer.• Implemented Security Assertion Markup Language (SAML) Single Sign ON SSO for all Splunk instances where sign on is required for PMW-220 customer.• Reviewed and identified inaccuracies in Architecture diagram for PMW-220 customer.• Developed and provided Architectural design changes as well as defined path forward for PMW-220 customer that would enable the program to move from two discrete Splunk environments with no failover into a single integrated Splunk environment with complete fail over protection.• Singularly provide architect, administrative, operations and maintenance support for a 500GB implementation for PMW-205 customer. This includes onboarding to meet OMB M-21-31 requirements.• Develop proactive course of actions to optimize Splunk.• Troubleshooting new and current data collection issues• Troubleshooting system issues that make the system unstable or unusable.• Develop advanced custom Splunk content including scheduled searches, reports, dashboards, etc.• Transitioned all of our Splunk instances from manual sign on via LDAP to CAC single sign on (SSO).• Built a fully distributed Splunk version 9.0 environment on development (dev) host for dev testing.• Manage all certificates on the Splunk host through the environment for PMW-220 customer.• Provide administrative support for the Splunk Enterprise Security Application.