We are seeking an experienced and highly motivated Splunk Senior Developer. The ideal candidate will be possessing deep technical skills in data onboarding, complex dashboard/alert development & normalization. This role is crucial for ensuring the stability and performance of our large -scale, hybrid Splunk environment.
Key Responsibilities
Design, develop, and maintain complex Splunk dashboards, visualizations, and custom reports & alerts to provide explicit operational and security insights.
Serve as the primary developer for the creation and management of Splunk Knowledge Objects (KOs), including lookups, field extractions, and event types.
Ensure data consistency and search efficiency by developing and enforcing Common Information Model (CIM) compliant Data Models and performing data normalization.
Collaborate with Cyber Security Analysts to translate security requirements.
Required Qualifications
5+ years of hands -on experience as a Splunk Developer or Engineer in a complex, enterprise setting.
Demonstrated expertise in Splunk Search Processing Language (SPL) for complex queries, data manipulation,
and optimization.
Proven experience with all key data onboarding methods: UF, Syslog, HEC, and custom Add -on development.
Knowledge of Splunk Data Model acceleration and CIM normalization.
Strong understanding of Splunk components or Hands -on experience working in Splunk in a hybrid cluster workplace.
Proficiency in scripting languages (e.g., Python, Bash) for automation and Splunk administration tasks.