Splunk Administrator

Queen Square Recruitment

Manchester

On-site

GBP 45,000 - 75,000

Full time

14 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Remote learning budget

Job summary

Queen Square Recruitment seeks experienced Splunk Administrators to join an enterprise tech environment. You will administer Splunk Enterprise and Splunk Cloud, optimise performance, onboard workloads and support engineering teams in observability.

You will work across incidents, changes and upgrades, develop dashboards with SPL, and drive automation while ensuring security and governance requirements are met. Strong Linux/Windows production support is required.

Qualifications

  • Strong hands-on experience administering Splunk Enterprise and/or Splunk Cloud in enterprise environments.
  • Extensive experience with Splunk data onboarding, parsing and transformation.
  • Experience with monitoring, logging and observability across infrastructure and applications.
  • Good understanding of Linux, infrastructure and production support.
  • Experience with Incident, Problem and Change Management.
  • Splunk Enterprise Security (ES) and/or ITSI experience.
  • Knowledge of Splunk distributed architecture, clustering, index management and licensing.
  • Python, Shell or PowerShell scripting.
  • Understanding of Windows, networking, TCP/IP and security/infrastructure log sources.
  • Splunk certification.
  • Strong stakeholder communication and documentation skills.

Responsibilities

  • Administer and maintain Splunk Enterprise and Splunk Cloud, including ITSI.
  • Provide production support across incidents, problems and changes.
  • Optimise Splunk performance, data ingestion, indexing and search efficiency.
  • Support Splunk upgrades, migrations, integrations and workload onboarding.
  • Monitor and develop dashboards, reports, alerts and observability use cases using SPL.
  • Troubleshoot complex Splunk and infrastructure issues and perform root-cause analysis.
  • Work with Engineering, DevOps and Application teams to improve monitoring and observability.
  • Drive automation and operational improvements to reduce manual effort.
  • Ensure Splunk operations meet security, compliance, audit and governance requirements.
  • Support reliability, resilience, scalability and cost optimisation initiatives.

Skills

Incident management
Root cause analysis
Documentation
Stakeholder communication

Education

Bachelor's degree or equivalent

Tools

Splunk Enterprise
Splunk Cloud
ITSI
SPL
Linux
Windows
Python
PowerShell
Shell scripting
Networking TCP/IP

Job description

Our client is looking for experienced Splunk Administrators to join an enterprise technology environment, supporting and evolving critical monitoring, logging and observability capabilities. You will be responsible for the administration and optimisation of Splunk Enterprise / Splunk Cloud, supporting production environments, onboarding new workloads and helping engineering teams improve monitoring and observability.

Your Responsibilities
  • Administer and maintain Splunk Enterprise and Splunk Cloud, including ITSI.
  • Provide production support across incidents, problems and changes.
  • Optimise Splunk performance, data ingestion, indexing and search efficiency.
  • Support Splunk upgrades, migrations, integrations and workload onboarding.
  • Monitor and develop dashboards, reports, alerts and observability use cases using SPL.
  • Troubleshoot complex Splunk and infrastructure issues and perform root-cause analysis.
  • Work with Engineering, DevOps and Application teams to improve monitoring and observability.
  • Drive automation and operational improvements to reduce manual effort.
  • Ensure Splunk operations meet security, compliance, audit and governance requirements.
  • Support reliability, resilience, scalability and cost optimisation initiatives.
  • Strong hands-on experience administering Splunk Enterprise and/or Splunk Cloud in enterprise environments.
  • Strong experience with Splunk data onboarding, parsing and transformation.
  • Experience with monitoring, logging and observability across infrastructure and applications.
  • Good understanding of Linux, infrastructure and production support.
  • Experience with Incident, Problem and Change Management.
  • Strong troubleshooting and root-cause analysis skills.
  • Splunk Enterprise Security (ES) and/or ITSI experience.
  • Knowledge of Splunk distributed architecture, clustering, index management and licensing.
  • Python, Shell or PowerShell scripting.
  • Understanding of Windows, networking, TCP/IP and security/infrastructure log sources.
  • Splunk certification.
  • Strong stakeholder communication and documentation skills.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Splunk Admin
Splunk Admin

Gazelle Global • Manchester

Hybrid
GBP 55,000 - 75,000
Splunk Administrator: Enterprise Observability
Splunk Administrator: Enterprise Observability

Queen Square Recruitment • Manchester

On-site
GBP 45,000 - 75,000
Remote learning budget
Splunk Consultant
Splunk Consultant

Intuition IT Solutions Ltd • Manchester

On-site
GBP 60,000 - 90,000
Splunk Architect & Observability Specialist
Splunk Architect & Observability Specialist

Intuition IT Solutions Ltd • Manchester

On-site
GBP 60,000 - 90,000
Splunk Engineer
Splunk Engineer

Adecco • Chester

On-site
GBP 61,000 - 101,000
Splunk Specialist
Splunk Specialist

HCLTech • Manchester

Hybrid
GBP 65,000 - 95,000
Vacation allowance
Term life insurance
Business travel insurance
Splunk SIEM Engineer
Splunk SIEM Engineer

Undisclosed • Knutsford

On-site
Splunk SIEM Engineer
Splunk SIEM Engineer

Experis • Knutsford

Hybrid
GBP 150,000 - 160,000
Technical Account Manager - Splunk Platform
Technical Account Manager - Splunk Platform

Cisco • Bristol

On-site
GBP 50,000 - 70,000
Splunk Site Reliability Engineer / Migration Specialist (Contract to Hire)
Splunk Site Reliability Engineer / Migration Specialist (Contract to Hire)

SERAMinds Consulting • Birmingham

Hybrid
Exciting contract-to-hire opportunity
Flexibility and collaboration
Growth in a tech-driven environment