This role is part of a high-impact engagement with one of our most strategic global technology clients — a world leader in enterprise networking, cybersecurity, and observability platforms. As a Principal Technical Lead, you will be a cornerstone of Cognizant's centre of excellence for Splunk, shaping delivery standards and driving platform excellence at scale.
About the Role
We are seeking a Principal Technical Lead to own critical escalations, drive platform reliability, and lead a high-performing team of Splunk engineers. This is a senior leadership role that combines deep technical expertise with strategic influence — you will shape how the team operates, how customers are served, and how the platform evolves.
What You Will Do
- Lead critical technical escalations across Splunk platform environments, ensuring timely and effective resolution of customer-impacting incidents
- Provide hands-on technical support to Senior Engineers, Technical Leads, and cross-functional teams for complex infrastructure and cloud issues
- Engage directly with enterprise customers and stakeholders to drive incident resolution and maintain confidence
- Conduct deep-dive RCA for high-severity incidents and develop corrective and preventive action plans
- Analyse diagnostic logs, telemetry, traces, packet captures, and performance metrics
- Validate product updates, patches, and feature enhancements; revise enablement agendas accordingly
- Drive automation, process optimisation, and proactive monitoring initiatives
- Develop and maintain technical runbooks, SOPs, and escalation handling guidelines
- Collaborate with Product Engineering, SRE, DevOps, and Operations teams to improve platform stability
- Organise technical enablement sessions, knowledge-sharing workshops, and escalation review meetings
- Mentor engineers and foster a culture of technical excellence and operational discipline
What You Bring
- Deep expertise in search performance, indexing, federated search, search heads, and indexers
- Strong knowledge of data onboarding, parsing, dashboards, field extractions, lookups, and event correlation
- Proficiency in Python and Shell scripting for automation
- Experience with incident response, escalation management, and RCA methodologies
- Strong stakeholder communication and customer management skills
Technical Skills Splunk Enterprise · SPL · Linux · AWS/Azure/GCP · Python · Shell Scripting · Monitoring & Observability Tools · JIRA · Git
Certifications (Preferred) Splunk Certified Architect/Admin · AWS Certified Solutions Architect · Azure Administrator/Architect
Job Summary
This senior infrastructure developer role focuses on designing administering and optimizing Splunk platforms to support enterprise
Good experience in Python monitoring observability and analytics needs in a hybrid work environment. The profile involves implementing robust logging standards maintaining platform reliability and collaborating with cross functional teams across industry essential domains to enable secure and data driven operations.
Responsibilities
- Administer Splunk platform components to ensure stable indexers search heads deployment servers and forwarders that consistently support enterprise monitoring needs.
Good expireince in Python
- Configure data onboarding pipelines in Splunk by designing efficient sourcetypes field extractions and indexing strategies that improve query performance and data quality.
- Develop reusable Splunk searches dashboards and reports that provide actionable insights and help stakeholders monitor infrastructure health and application performance.
- Optimize Splunk storage and retention policies by tuning index configurations and archive strategies that balance performance compliance and cost efficiency.
- Implement proactive alerting solutions in Splunk that detect anomalies capacity risks and service degradations before they impact business operations.
- Troubleshoot Splunk search performance issues by analyzing search patterns identifying inefficient queries and recommending tuning improvements.
- Collaborate with infrastructure and application teams to establish logging standards naming conventions and data models that strengthen observability across environments.
- Document Splunk configurations runbooks and operational procedures that help ensure consistent deployments and faster incident resolution.
- Coordinate with security and compliance teams to align Splunk configurations with organizational governance requirements and audit readiness.
- Enhance automation around Splunk administration tasks using scripts or tools that streamline onboarding configuration and maintenance activities.
- Participate in incident investigations by using Splunk data to identify root causes verify hypotheses and recommend corrective actions.
- Contribute to continuous improvement initiatives by analyzing usage patterns proposing new dashboards and refining metrics that support organizational goals.
- Engage with industry essential domain stakeholders to translate operational requirements into Splunk based monitoring solutions that improve service reliability.
Qualifications
- Demonstrate experience of at least three years as Splunk administrator managing enterprise deployments and supporting production environments.
- Apply strong knowledge of infrastructure concepts such as servers networks and storage to design resilient Splunk architectures that operate efficiently.
- Use understanding of industry essential domains to contextualize observability requirements and build dashboards that reflect critical business processes.
- Show proficiency in search processing language to craft optimized queries complex alerts and meaningful visualizations that guide operational decisions.
- Exhibit familiarity with scripting or automation tools that assist in configuration management and repetitive administrative tasks within Splunk.
- Display good communication skills to collaborate with technical and non technical partners in a hybrid work model and document outcomes clearly.
- Utilize problem solving capabilities and analytical thinking to diagnose Splunk issues coordinate with support teams and implement sustainable fixes.
私たちについて:
コグニザント(NASDAQ: CTSH)は、AI builderおよびテクノロジーサービスプロバイダとして、AI投資を企業価値へとつなげるフルスタックのAIソリューションを提供しています。業界、業務プロセス、エンジニアリングに関する深い専門性を強みに、各企業固有のコンテキストをテクノロジーシステムに組み込み、人の力を最大限に引き出すとともに、具体的な成果の創出と、急速に変化する世界におけるグローバル企業の競争力維持を支援します。詳しくは、当社ウェブサイト www.cognizant.com をご覧ください。
雇用に関する追加情報
本募集に記載されている報酬情報は、掲載日時点で正確なものです。Cognizantは、適用される法令に従い、いつでも本情報を変更する権利を留保します。
応募者は、対面またはビデオ会議による面接への参加を求められる場合があります。また、各面接の際に、現在有効な州政府または政府発行の身分証明書の提示を求められる場合があります。
Cognizantは機会均等雇用主です。応募および選考において、人種、肌の色、性別、宗教、信条、性的指向、性自認、国籍、障がい、遺伝情報、妊娠、退役軍人の地位、その他連邦法・州法・地方自治体の法律により保護されるいかなる特性に基づく差別も行いません。







