Splunk Administrator - Hybrid
Location: Chennai
Experience: 3 Years
We are hiring a Splunk Administrator with around 3 years of experience. The role is primarily focused on Splunk (80%), along with supporting responsibilities in Linux and AWS environments.
The candidate will be responsible for managing and supporting Splunk settings, ensuring smooth data ingestion, monitoring, troubleshooting, and maintaining system availability in a production support setup.
Requirements:
3+ years of IT experience with strong hands-on Splunk Administration
Experience with Splunk Enterprise / Splunk Cloud (dashboards, alerts, reports, data onboarding)
Solid hands-on experience in Linux/Unix environments
Basic knowledge of AWS (EC2, S3, IAM, CloudWatch)
Valuable understanding of SPL (Search Processing Language)
Experience in 24x7 production support with rotational shifts
Ability to handle incidents and perform root cause analysis (RCA)
Basic knowledge of Shell/Python scripting
Valuable to Have:
Experience with Splunk forwarders and index management
Understanding of ITIL processes (Incident, Problem, Change Management)
Experience integrating AWS logs with Splunk