[Remote] Splunk Technical Lead – Enterprise Security & Platform
Note: The job is a remote job and is open to candidates in USA. HCL Global Systems Inc is seeking a Splunk Technical Lead to support a client's Splunk Enterprise Platform and Splunk Enterprise Security environment. The role provides technical leadership across Splunk administration, architecture, engineering, integrations, optimization, upgrades, migrations, automation, troubleshooting, documentation, and mentoring.
Responsibilities
- Administration, configuration, maintenance, and technical support of the Splunk Enterprise and Splunk Enterprise Security platforms
- Successful onboarding and integration of assigned enterprise applications, systems, infrastructure, and log/data sources into Splunk
- Configuration and optimization of log ingestion, parsing, normalization, indexing, retention, search performance, and data-management processes
- Development, enhancement, and maintenance of Splunk searches, alerts, dashboards, reports, data models, applications, add-ons, and security/compliance content
- Development and maintenance of custom Splunk solutions and automation using SPL, Python, Bash, SimpleXML and other applicable technologies
- Technical recommendations and implementation support related to Splunk architecture, infrastructure standards, capacity, performance, scalability, high availability, upgrades, platform refreshes, and lifecycle management
- Support for Splunk integrations with business-critical enterprise applications, cloud platforms, security technologies, and observability systems
- Technical support for platform migrations, upgrades, deployment automation, CI/CD processes, and infrastructure modernization activities as assigned
- Troubleshooting, root-cause analysis, and resolution recommendations for Splunk platform, ingestion, integration, performance, and production-support issues
- Technical documentation covering configurations, architecture, integrations, deployment procedures, operational processes, troubleshooting procedures, and implemented solutions
- Knowledge transfer, technical guidance, and mentoring to client and project team members regarding Splunk administration, engineering, architecture, and operational best practices
Skills
- Splunk Enterprise & Splunk Enterprise Security (ES)
- Splunk SPL / Data Analytics
- Python / Bash Scripting & Automation
- Have you personally administered Splunk Enterprise Security (ES), including data onboarding, normalization, CIM mapping, and security content?
- Have you performed Splunk platform upgrades, migrations, infrastructure refreshes, or major version changes in an enterprise environment?
- Have you designed or supported Splunk architecture involving indexers, search he, forwarders, clustering, and high availability?
- Services may be performed remotely, with preference for resources located near Dallas, Texas or Redmond, Washington
Benefits
- Services may be performed remotely
Company Overview
Company H1B Sponsorship