Key Responsibilities :
- Administer and maintain the Splunk ITSI platform, including service trees, KPIs, glass tables, and correlation searches.
- Design, configure, and tune ITSI services and entities based on business and IT service models.
- Collaborate with infrastructure, application, and security teams to define critical metrics and dashboards.
- Integrate data sources into ITSI and ensure data normalization and enrichment.
- Manage and maintain ITSI modules, thresholds, notable events, and aggregation policies.
- Troubleshoot ITSI issues and ensure high availability and performance of the platform.
- Automate workflows using custom scripts and integrations with tools like ServiceNow or PagerDuty.
- Maintain role-based access controls (RBAC) and ensure secure Splunk usage.
- Support upgrades, patching, and general platform health monitoring.
Requirements :
3+ years of hands-on experience with Splunk , including Splunk ITSI administration.Strong understanding of KPIs, notable events, correlation searches, and service models.Experience building glass tables , deep dives , and custom dashboards .Knowledge of onboarding data sources, parsing logs, and using SPL (Search Processing Language).Familiarity with Linux / Unix systems and scripting (Python, Bash, PowerShell).Understanding of ITSM / ITIL processes and how ITSI aligns with operational goals.Preferred Qualifications :
Splunk Certified ITSI Admin or Splunk Core Certified Admin / Architect .Experience integrating ITSI with external systems (e.g., ServiceNow, email gateways).Exposure to monitoring tools like AppDynamics, Dynatrace, or Datadog is a plus.Experience with cloud infrastructure monitoring (AWS, Azure, GCP)Skills Required
Aws, Azure, Gcp, Appdynamics, Dynatrace, Python, Bash