24 Aug
|
Perydot
|
Mumbai
Splunk L2 Administrator
- - Perform advanced administration of Splunk Enterprise/Splunk Cloud, including Search Heads, Indexers and Forwarders.
- Troubleshoot complex data ingestion, indexing, parsing, source type and field-extraction issues.
- Configure and optimize data inputs, routing, indexes, retention and ingestion pipelines.
- Develop and optimize SPL queries, dashboards, reports, alerts and scheduled searches.
- Perform performance tuning of searches, indexing, storage and Splunk infrastructure.
- Manage Splunk upgrades, patches, configuration changes, health checks and maintenance activities.
- Support Splunk Enterprise Security, including CIM, data models, correlation searches and security content.
- Troubleshoot and resolve complex issues involving Forwarders, Indexers,
Search Heads, clustering and distributed search.
- Identify permanent fixes and provide technical recommendations to L1/SOC teams.
- Maintain technical documentation, architecture/configuration records and coordinate with OEM, infrastructure, security and application teams for vendor escalations.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Splunk Administrator (Mumbai)
🏢 Perydot
📍 Mumbai