Splunk Engineer Resume
5.00/5 (Submit Your Rating)
SUMMARY
- Talented professional with over 4 years Splunk Engineering experience, seeking to utilize a proven ability to implement strategies and achieve targeted goals.
- While dedicated and enthusiastic about my work, I possess widespread experience in Data Onboarding, Creation of visualizations, installation of apps and addons, Data normalization. A highly organized individual with a successful background in integrating network and endpoint security tools into the Splunk ES, setting up and scaling up a distributed environment, and monitoring the Splunk infrastructure as well as documenting and creating standard operating procedures for our instances.
- An excellent team player, with a reputation for efficiently completing work assignments to ensure client/company requirements are met, resulting in minimal risk exposure to the company.
TECHNICAL SKILLS
Operating Systems: Windows Server 2012, Red Hat Enterprise Linux 5, 6, 7, Solaris 10, 11
Applications/Software/Databases: Splunk Enterprise, Splunk Forwarder, Puppet, AWS, Cisco UCS, Nagios, Gitlab, Centrify, NetBackup 7x, VMWare ESXI Version 6, Cisco ASA, tenable nexus, Rapid7, threatconnect, bluecoat, fireeye, carbon black, cisco firepower
Languages: HTML, Bash, Python
Hardware: Sun servers X2 - 4 and X4-2B series, HP ProLiant DL380, DL585, PowerEdge R610, R620, R715
PROFESSIONAL EXPERIENCE
Confidential
Splunk Engineer
Responsibilities:
- Manage the onboarding of new event feeds into rsyslog for heavy forwarders
- Create indexes, forwarder & indexer management, Splunk Field Extractor IFX, Search head Clustering, Indexer clustering, Splunk upgradation.
- Solve technical problems and execute change management tickets through Service Now
- Create dashboards for daily Splunk monitoring to highlight key trends in over 80 indexes
- Execute health checks to resolve orphaned knowledge objects and skipped searches
- Use the Splunk Common Information Model to normalize fields across different vendors for standardization.
- Integrate network and endpoint security tools into the Splunk ES.
- Correlate events from a Network, OS, Anti - Virus, IDS/ IPS, Firewalls or Proxies and analyzing them for possible threats.
- Assist in incident response initiative by conducting evidence collection, containment and providing remediation assistance as needed
- Install, test, and maintain network security hardware and software.
- Correlate logs from different sources and fine tune them to decrease false positive ratio
- Identify vulnerabilities, recommend corrective measures and ensure the adequacy of existing information security controls.
- Create, modify and tune Splunk ES correlation rules to adjust the specifications of alerts and incidents
Confidential
IT Technician Help Desk Support
Responsibilities:
- Created support tickets using Connect - Wise web-based ticketing system to accurately document files.
- Responsible for assisting our Network team with monitoring the Windows 2008 R2, and 2012 Servers.
- Installed, repaired, maintained, and upgraded Windows desktop and Windows notebook computers.
- Worked the Help Desk providing PC and Mobile support, diagnosing, troubleshooting and resolving client issues with hardware maintenance, installations and upgrades.
- Knowledge of remote desktop connections, peer to peer file sharing and other applications associated with remote IT assistance.
- Handled different clients and different systems simultaneously
- Answered phone calls, greeting clients, and scheduled appointments.