Akhil Kande
Email: ***********@*****.***
PH: 703-***-****
Professional Summary:
4+ years of Experience in Design, build, support and maintain Splunk Infrastructure in highly available configuration.
Highly skilled in installations, configuration management, license management, data integration, data transformation, field extraction, event parsing, data preview, and Apps management of Splunk platform.
Design & Integration experience on Security information and Event management solutions(SIEM). That enable organizations to detect, respond, and prevent these threats by providing valuable context and visual insights to help you make faster and smarter security decisions.
Standardize Splunk forwarder deployment, configuration and maintenance in Unix and Windows platforms
Experience with Unix, Windows, VMWare, AWS environments, as well as be comfortable with command line interfaces.
Experience working in large and complex enterprise environments, with a working knowledge of enterprise business applications
Familiarity with enterprise security tools such as IDS/IPS, Anti-Virus, Malware Gateway, Messaging Servers, Firewalls and Internet Proxy
Monitor the health and performance of the LaaS platform and work with supporting teams to consult on actions required
Ensuring the Splunk environment continuously meets specification in terms of business requirements (SLA’s), application design (standards), and infrastructure performance (KPI’s)
Prior participation and responsibilities for 24x7 on-call schedule for technical support.
Experience with Splunk Searching and Reporting modules – (Splunk ITSI and Enterprise Security App) Knowledge Objects, Administration, Clustering and Forwarder Management.
Expertise in creating accurate reports, Dashboards, Visualizations and Pivot tables for the business users.
Parsing, Indexing, Searching concepts Hot, Warm, Cold, Frozen bucketing.
Helping application teams in on-boarding Splunk and creating Dashboard, Alert, and Reports etc. Experience on the use and understand of complex RegEx (regular expressions).
Field Extraction, Using IFX, Rex Command, and RegEx in configuration files.
Knowledge of various search commands like stats, chart, time chart, transaction, strptime, strftime, eval, where, xyseries, table etc.
Time chart attributes such as Span, Bins, Tag, Event types, Creating Dashboards, Reports using XML and Advanced XML. Create Dashboard from search, Scheduled searches of Inline search vs. scheduled search in a Dashboard.
Scripting and development skills (Perl, Python) with strong knowledge of regular expressions.
Experience in all facets of SDLC viz. requirement analysis, designs, development, testing, and post implementation revisions.
Build strong relationships with internal technology partners and provide coaching & mentorship to technology teams.
EDUCATION:
Master of Science in Computer Information Systems, Wilmington University
Bachelor of Technology in Biotechnology, Sathyabama University, India.
WORK EXPERIENCE:
Splunk Engineer
Maryland Department of
Health and Human Services DEC 2019 – Present
Installation and configuration of Splunk product upgrading version and Testing at different environments. Installation of Splunk Enterprise, Splunk forwarder, Splunk Indexer, Apps in multiple servers (Windows and Linux) with automation. Splunk Enterprise Deployments and enabled continuous integration on as part of configuration management.
Hands on experience in Assisting stakeholders of Splunk in designing and maintaining production-quality data, dashboards and various applications.
Experience in using monitor text files and convert contents into syslog messages.
Experience in creating Access controls, to the user by creating AD (Active Directory) groups power and user groups.
Experience with Active Directory and SSO Single sign-On option.
Configure the add-on app SSO Integration for user authentication and Single Sign-on in Splunk Web.
Experience in Python general scripting, Hands on Experience in secure coding.
Experience in providing monitoring and response to security events in Security Operations Center (SOC) team.
Troubleshoot technical issues to establish the root cause of problems and form a solution or workaround across a range of environments.
Reproduce issues and if necessary, file bug reports, escalate cases to Vendor, and provide necessary documentation.
Grew and improve the Enterprise Splunk environment from early stages to a mature implementation.
Experience in working with Splunk premium apps like Splunk ES and ITSI.
Experience in handling security events that affect VMware systems, applications, infrastructure, information, and users.
Hands-on Experience using endpoint security products.
Support large-scale deployments across multiple AWS regions, with data, feeds from multiple on-premises data centers.
Mentor members of the technical staff to support and assist in Splunk-related activities.
Create and maintain documentation related to Architecture and Operational processes for Splunk.
Involved in Installation, Administration, and Configuration of Splunk Enterprise and integration with local legacy systems.
Splunk DB Connect in search head cluster environments of Oracle.
Experience with Splunk UI/GUI development and operations roles.
Expertise in creating and customizing Splunk applications, searches, and dashboards as desired by IT teams and business.
Drive complex deployments of Splunk dashboards and reports while working side by side with technical teams to solve their integration issues.
Responsible for documenting the current architectural configurations and detailed data flow and Troubleshooting Guides for application support.
Splunk configuration that involves different web application and batch, create Saved search and summary search, summary indexes.
Managing indexes and cluster indexes, Splunk web framework, data model and pivot tables.
Performed troubleshooting and/or configuration changes to resolve Splunk integration issues.
Data Analyst/Splunk Engineer
Accenture MAY 2017 – OCT 2019
Developed Splunk infrastructure and related solutions as per automation toolsets. Experience in Splunk GUI development creating Splunk apps, searches, Data models, dashboards, and Reports using the Splunk query language.
•Involved as a Splunk Admin in capturing, analyzing and monitoring front end and middleware applications
•Provide regular support guidance to Splunk project teams on the complex solution and issue resolution.
•Responsible for documenting the current architectural configurations and detailed data flow and troubleshooting guides for application support.
•Worked with Client engagements and data onboarding and writing alerts, dashboards using the Search Processing Language (SPL).
•Analyzed security-based events, risks and reporting instances.
•As part of SIEM monitored notable events through Splunk Enterprise Security .
•Various types of charts alert settings Knowledge of app creation, user, and role access permissions.
•Creating and managing app, create a user, role, permissions to knowledge objects.
•Created many of the proof-of-concept dashboards for IT operations, and service owners which are used to monitor application and server health.
•Created Dashboards, report, scheduled searches and alerts.
•Create dashboard from search, scheduled searches and Inline search vs scheduled search in a dashboard.
•Involved in standardizing Splunk forwarder deployment, configuration, and maintenance across UNIX and Windows platforms.
•Worked on setting up Splunk to capture and analyze data from various layers Load Balancers, Web servers and application servers.
•Write automation scripts for APIs, Unit and functional test cases using Selenium WebDriver.
•Write automation scripts for REST API's using TestNG and Java.
•Worked on DB Connect configuration for Sybase, MySQL, and MSSQL.
•Designed and implemented a NoSQL based database and associated RESTful web service that persists high-volume user profile data for vertical teams.
•Scripted SQL Queries in accordance with the Splunk.
•Field Extraction, Using IFX, Rex Command, and Regex in configuration files.
•Splunk administering in environments like Window Servers, Red Hat Linux Enterprise Servers.
•Generated Shell Scripts to install Splunk Forwarders on all servers and configure with common Configuration Files such as Bootstrap scripts, outputs.conf and inputs.conf files. Onboard new log sources with log analysis and parsing to enable SIEM correlation. The configuration of inputs.conf and outputs.conf to pull the XML based events to Splunk cloud indexer.
•Involved in all phases of Software Development life cycle.
•Performed data coordination activities and data validation on CDM projects.
•Extensive experience in software quality assurance and testing of Client/Server, web based.
Splunk Developer OCT 2016 – MAY 2017
Palle Technologies
India
Installation and configuration of Splunk product at different environments. Configured Splunk Searching and Reporting modules, Knowledge Objects, Administration, Add-On’s, Dashboards, Clustering and Forwarder Management. Designing and maintaining production-quality Splunk dashboards.
Splunk Enterprise Deployments and enabled continuous integration on as part of configuration management.
Helping application teams in on-boarding Splunk and creating dashboards/alerts/reports etc.
Most of the time worked to install universal forwarders to but we have heavy forwarders set up to see data from sys log server side.
Worked on installing Universal Forwarders and Heavy Forwarders to bring any kind of data fields into Splunk.
Created Reports, Alerts and Dashboards by Splunk query language. Experienced in creating and running Cron Jobs for scheduled tasks.
Creating and Managing Apps, Create a user, role, and Permissions to Knowledge objects.
Involved in standardizing Splunk forwarder deployment, configuration, and maintenance across UNIX and Windows platforms.
Involved in installing add-on's like Splunk DB Connect, windows add-on, nix etc.
Troubleshooting of searches for performance issues by adding lookups, correct joins and using summary indexes
Development skills (Perl, Python,) with strong knowledge of regular expressions.
Managing indexes and cluster indexes, Splunk web framework, data model and pivot tables.
Performed troubleshooting and/or configuration changes to resolve Splunk integration issues.
Hands on development experience in customizing Splunk dashboards, visualizations, configurations, reports and search capabilities using customized Splunk queries.
Playing a key role in identifying and driving process changes within the team.