Key Responsibilities:
- Develop new custom parsers for parsing and field extraction of new log source types, including testing and finetuning
- Research, evaluate and identify the most appropriate mechanism for efficient parser development
- Modify and enhance existing parsers to adopt to log variants
- Document the newly created or modified parsers
- Work with engineering team to deploy and test the new or modified parsers
- Update development progress and issues to team lead
- Provide inputs to Delivery Managers on log format changes required to reuse existing parsers
Requirements:
- At least 3 years of relevant work experience in log management, log onboarding to SIEM, connector development, scripting and/or data engineering
- Certified as Splunk Core Power User or higher
- Experienced in Splunk Processing Language and Regex
- Good working knowledge of cloud environment (AWS and/or Azure)
- Please note that this role will be 8 months direct contract.