Splunk Engineer
Job Description
Splunk Engineers collaborate closely with cross-functional teams to understand data requirements and translate them into actionable insights. They set up data ingestion pipelines, ensure data accuracy and security, create custom dashboards and queries, and provide ongoing support and optimization. Responsibilities
Design, develop, and implement complex Splunk environments (on-premises and cloud-based).Monitor and optimize Splunk infrastructure performance and availability.Troubleshoot and resolve Splunk data ingestion, indexing, and search head issues.Create and customize queries, dashboards, and alerts for system visibility and analytics.Collaborate with IT teams to gather requirements and develop use cases.Manage Splunk user roles, permissions, and role-based access control.Perform regular maintenance tasks such as indexer cluster management, data retention policies, and log rotation.Develop and maintain technical documentation including architecture diagrams, playbooks, and runbooks.Conduct upgrades and apply patches to Splunk components.Automate tasks using scripting languages (Python, Bash, PowerShell).Analyze and enhance data onboarding processes for accuracy and efficiency.Mentor and train junior team members on Splunk best practices.Stay current with new Splunk features, industry trends, and compliance requirements.Support security incident response and forensic investigations using Splunk.Participate in cross-functional meetings to align Splunk infrastructure with organizational goals.
Qualification
Bachelor’s degree in Computer Science, IT, or related field3+ years of experience with Splunk design, implementation, and administrationStrong knowledge of Splunk architecture, data ingestion, indexing, and search processesExperience creating queries, dashboards, and alertsProficiency in scripting (Python, Bash, PowerShell) for automationFamiliarity with Splunk security features and role-based access controlTroubleshooting skills for infrastructure and performance issuesExperience with cluster management, retention policies, and upgradesAbility to document systems and mentor junior team membersKnowledge of security monitoring and incident response using SplunkSplunk certifications preferred (Core User, Power User, Admin) SkillsSplunk Enterprise & Splunk Enterprise Security (ES)Dashboard design and SPL query optimizationPython and shell scriptingData analysis and log managementLinux/Unix administrationNetworking and security fundamentals
About The Global Business Services
A dynamic offshore hub based in the Philippines, serving as a vital extension of its parent organization’s operations. As an internal support center, it delivers high-impact services across multiple departments, including technology, compliance, finance, and operations, supporting various lines of business.