What are the responsibilities and job description for the Cybersecurity Architecture and Engineering - Splunk Architect position at Sky Tech Services?
Role Description
The Splunk Architect will lead the design and implementation of Splunk solutions, ensuring optimal performance and scalability. This role involves collaborating with various teams to gather requirements, develop data ingestion strategies, and create dashboards and reports that provide actionable insights.
Design Tasks
- Design and implement Splunk architecture, including data ingestion, indexing, and search optimization.
- Manage Splunk infrastructure including indexers, search heads, forwarders, and deployment servers.
- Collaborate with stakeholders to gather requirements and translate them into technical specifications.
- Develop and maintain Splunk dashboards, reports, and alerts to monitor system performance and security.
- Optimize Splunk performance through effective data management and query tuning.
- Ensure data integrity and security within the Splunk environment.
- Provide guidance and best practices for Splunk usage across the organization.
- Troubleshoot and resolve issues related to Splunk infrastructure and applications.
- Stay updated on Splunk features and industry trends to recommend improvements.
- Establish best practices for Splunk administration, including user access controls, data retention policies, and system monitoring.
Basic Requirements
- Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalent experience).
- 5 years of experience with Splunk administration, architecture, and engineering.
- Strong knowledge of Splunk Enterprise, Splunk ES, and Splunk apps/add-ons.
- Experience with data onboarding, parsing, and field extraction.
- Proficiency in SPL (Search Processing Language).
- Familiarity with IT operations, security monitoring, and incident response processes.
- Experience with Linux/Unix and Windows operating systems.
- Excellent problem-solving and communication skills.
- Strong communication and collaboration skills.
Preferred Qualifications
- Splunk Certified Architect or Splunk Certified Admin.
- Experience with scripting languages (Python, Bash, PowerShell).
- Knowledge of cloud platforms (AWS, Azure, GCP) and Splunk Cloud.
- Experience integrating Splunk with other security tools (SIEM, SOAR, etc.).
Pay: $145,000.00 - $165,000.00 per year
Work Location: In person
Salary : $145,000 - $165,000