CHRISTIAN GILLETTE
Buford, GA Splunk Engineer / Observability Engineer
Certifications: Splunk Core Certified Power User Splunk Core Certified User Cribl Admin (Stream, Edge) Cribl Certified User
PROFESSIONAL SUMMARY
Splunk Engineer with proven experience designing, scaling, and optimizing large-scale Splunk environments. Skilled in indexer/search head clustering, SPL development, data onboarding, CIM normalization, and troubleshooting ingestion, parsing, and performance issues. Adept at improving observability and security posture through dashboards, alerts, automation, and best practice architecture. Strong cross-team communicator with a focus on reliability, efficiency, and delivering clear insights from machine data.
EXPERIENCE
Fortitude Technologies LLC Splunk Engineer (2023 Present)
Deployed and administered distributed Splunk environments, including clustered search heads, indexers, universal/heavy forwarders, and deployment servers.
Built real-time and scheduled alerts, automated notifications, and reporting workflows to improve operational visibility.
Onboarded log sources from Windows, Linux, syslog, cloud services, and custom applications, ensuring accurate sourcetypes and metadata.
Designed parsing and normalization logic using props.conf and transforms.conf; improved data quality and search performance.
Built and maintained indexer clusters for data replication, scalability, and high availability.
Installed and managed Splunkbase apps (Windows, AWS, Security, IT Ops), ensuring proper configuration and data integration.
Troubleshot ingestion, parsing, and search performance issues using SPL, regex, and system-level diagnostics.
Authored engineering documentation and SOPs to streamline deployments and reduce support escalations.
Fortitude Technologies LLC Splunk Engineer Intern (2022 2023)
Installed and configured Splunk Enterprise, including core UI components and initial architecture.
Executed SPL searches focused on field extraction, filtering, correlation, and statistical functions.
Supported app deployment via Deployment Server and assisted with forwarder management.
Provisioned AWS EC2 instances to support cloud-based Splunk deployments.
Utilized ServiceNow for incident, request, and change management.
Resolved ingestion and parsing issues using regex validation and configuration tuning.
TECHNICAL SKILLS
Splunk Platform: Enterprise Admin Clustering Forwarder Configuration Deployment Server Data Onboarding App Deployment
SPL & Content: SPL Dashboards Alerts Reports CIM props.conf transforms.conf Regex
Security/Observability: SIEM Threat Hunting Data Model Acceleration ES Exposure
Systems & Tools: Linux (RHEL) Windows Server AWS (EC2, CloudWatch) Cribl Git Jira Confluence Docker ServiceNow
SOFT SKILLS
Troubleshooting Communication Documentation Detail-Oriented Team Collaboration