Splunk Platform Engineer
We are seeking an experienced Splunk Platform Engineer to
manage and support a distributed Splunk environment hosted on AWS.
Key Responsibilities
- Administer
Splunk Search Head and Indexer clusters, Deployers, Deployment Servers, Forwarders,
and supporting components.
- Monitor
and troubleshoot platform health, performance, data ingestion, storage,
searches, and alerts.
- Onboard
log sources and configure inputs, parsing, timestamps, indexes, retention,
and access controls.
- Plan
and execute Splunk upgrades, migrations, patching, vulnerability
remediation, and compatibility testing.
- Support
AWS-based Splunk infrastructure and S3/Glacier log archival.
- Manage
incidents, problems, changes, root-cause analysis, and operational
documentation.
- Work
with security, cloud, infrastructure, application, and vendor teams.
Required Skills
- Strong
knowledge of Splunk architecture and distributed environments.
- Hands-on
experience with Splunk administration, clustering, upgrades, migrations,
and troubleshooting.
- Experience
with Linux, particularly RHEL and Amazon Linux.
- Working
knowledge of AWS services, including EC2, S3, IAM, VPC, Subnets, Security
Groups, and CloudWatch.
- Proficiency
in Python, Bash, or Shell scripting.
- Strong
communication, documentation, and stakeholder-management skills.
Desirable Experience
- Splunk
Enterprise Security, Splunk Cloud, or Splunk SOAR.
- ServiceNow
or Jira and ITIL-based service-management processes.
- Security
compliance, audit evidence, and vulnerability management.
Certifications – Optional
- Splunk
Enterprise Certified Admin or Architect.
- AWS
Certified Solutions Architect – Associate or Professional.
- Relevant
Red Hat, Terraform, Ansible, ITIL, or security certification.
Skills Required
- Strong knowledge of Splunk architecture and distributed environments
- Hands-on experience with Splunk administration, clustering, upgrades, migrations, and troubleshooting
- Experience with Linux, particularly RHEL and Amazon Linux
- Working knowledge of AWS services including EC2, S3, IAM, VPC, subnets, security groups, and CloudWatch
- Proficiency in Python, Bash, or Shell scripting
- Strong communication, documentation, and stakeholder-management skills
- Experience with Splunk Enterprise Security, Splunk Cloud, or Splunk SOAR
- Experience with ServiceNow or Jira and ITIL-based service-management processes
- Experience with security compliance, audit evidence, and vulnerability management
- Splunk Enterprise Certified Admin or Architect certification
- AWS Certified Solutions Architect certification
- Relevant Red Hat, Terraform, Ansible, ITIL, or security certification
What We Do
XPT Software Australia Pty Ltd is a technology consulting and software services company serving clients across banking, financial services and insurance, telecommunications, mining, retail, energy, and manufacturing. It provides software development, IT management consulting, business analysis, project and program management, infrastructure support, and offshore development through onsite-offshore delivery. The company also works with cloud computing, big data, mobile applications, UI/UX, algorithms, and IoT.







