Sr. Splunk Admin/developer Resume
PROFESSIONAL SUMMARY:
- Splunk Modules: Splunk 5.x/6.x, Splunk Cloud, Splunk DB Connect, Splunk Enterprise, Splunk on Splunk, Splunk IT Service Intelligence, Splunk Web Framework.
- OS: Red Hat Linux 4.x/5.x/6.x, Unix (Sun Solaris, Aix, HP)
- Around 7 years of experience as Splunk, Linux/UNIX, performed activities including requirement analysis, design, and implementations of various client server based applications using Splunk 5.x./ 6.x.
- Around 4 years of experience as Splunk Admin/Developer, performed activities including requirement analysis, design and implementations of various client server based applications using Splunk 5.x, Splunk 6.x.
- Experienced in Preparing, arranging and testing Splunk search strings and operational strings.
- Proficiency with the usage of various search commands like stats, chart, time chart, transaction, strptime, strftime, eval, xyseries, where, table and experience with the usage of Extract key word, sed and used Macros to reuse the searches etc.
- Hands on experience in using the commands like rex, erex, sed and IFX to extract the fields from the log files.
- Extensive knowledge in creating accurate reports using XML, Dashboards, visualization and pivot tables for the business users.
- Expertise in optimizing traffic across network using Combiners, joining multiple schema datasets using Join and organizing data using Practitioners and Buckets.
- Knowledge on configuration files like props. conf, Transforms.conf, output. conf etc.
- Maintained and managed assigned systems, Splunk related issues and administrators.
- Good knowledge on Objects such as Event Types, Tags, Field Extraction (Using Regular Expression), Lookups etc.
- Provided technical services to projects, user requests and data queries as well as supported change management processes.
- Expertise in Monitoring all Critical Applications to save approximately 50% of Business Hours
- Analyzed and monitored incident management and incident resolution problems.
- Strong experience in splunk dashboard creation, app development, validation etc. Also aware of various quality concepts like SCM.
- Relevant experience with Splunk SDK for C#, Python, PHP and Java scripts.
- Hands on experience with Amazon web services (AWS).
- Have experience in configuring Indexers, Forwarders (Universal and Heavy), Search Heads, Deployment/Management servers, Deployment clients.
- Configuring and Managing Tags and Event types.
- Index Time Extraction and Search Time Extraction of Fields, Parsing the Data in Forwarders
- Creating Applications on Splunk to analyze the Big Data.
- Indexing the data with the help of Scripted Input.
- Development of SPLUNK Queries to generate the Reports.
- Created clustered and non - clustered indexes for increasing the performance, also monitored the indexes by troubleshooting any corrupt indexes by removing fragmentation from indexes.
- Experience in creating SQL loader scripts to load data from flat files into the database and also creating External Tables to manage data which is store Confidential the OS Level.
TECHNICAL SKILLS:
Splunk Modules: Splunk 5.x/6.x, Splunk Cloud, Splunk DB Connect, Splunk Enterprise, Splunk on Splunk, Splunk Hadoop and BigData, Splunk IT Service Intelligence, Splunk Web Framework
Operator System: Red Hat Linux 4.x/5.x/6.x, Sun Solaris 2.6/7/8/9,10 HP-UX 10.x/11.x, Windows NT 4.0/2000/2003/ XP
Scripting Languages: UNIX Shell Scripting (Bourne, C and Bash), Bash, KSH Python & Perl
RDBMS: MS - SQL Server, Oracle, Sybase, DB2 MS Access
Hardware: Sun Fire 280R/V 480/4800/3800/12 K/15K Servers
PROFESSIONAL EXPERIENCE:
Confidential, Plano, TX
Sr. Splunk Admin/Developer
Responsibilities:
- Installing, Configuring and Administering Splunk Enterprise Server 6.0/6.3.2 and Splunk Forwarder 6.0 on Red hat Linux and Windows severs.
- Created automation in pulling data from share point and adding those exceptions to the summary searches as part of Splunk automation.
- Installation and configuration of Splunk universal and heavy forwarders in different operating systems..
- Worked on Knowledge Objects such as Event Types, Tags, Field Extraction (Using Regular Expression) and Lookups etc.
- Define and Modify alerts for application team for efficient handling of production issues.
- Collaborated with teams like Java and .net to integrate splunk using SDKs to make sure that they can easily direct the dashboards using a single button.
- Installed Splunk SDK for C# and worked with Saved searches, Reports, Jobs, Configurations, Inputs and applications using SDK library code.
- Installed Splunk SDK for C# in Visual studio using NuGet packages or manually by inserting the ZIP into Project.
- Create and schedule search jobs based on the requests by internal application teams.
- Creating Dashboards with the help of Pivot in 6.2 (Creating Data Models, Data Object).
- Index Time Extraction and Search Time Extraction of Fields, Parsing the Data in Forwarders.
- Integrated Service Now with Splunk to generate automatic triggered alerts.
- Expertise with Splunk UI/GUI development and operations roles.
- Worked closely with Opsview and Nagios teams to monitor networks and to create alerts in Opsview.
- LDAP Configuration in Splunk as well as segregation of Users on the basis of their Roles.
- Worked closely with the teams to design and develop ArcSight architecture components and related upgrades. Integrated splunk Enterprise with ArcSight.
- Installed and configured CEF (Common event format) splunk app to get data from ArcSight connectors.
- Developed Splunk Infrastructure on Cloud (Amazon AWS) in coordination with infrastructure Support Teams.
- Installing and Configuring Indexer, Search Head, License Server as well as Deployment Server on Cloud (Amazon AWS).
- Index Time Extraction and Search Time Extraction of Fields, Parsing the Data in Forwarders.
- Search Head Clustering, Deploying Configuration Bundles through Deployer, etc.
- To extend the lookup functionality using KV Store Collection.
- Forwarder Management like installing forwarders on different machines.
- Integrated Service Now with Splunk to generate automatic triggered alerts.
- Created dashboards like JVM, web Traffic and for different portals.
- Collaborated with internal teams to integrate data feeds to a centralized Splunk platform.
- Installed different apps from cluster master and pushed out to search heads for troubleshooting Splunk and for different purposes.
- Design and maintained production-quality dashboard.
- Created a test environment of splunk clustered environment in AWS EC2 instances and S3 storage.
- Worked on creating macros for reusing the search and for making the long search to small.
- Creation of Alerts and Dashboards Using AppDynamics.
- Trained Splunk security team members for complex search strings and ES modules.
- Managed and maintained use cases into correlation systems.
- Resolved configuration based issues in coordination with infrastructure support teams.
Technical Environment: Splunk 6X, Linux, Bash, Arc Sight, Python, Rex, TCP/UDP, LDAP, PowerShell, RESTful Services, JIRA, Scrum, Service Now, AWS, Putty, Nagios, Oracle 11g.
Confidential - Dublin, Ohio
Architect
Responsibilities:
- Prepared, arranged and tested Splunk search strings and operational strings.
- Created and configured management reports and dashboards.
- Developed, evaluated and documented specific metrics for management purpose.
- Trained Splunk security team members for complex search strings and ES modules.
- Developed Splunk infrastructure and related solutions as per automation toolsets.
- Worked and integrated Splunk app for CEF to get the data from ArcSight connectors.
- Worked closely with Nagios and ArcSight teams to get data into splunk and create alerts.
- Installed, tested and deployed monitoring solutions with Splunk services.
- Creating Dashboards according to the business needs using Advance XML
- Creating Applications on Splunk to analyze the Big Data
- Creating and Binding fields with the Splunk Meta Data with the help of Regular Expression
- Taking care of the Retention Policy of the Indexers.
- Indexing the data with the help of Scripted Input.
- Index Time Extraction and Search Time Extraction of Fields, Parsing the Data in Forwarders
- Managing "Distributed Management Console" to assign proper roles to all boxes
- Search Head Clustering, Deploying Configuration Bundles through Deployer, etc.
- Forwarding the data from a different applications to the indexers using UF/HF
- Creating Applications on Splunk to analyze the Big Data.
- Played a major role in understanding the logs, server data & brought an insight of the data for the users.
- Used Datameer to analyze the transaction data for the client.
- Extensive experience on setting up the Splunk to monitor the customer volume and track the customer activity.
- Have involved as a Splunk Admin in capturing, analyzing and monitoring front end and middle ware applications.
- Worked on setting up Splunk to capture and analyze data from various layers Load Balancers, Web servers and application servers.
- I have helped teams to on-board data, create various knowledge objects, install and maintain the SplunkApps, TAs.
- Various types of charts Alert settings Knowledge of app creation, user and role access permissions, creating and managing app, create user role Permissions to knowledge objects.
- Extensive experience on setting up the Splunk to monitor the customer volume and track the customer activity.
- Provide regular support guidance to Splunk project teams on production-quality dashboard.
Technical Environment: SPLUNK 6.1.3, SPLUNK 6.2, Oracle 11g, ServiceNow, MS SQL Server 2012, SQL server.
Confidential - Dallas, TX
Splunk Developer
Responsibilities:
- Created Dashboards, report, scheduled searches and alerts.
- Created many of the proof-of-concept dashboards for IT operations, and service owners which are used to monitor application and server health.
- Developed, evaluated and documented specific metrics for management purpose.
- Created and configured management reports and dashboards.
- Developed Splunk infrastructure and related solutions as per automation toolsets.
- Use techniques to optimize searches for better performance, Search time vs Index time field extraction. And understanding of configuration files, precedence and working.
- Field Extraction, Using Ifx, Rex Command and Regex in configuration files.
- Various types of charts Alert Settings Knowledge of app creation, user and role access permissions.
- Creating and managing app, Create user, role, Permissions to knowledge objects.
- Involved in standardizing Splunk forwarder deployment, configuration and maintenance across Linux and Windows platforms. Parsing, Indexing, Searching concepts Hot, Warm, Cold, Frozen bucketing.
- Creating REST API calls. Provided technical services to projects, user requests and data queries.
- Assisted internal users of Splunk in designing and maintaining production-quality dashboard.
- Error aggregation dashboard across all applications using Side view Utils.
- On boarding e-Commerce and other channel applications into Splunk environment.
- Summary indexes to accelerate the dashboard performance.
- Setting up alerts on critical conditions for monitoring teams for proactive monitoring.
- Supported data source configurations and change management processes.
- Installed, configured and managed B users on the Hadoop cluster.
- Involved in writing complex IFX, Rex and Multikv command to extracts the fields from the log files.
- Assisted internal users of Splunk in designing and maintaining production-quality dashboard.
Technical Environment: Splunk 6.0.1,Linux, Bash, Python, Rex, TCP/UDP, LDAP, PowerShell, Restful Services, JIRA, Scrum, Service Now, AWS, putty, SunOne WebServer 7.x, RedHat Linux 6.x, LDAP, JDBC, JDK1.7, J2EE, JSP, Servlets, JMS, XML, Oracle 11g, Solaris 10, SVN, GitHub.
Confidential
Linux Administrator
Responsibilities:
- Installed, configured, and upgraded operating systems Linux on Windows hardware.
- Monitored System performance and do kernel tuning to enhance the system Performance.
- Automation of jobs through crontab and autosys.
- Installation of packages, patch management, volume management on Suse servers using YaST.
- Applied appropriate support packages/patches to maintain system integrity.
- Performed capacity analysis, monitored and controlled disk space usage on systems.
- Monitored system activities and fine-tuned system parameters and configurations to optimize performance and ensure security of systems.
- Added servers to domain and managing the groups and user in Active Directory, installing and configuring send mail.
- Responsible for maintenance of development tools and utilities and to maintain shell, Perl automation Scripts.
- Fine-tuned Servers and configured networks for optimum performance.
- Configurations of NIS, NFS, send mail on Linux.
- Responsible for day-to-day System Administration for SUN LINUX, and Windows NT servers.
- Solaris Operating Systems upgrade, package installations, updates, patches and software fixes.
- Administered NFS Mounts.
- Responsible for troubleshooting, end user and application problems.
- Created User accounts, Mail account, groups, printer etc.
- Installed operating systems, patches, hardware, vendor software packages, system customization and documentation.
- Monitored system resources, logs, disk usage, scheduling backups and restore.
- Configured auto mounts/maps for the user accounts.
- Installed and configured Web Servers using Apache, IIS on Solaris and NT Servers.
- Worked closely with database administration staff to ensure optimal performance of databases, and maintain development applications and databases.
Technical Environment: Red Hat Enterprise Linux 4, Sun Solaris 8/9, Veritas Cluster Server, Veritas Volume Manager, Oracle 9i, HP UX, IBM AIX, WebLogic, Oracle RAC/ASM, MS Windows 2003 server.
Confidential
Linux Administrator
Responsibilities:
- Worked as Unix Administrator in IT infrastructure environment providing server administration, application administration and automation solutions to support business objectives.
- Administered a heterogeneous environment comprising MS Windows 2003 Server, Red Hat Linux and AIX. Administration involved installation, configuration, evaluation, implementation and support of strategic Business systems in a heterogeneous environment.
- Handling HP and IBM servers running on SuSe, Red hat.
- Handling day to day administration jobs in SuSe Linux and Red hat Linux.
- Installed OS using automatic installation using Autoyast and Kick start.
- Setup LDAP Client services on Linux Servers.
- Creation of LVM's on SAN using Linux utilities.
- Configured UNIX infrastructure and supported IBM RS/6000 servers running IBM AIX.
- Configured volume groups and logical volumes, extended logical volumes for file system growth needs using Logical Volume Manager commands. Maintained availability, increased capacity & performance of production machines by upgrading their hardware (disks, CPU, memory, IO board, power cooling unit, motherboard etc.) & firmware.
- Troubleshooting of all kind of OS related and hardware related issues on the Linux servers
- Performed process automation, scheduling of processes using CRON jobs.
- Designed & Implemented System Security administration policies. Systems security administration policies include: User ID/Group ID management, Password policies, password aging for Linux Users.
- Capacity planning of P Series machines with IBM Balanced Spread Sheets.
- Managed file permissions & ownership for important directories & files.
- Implemented DNS, NFS, NIS, Auto mount networking services.
- Created logical partitioning LPAR and dynamic logical partitioning DLPAR defining virtualization on IBM Pseries servers using HMC.
Technical Environment: SuSe, Red hat, LVM, IBM RS/6000, IBM AIX, LDAP, IBM Pseries.
