Splunk Administrator
Current• Perform searching, monitoring and analyzing machine generated data via Splunk web-style user interface.• Manage distributed on-prem and cloud Splunk deployments across a diverse client base.• Handle day-day Splunk service alerts and tickets for the customer servers, routers and firewalls.• Provide good customer support by answering calls and managing the Splunk Enterprise and Cloud environments.• Continuously monitor the clients Splunk… Show more • Perform searching, monitoring and analyzing machine generated data via Splunk web-style user interface.• Manage distributed on-prem and cloud Splunk deployments across a diverse client base.• Handle day-day Splunk service alerts and tickets for the customer servers, routers and firewalls.• Provide good customer support by answering calls and managing the Splunk Enterprise and Cloud environments.• Continuously monitor the clients Splunk servers in Icinga (monitoring tool) and troubleshooting to resolve the issues.• Install Splunk software, created user accounts and assigned roles for the clients.• Work on different Operating Systems like Windows, Linux (Red Hat & Ubuntu) to configure the necessary Splunk configuration files and directories.• Install various Apps, Add-ons from Splunk base as part of the Data Onboarding.• Configure data ingestion into Splunk via a variety of methods, including syslog, HEC, dbconnect, universal forwarders and API inputs.• Help Customers to resolve multiple Splunk related issues but not limited to Broken Hosts, Splunk daemon, systemd, indexer health check and Splunk GUI messages.• Configure NTP (Network Time Protocol) on Multiple Hosts using Puppet software configuration management tool to synchronize the clocks of computers over a network.• Create and manage Splunk web/SSL certificates for Splunk and Syslog.• Use Regex to extract the fields, break events and to replace characters in a field when injecting the logs from a source into Splunk.• Write custom parsing configurations for Splunk.• Create and update syslog filters for data ingestion into Splunk.• Work with SOC and clients to audit Splunk logs for CIM compliance across variety of data sources.• Optimized the Splunk disk space and Operating system disk space by using concepts like vg(volume group) and LVM(Logical Volume Management). Show less