{bc}
linkedin

Splunk Administrator

HyperThink Systems
Baladiyat ad Dawhah, QAT
Full-time
Mid-Senior
Onsite
Discovered 2 weeks ago
Splunk EnterpriseSplunk CloudSplunk administrationSplunk IndexersSearch HeadsUniversal Forwarders
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Splunk EnterpriseSplunk CloudSplunk administration
Smart Apply

Full Job Posting

About the Role

The role is responsible for hands-on administration, configuration, optimization, and day-to-day operation of the Splunk platform in an enterprise environment.

The primary focus is Splunk platform administration rather than SOC monitoring, SIEM operations, or incident response without hands-on Splunk administration experience.

Location

  • The listed location is Doha, Qatar.

Key Responsibilities

  • Administer and maintain Splunk Enterprise and Splunk Cloud environments.
  • Manage indexers, search heads, forwarders, deployment servers, and Splunk clusters.
  • Configure forwarders and perform data onboarding, parsing, and indexing from infrastructure and security sources.
  • Manage Splunk configuration files, platform health, performance, capacity, licensing, and storage utilization.
  • Support upgrades, patching, maintenance, and troubleshooting of indexing, search, and ingestion issues.
  • Develop SPL searches, dashboards, reports, and alerts.
  • Implement role-based access control and LDAP, SAML, or MFA integrations.
  • Support Splunk Enterprise Security, security data onboarding, and log integrations from enterprise and cloud sources.

Must-Have Skills

  • Splunk Enterprise, Splunk administration, indexers, search heads, Universal Forwarders, and Heavy Forwarders.
  • Deployment Server, Indexer Clustering, Search Head Clustering, Splunk configuration, and data onboarding.
  • SPL, performance tuning, capacity planning, licensing, and Linux.

Preferred Qualifications

  • Splunk Enterprise Security, CIM, custom technology add-ons, AWS, Azure, or GCP log onboarding experience is advantageous.
  • Python, Bash, REST API, or Splunk SOAR/Phantom experience is advantageous.
  • Splunk Enterprise Certified Admin or Splunk Core Certified Power User certification is preferred.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at HyperThink Systems