08 Aug
Senior Splunk Architect
Alaska, Anchorage / mat-su , 99503 Anchorage / mat-su USA

Vacancy expired!

RESPONSIBILITIES:Kforce has a client that is seeking a Senior Splunk Architect in Anchorage, AK.Overview:The Senior Splunk Architect will provide overall architecting and engineering support for a large Splunk environment, spanning security, and operational roles. Additionally, you will support the full system engineering life cycle as new data sources are brought online, including requirements analysis, design, integration, test, documentation, and implementation following defined best practices and operational workflows.As a Senior Splunk Architect, you will be the technical architecture SME leading the Splunk engineering members, Security Engineers, and the Incident Response team to gather requirements, tune Splunk and perform troubleshooting as required.The Senior Splunk Architect will implement and optimize Splunk and lead the development of a solution roadmap, gap analysis on the current solution environment and optimized future state, methods for optimizing alerting and monitoring within Splunk.Duties: Develop and implement techniques and custom scripts, as needed to facilitate automation, integration, and operational efficiencies for Splunk ES and other applications, queries, knowledge objects, and data models Senior Splunk Architects enhance technical documentation of Splunk architecture and configuration, collaborate with other engineers and analysts to enhance the development of actionable business and cyber intelligence; Perform troubleshooting performance issues and combatting threats; And educate management and peers about Splunk related issues Work with other team members and will be required to interact with application support personnel and Incident Responders to gather requirements, perform troubleshooting, and provide assistance with the creation of Splunk search queries and dashboards Interact with senior management, customers, and guide teammatesREQUIREMENTS: Experienced in managing a Linux environment, editing, and maintaining Splunk configuration files and apps Experienced in syslog-ng on Linux and using this as a primary data source to feed Splunk and Enterprise Security Experience with the Splunk Common Information Model (CIM) and manipulating data sources to ensure SIM compliance Extensive experience working with Splunk Familiar with Splunk Deployment Methodologies The candidate should be familiar with recognizing and onboarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the key trends of the dataKforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Vacancy expired!


Related jobs

Report job