Overview In this role you will partner with development and operations to build automation and Splunk-based solutions, while helping refine deployment practices for reliability and security. You'll document architectures, runbooks, and data ingestion plans, and troubleshoot production issues to keep services available. You'll drive improvements to deployment patterns and collaborate across the GEMS Engineering team in a global, technology-driven environment. This is a hands-on position with occasional after-hours on-call to support critical systems.
Responsibilities- Partner with development and operations to develop automation solutions and custom modules
- Co-lead initiatives to refine deployment practices for reliability, repeatability, and security
- Develop data ingestion requirements from stakeholder input
- Document deployment architectures, runbooks, and knowledge base materials
- Troubleshoot production and other environments using debugging and testing techniques
- Suggest deployment pattern improvements and implement them with team
- Occasional after-hours on-call support
Key requirements- 2+ years Splunk engineering experience
- 1+ years managing other Splunk engineers or projects
- Strong understanding of Cloud Services - Azure, AWS
- Strong understanding of Splunk data onboarding, CIM validation, App/TA configuration
- UF/HF configuration with encryption and compression
- Experience with change control processes and Azure DevOps
- Management/deployment experience with large scale Splunk environments
- Windows and Linux administration via CLI
- Networking, firewalls, load balancers knowledge
- Understanding enterprise applications in security
- IT operations best practices for always-on services
- Excellent communication and influencing skills
- Ability to analyze and solve complex problems
- Bachelor's degree in Computer Science, Computer Engineering, Finance, Mathematics, Business Information Systems, or equivalent
- One or more of Splunk Certified Admin/Architect/Consultant
- Preferred: Cribl administration and data onboarding
- Excellent communication
- Influencing and conflict resolution
- Consensus building
- Splunk Certified Admin/Architect/Consultant
- Splunk data onboarding and CIM validation
- Universal/Heavy Forwarder configuration (encryption, compression)