Back to search
Queen Square Recruitment Linkedin · Posted 6d ago

Splunk Administrator

United Kingdom

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Splunk Administrator

💰 £400/day (Inside IR35) 📍 Manchester, UK (2 days onsite)

📅 12-Month Contract


Our client is looking for experienced Splunk Administrators to join an enterprise technology environment, supporting and evolving critical monitoring, logging and observability capabilities. You will be responsible for the administration and optimisation of Splunk Enterprise / Splunk Cloud, supporting production environments, onboarding new workloads and helping engineering teams improve monitoring and observability.

Your Responsibilities

  • Administer and maintain Splunk Enterprise and Splunk Cloud, including ITSI.
  • Provide production support across incidents, problems and changes.
  • Optimise Splunk performance, data ingestion, indexing and search efficiency.
  • Support Splunk upgrades, migrations, integrations and workload onboarding.
  • Monitor and develop dashboards, reports, alerts and observability use cases using SPL.
  • Troubleshoot complex Splunk and infrastructure issues and perform root-cause analysis.
  • Work with Engineering, DevOps and Application teams to improve monitoring and observability.
  • Drive automation and operational improvements to reduce manual effort.
  • Ensure Splunk operations meet security, compliance, audit and governance requirements.
  • Support reliability, resilience, scalability and cost optimisation initiatives.

Essential:

  • Strong hands-on experience administering Splunk Enterprise and/or Splunk Cloud in enterprise environments.
  • Strong experience with Splunk data onboarding, parsing and transformation.
  • Experience with monitoring, logging and observability across infrastructure and applications.
  • Good understanding of Linux, infrastructure and production support.
  • Experience with Incident, Problem and Change Management.
  • Strong troubleshooting and root-cause analysis skills.
  • Experience supporting enterprise-scale distributed environments.

Desirable:

  • Splunk Enterprise Security (ES) and/or ITSI experience.
  • Knowledge of Splunk distributed architecture, clustering, index management and licensing.
  • Python, Shell or PowerShell scripting.
  • Understanding of Windows, networking, TCP/IP and security/infrastructure log sources.
  • Splunk certification.
  • Strong stakeholder communication and documentation skills.


Please apply with your CV and we'll be in touch. Thanks!

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search