Splunk Platform Engineer
LEVY PROFESSIONALS
Amsterdam, Netherlands
3 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
EnglishJob location
Amsterdam, Netherlands
Tech stack
Microsoft Windows
Bash
Cloud Computing
Data Governance
Linux
Disaster Recovery
Python
Windows Server
Performance Tuning
Powershell
Ansible
Server Administration
Scripting (Bash/Python/Go/Ruby)
System Availability
Mitre Att&ck
Indexer
Kubernetes
Terraform
Splunk
Job description
- Platform Resilience: Architecture, deployment, and management of Indexer clusters, Search Head clusters, and Forwarders to ensure high availability and disaster recovery.
- Data Optimization: Successful design of index strategies and retention policies that control ingestion volume and ensure CIM compliance.
- Security Enablement: Effective tuning of Splunk Enterprise Security (ES) and maintenance of threat detection coverage aligned to MITRE ATT&CK.
- Hybrid Integration: Seamless integration of Splunk Observability Cloud with on-prem environments to enable APM and infrastructure monitoring.
- Governance: Precise license management and capacity planning to provide clear KPI reporting to stakeholders.
You will:
- Perform version upgrades, patching, and lifecycle management for Splunk Enterprise.
- Optimize search performance, dashboard load times, and resource utilization.
- Implement correlation searches, risk-based alerting, and notable event workflows.
- Support Kubernetes, cloud workloads, and application telemetry pipelines.
- Manage data governance, compliance controls, and ingestion forecasting.
Requirements
Do you have experience in Windows?, * Proven track record in Splunk Enterprise architecture, including multi-site clustering and deployment server configuration.
- Deep experience in Data Optimization, specifically with SPL performance tuning, Data Model Acceleration (DMA), and storage tiering.
- Hands-on experience with Splunk Enterprise Security (ES) and Risk-Based Alerting (RBA).
- Familiarity with Splunk Observability Cloud and OpenTelemetry pipelines.
Profile
- Technical Specialist: Strong skills in Linux/Windows server administration and scripting (Python, Bash, or PowerShell).
- Automation Mindset: Familiarity with Infrastructure as Code (Ansible or Terraform) is highly preferred.
- Analytical: Ability to map threat frameworks (MITRE ATT&CK) and integrate SOC processes.
- Communicator: Capable of translating platform KPIs into actionable reports for leadership.
About the company
Since 2000, we have provided professional solutions to organizations ranging from tech start-ups to global players. From our offices in Amsterdam and London, we have built an international and local network of skilled employed professionals and contractors, fueled by our passion for connecting skills with projects. Over the years, we have fulfilled over 1,700 requirements and consistently have 250+ professionals recruited and relocated from 14 countries allocated to various projects. Our strength is the way that we see and treat people. This will always be a key factor in our strategy for many years to come.