We are seeking an experienced and highly motivated Splunk Senior Developer. The ideal candidate will be possessing deep technical skills in data onboarding, complex dashboard/alert development & normalization. This role is crucial for ensuring the stability and performance of our large -scale, hybrid Splunk environment.
Key Responsibilities
* Design, develop, and maintain complex Splunk dashboards, visualizations, and custom reports & alerts to provide clear operational and security insights.
* Serve as the primary developer for the creation and management of Splunk Knowledge Objects (KOs), including lookups, field extractions, and event types.
* Ensure data consistency and search efficiency by developing and enforcing Common Information Model (CIM) compliant Data Models and performing data normalization.
* Collaborate with Cyber Security Analysts to translate security requirements.
Required Qualifications
* 5+ years of hands -on experience as a Splunk Developer or Engineer in a complex, enterprise environment.
* Demonstrated expertise in Splunk Search Processing Language (SPL) for complex queries, data manipulation,
and optimization.
* Proven experience with all key data onboarding methods: UF, Syslog, HEC, and custom Add -on development.
* Knowledge of Splunk Data Model acceleration and CIM normalization.
* Strong understanding of Splunk components or Hands -on experience working in Splunk in a hybrid cluster environment.
* Proficiency in scripting languages (e.g., Python, Bash) for automation and Splunk administration tasks.