Posted on: 17/07/2025
Requirement Splunk SME / Architect (C1)
Expertise Splunk ITSI Enterprise / Cloud (Design & Development)
Key responsibilities - Design, implement, and configuration of Splunk ITSI Enterprise / Cloud for the Client.
- Present and demonstrate Splunk ITSI capabilities to the prospective clients
- Designs and optimizes Splunk platform architecture for large-scale and distributed deployments
- Establishes best practices and development standards, and ensures that the team adopts them
- Maintains a close partnership with Splunk on feature requests, upgrade planning, and product roadmap alignment
- Develops and customizes Splunk apps and dashboards and Builds advanced visualizations
- Performs assessment of Monitoring estate and derive at recommendations with quantified business benefits
Key Skills Design of Splunk platform with multiple data sources as Metrics, Windows sources, HEC, ,etc
Migration / upgrade planning & execution for Splunk platform
Should perform in-depth diagnostic of incidents on any specific application and identify the root cause of problems
Should document resolved issues in an effective manner for knowledge management, cross-train peers with tool usage and assist in creation of best-practices, work independently on multiple assignments,
proactively prioritizing focus and effort
Should have good hands on knowledge of Deployment , Administration and Development of the Splunk
Enterprise platform / Splunk App for ITSI
Should have hands on :
- IT service Intelligence - experience in SPLUNK for Server monitoring - Windows and Unix
- Service Analyzer / KPI creation
- Deep Dives, Adaptive thresholding / Event Correlation
- Trouble shooting / Administration of Splunk ES & ITSI
- Development of dashboards
- Integration of Splunk with APM or other tools
- Experience in integrating other tools like JIRA, ServiceNow, Jenkins, AWS etc. with Splunk using 3rd party app
- Proficient in writing SPL queries and experience in advanced level dashboarding, scheduled jobs, Data models, Lookups and other knowledge objects
- Experience in performance optimization of existing dashboards, reports and alerts
- Experience in MLTK, DB Connect Apps and experience in any one of the scripting tools (Python / Shell)
- Knowledge on Premium App like ES, Phantom, UBA, Splunk Observability
Good to have Skills :
- Experience in scripting, Ansible / Puppet for Run book Automation
- Fair understanding of AWS cloud and cloud services
- Splunk certified Architect Professional for ITSI
Did you find something suspicious?
Posted By
Posted in
DevOps / SRE
Functional Area
IT Security
Job Code
1514224
Interview Questions for you
View All