Splunk Administrator

Everforth Apex
Austin, United States of America
yesterday

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate

Job location

Austin, United States of America

Tech stack

Microsoft Active Directory
Amazon Web Services (AWS)
Azure
Bash
Cloud Computing
Computer Security
DNS
Monitoring of Systems
Networking Hardware
Python
Windows Server
Parsing
Powershell
Security Information and Event Management
Systems Integration
Transmission Control Protocol (TCP)
Data Logging
Scripting (Bash/Python/Go/Ruby)
Cloud Platform System
Data Ingestion
Connectivity Problems
Indexer
Firewalls (Computer Science)
Splunk
Network Server
Cisco networks
User Administration
User Accounts

Job description

We are seeking a Splunk Administrator to support the day-to-day administration, maintenance, and optimization of an enterprise Splunk environment. This role will focus on platform support, data onboarding, monitoring, troubleshooting, and user support while ensuring the Splunk environment remains stable, secure, and highly available., Splunk Administration

  • Administer and maintain Splunk Enterprise and/or Splunk Cloud environments.
  • Monitor platform health, system performance, and indexing operations.
  • Configure and support forwarders, indexes, search heads, and data inputs.
  • Manage user accounts, roles, permissions, and authentication integrations.
  • Perform routine maintenance, upgrades, patching, and system updates.
  • Assist with backup, recovery, and business continuity processes.

Data Onboarding & Monitoring

  • Support onboarding and configuration of new data sources including servers, applications, network devices, and security tools.
  • Monitor and troubleshoot data ingestion, parsing, and indexing issues.
  • Maintain data retention policies and index management.
  • Verify data quality and ensure reliable log collection.

Dashboard & Reporting Support

  • Create and maintain dashboards, alerts, reports, and visualizations.
  • Develop and modify Splunk searches using SPL (Search Processing Language).
  • Support operational and security monitoring requirements.
  • Assist users with report creation and search optimization.

Troubleshooting & Support

  • Investigate and resolve platform performance issues.
  • Troubleshoot search delays, data latency, and connectivity problems.
  • Work with infrastructure, networking, and security teams to resolve system issues.
  • Document configurations, procedures, and support processes., Splunk
  • Splunk Enterprise
  • Splunk Cloud
  • Search Processing Language (SPL)
  • Data Onboarding
  • Dashboard Development
  • Alert Configuration
  • Report Development
  • User Administration

Infrastructure

  • Linux/Unix Administration
  • Windows Server
  • TCP/IP Networking
  • DNS
  • Firewalls
  • Active Directory

Security & Monitoring

  • SIEM Fundamentals
  • Log Management
  • Security Monitoring
  • Basic understanding of NIST and cybersecurity best practices

Requirements

The ideal candidate will have hands-on experience administering Splunk, supporting data ingestion, building dashboards, and troubleshooting issues across infrastructure, application, and security monitoring use cases., * 2-5 years of Splunk administration experience.

  • Experience supporting Splunk Enterprise or Splunk Cloud environments.
  • Knowledge of:
  • Splunk Forwarders
  • Index Management
  • Search Heads
  • Data Inputs and Parsing
  • SPL Queries
  • Experience onboarding and troubleshooting log sources.
  • Understanding of monitoring, logging, and observability concepts.
  • Strong troubleshooting and analytical skills., * Experience integrating Cisco technologies with Splunk.
  • Splunk Core Certified User or Splunk Core Certified Power User certification.
  • Experience with scripting using PowerShell, Python, or Bash.
  • Exposure to cloud environments such as AWS or Azure.
  • Experience supporting enterprise monitoring or security operations teams.

About the company

Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico. Everforth Apex uses a virtual recruiter as part of the application process. Click for more details. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at

Apply for this position