Splunk Administrator

 

Description:

We are looking for an experienced Splunk Administrator with 5–8 years of hands-on experience for a direct & permanent role with one of our top-tier MNC clients (Company name confidential). This is an onsite opportunity based in Riyadh, Saudi Arabia.

Key Responsibilities:
✅ Manage and administer Splunk infrastructure including configuration, performance tuning, and upgrades
✅ Create and maintain dashboards, alerts, reports, and data models
✅ Integrate various data sources (servers, network devices, applications) into Splunk
✅ Maintain security and compliance standards within the Splunk environment
✅ Work closely with security and IT teams for monitoring and alerting needs
✅ Troubleshoot issues related to data ingestion and Splunk search performance
✅ Provide support during incident investigations and root cause analysis

Requirements:
🔹 5–8 years of hands-on experience in Splunk Administration
🔹 Proficient in designing and implementing Splunk architecture (indexers, forwarders, deployment servers)
🔹 Strong knowledge of SPL (Search Processing Language)
🔹 Experience in onboarding data and configuring parsing rules
🔹 Familiarity with ITSI, ES, and Splunk premium apps is a plus
🔹 Strong scripting skills (Python, Bash, or PowerShell) preferred
🔹 Experience with Linux-based environments and log management
🔹 Splunk Admin or Architect Certification is an added advantage
 

Organization Global IT Search
Industry Management Jobs
Occupational Category Splunk Administrator
Job Location Riyadh,Saudi Arabia
Shift Type Morning
Job Type Full Time
Gender No Preference
Career Level Experienced Professional
Experience 5 Years
Posted at 2025-07-11 4:35 pm
Expires on 2026-01-05