Frankline Tebo
Ness Consultant
Laurel, Maryland, United States
**********@*****.***
SUMMARY
Splunk Engineer/Admin
*10+ years of combined IT experience. Result-oriented Splunk Developer & Administrator possessing extensive knowledge of Splunk Architecture including components such as indexer, search head, forwarder, deployment server, etc. Highly skilled in conceptualizing and developing software/applications & Business Intelligence Solutions to drive business transformation. Proficient in facilitating sound decision-making for senior leadership/management, deploying Splunk enterprise, core, cloud, and delivering compelling business value to clients & successfully executing projects. WORK EXPERIENCE
June 2021-Current
Ness Consultant
Deloitte
United States
Splunk Engineer/Developer/Architect
Responsibilities
*Scoping
*Onboarding and integrating applications log into Splunk (ansible, Google logs, AWS, azure, Tanium, Nuance, McAfee, system logs)
*Implementing Indexer Clustering of Google Cloud (GCP)
*Upgrading Splunk software to any version per client's need
*70% Data normalization for CIM Compliance
*Discussing the subject matter with the team
*Creating Dashboard after Normalizations
*Designing Splunk Architecture utilizing Visio
*Creating Alerts and Reports
*Troubleshooting Splunk performance, data flow from Forwarder to indexers January 2020-June 2021
Splunk Architect
Alcohol Beverage Authority
United States
*Splunk implementation on cloud/AWS and Microsoft Azure
*Implement single site clustering on Linux 0/S and AWS
*Experience with Microsoft Azure and AWS cloud
*Installed and integrated RDMS Data with Splunk using DB Connect plugins.
*Splunk data migration project on multiple servers.
*Troubleshooting Splunk feed issues and data ingestion for remote locations
*Deployed new Splunk architecture at the disaster recovery site.
*Configure hot, warm, and cold buckets to hold data for extended periods
*Install and configure systems that support infrastructure and/or activities.
*Working with the security team to understand use cases for Splunk.
*Perform regular security monitoring to identify any possible intrusions.
*Create, change, and delete user accounts per request as necessary.
*Maintain operational, configuration, or other procedures.
*Splunk up-gradation on Prim
*Creating XML and dynamics Dashboards.
*Data On-Boarding.
*Troubleshooting Splunk performance-related issues and bottlenecks. June 2019-December 2019
CDM Splunk Engineer
Zachary Piper Solutions
United States
*Implementation of Splunk Architecture for CDM Solution
*Work with team for Sprint planning of CDM and all agencies involved (DOL, OCIO, OIG, DOD, BLS)
*Troubleshoot and monitor data flow/quality from tools such as ForeScout, BigFix, and Tenable which were ingested into Splunk using Python scripts.
*Work with clients to create dashboards and resolve technical issues.
*Deploy CDM applications and add-ons in Splunk.
*Create knowledge objects to improve sensitivity in CDM tools that were sending data into Splunk.
*Implement Indexer cluster architecture for all agencies involved in the CDM program.
*Work closely with developers to patch, upgrade, and make changes in Splunk Python scripts at the baseline level. January 2015-June 2019
Splunk Admin
Washington Tech Solutions
Upper Marlboro, Maryland, United States
*Provide recommendations and implement changes to optimize Splunk products in the customer environment.
*Normalizing data through the CIM compliance process
*Utilize the Management Console to investigate resource usage.
*Configured license pooling.
*Troubleshooting Splunk feed issues and data ingestion for remote locations
*Deployed new Splunk architecture at the disaster recovery site.
*Configure hot, warm, and cold buckets to hold data for extended periods.
*Install and configure systems that support infrastructure and/or activities.
*Working with the security team to understand use cases for Splunk.
*Perform regular security monitoring to identify any possible intrusions.
*Create, change, and delete user accounts per request as necessary.
*Maintain operational, configuration, or other procedures. February 2010-November 2014
Incident Response Analyst
Sky-Tech Consulting
Greenbelt, Maryland, United States
*Manage security tools, provide system administrative support, and maintain and upgrade toolsets.
*Manages and executes multi-level responses and addresses reported or detected incidents.
*Performs information security incident response and incident handling based on risk categorization and following established procedures.
*Work with a cross-functional team, drive improvements to policies and processes within the law enforcement response team
*Coordinate with internal partners and external law enforcement agencies to aid people in crisis.
*Identifying incidents and making recommendations to protect the network.
*Assist in the administration and integration of security tools to include new data/log sources, expanding network visibility and automation.
*Upgraded databases using best practices.
*Assisted the Technical Support Unit in developing and implementing the RDBMS subsystem. backup and recovery procedures
EDUCATION
2021-2023
Cyber Security Science
Grand Canyon University
Phoenix, Arizona, United States
SKILLS
Amazon Web Services AWS AWS Cloudwatch Google Cloud Microsoft Azure Application Design Data Modeling USE Cases CGI CIM Application Development Continuous Integration/Delivery Ansible Python Shell Scripting Visio XML Comptia Disaster Recovery Information Security Splunk Clustering Data Migration LOG File Deployment Management Console Cyber Security Linux RED HAT Incident Response Database Database Modeling Oracle RDMS Vmware RDBMS Technical Support Data Warehousing CDM GCP Incident Management Best Practices Business Intelligence Onboarding Healthcare DOD Administrative Support Database Management Logging Performance Tuning
CERTIFICATIONS
*Splunk Power User
*CompTIA Security+
*Splunk Admin
*Splunk User
*Oracle DBA
Security+
LANGUAGES
English - Intermediate
WORK AUTHORIZATION
I am authorized to work in the following countries:
• United States