Senior Splunk Solution Architect at iOPEX Technologies (2025-08 – Present)
- Deliver expert solution architecture and technical guidance to premium Splunk partners and global enterprise organizations in both Linux and Windows environments.
- Lead full-lifecycle Splunk architecture in Linux and Windows, encompassing requirements gathering, blueprinting, deployment, optimization, and long-term operationalization.
- Design resilient multi-site indexers, search head cluster topologies, SmartStore deployments, and hybrid/Splunk Cloud configurations aligned to strict compliance and DR mandates.
- Define enterprise-wide data ingestion strategies, infrastructure sizing, licensing models, and data retention policies for terabyte-to-petabyte-scale environments.
- Leverage the Splunk Cloud Migration Assessment tool to evaluate on-premises topologies, identify cloud incompatibilities, and map out structured greenfield or dual-firing cutover strategies.
- Modernise data ingestion mechanisms by replacing legacy systems with HTTP Event Collectors and Edge Processors to filter, mask, and stream data directly to Splunk Cloud.
- Act as the premier Subject Matter Expert (SME) to resolve complex architectural, performance, and data-pipeline challenges in business-critical environments.
- Engineer corrective architectures and conduct deep-dive root-cause analyses for high-visibility, production-impacting issues.
- Guide long-term observability strategies, software adoption, and value realization for high-value premium tier clients.
- Drive discovery workshops, technical demonstrations, and Executive Business Reviews (EBRs) to build credibility from engineering teams to CXO suites.
- Partner with sales and account teams to deliver tailored monitoring and observability solutions that connect core technical capabilities to clear business value.
- Formulate AI Governance frameworks aligned with GDPR/ISO standards, establishing logging, monitoring, and alerting baselines to ensure traceability in AI/LLM-based systems.
Senior Observability SRE & Splunk Specialist at Volvo Car Corporation India (2021-01 – 2025-08)
Served as the SME and Senior Observability Site Reliability Engineer for the Volvo Auto India landscape, owning observability strategy, multisite cluster architecture, and end-user enablement across a global, hybrid estate.
- Owned the complete Splunk Architecture implemented on the logistics side.
- Audit, refactor, and package custom apps and legacy knowledge objects to fully comply with Splunk Cloud security vetting policies and private app standards.
- Architect and deploy hybrid search capabilities allowing seamless security investigations across concurrent on-premises archival storage and active Splunk Cloud indexing tiers.
- Design secure cloud-native authentication frameworks by migrating legacy local access control lists to enterprise SAML/SSO and identity management systems.
- Owned end-to-end observability across Grafana Cloud (Alloy, Operator, Control Plane), Elastic Cloud (ECK on Kubernetes), the LGTM Stack, and Splunk Observability Cloud — ensuring global reliability, uptime, and proactive incident management.
- Defined SLO/SLI frameworks, golden-signal dashboards, and proactive alerting to reduce MTTR and strengthen reliability posture across mission-critical services.
- Architected unified metrics, logs, and traces pipelines from diverse sources including Virtual Machines via Grafana Alloy and Prometheus exporters.
- Architected unified metrics, logs, and traces pipelines from Containerized platforms (Kubernetes, OpenShift, EKS, AKS) using Grafana Agent Operator and custom CRDs.
- Architected unified metrics, logs, and traces pipelines from Databases (Postgres, MySQL, MongoDB, MSSQL) via native exporters and Alloy integrations.
- Architected unified metrics, logs, and traces pipelines from Azure AD, Office 365, and Azure Monitor for identity and cloud-native telemetry.
- Architected unified metrics, logs, and traces pipelines from Application instrumentation via OpenTelemetry for distributed tracing.
- Implemented Grafana Alloy as a unified telemetry agent across hybrid cloud and on-prem infrastructure, simplifying collection across thousands of nodes.
- Designed automated observability provisioning using Grafana Operator and Control Plane CRDs, enabling self-service observability with standardized governance — driving adoption and consistent platform usage across engineering teams.
- Partnered closely with engineering, operations, and architecture stakeholders, interpreting usage and health data to identify risk early and guide platform adoption.
- Cluster administration and licensing for 100+ TB across multi-region setups (10+ servers); single-site (HA) and multisite (DR) indexer clusters.
- Designed highly interactive dashboards, alerts, scheduled searches, and operational reports aligned to business and engineering use cases.
Splunk Consultant at Capgemini (2019-03 – 2021-01)
- Splunk cluster administration handling 100+ TB across multi-region setups; architected single-site HA and multisite DR clusters.
- Search Head Cluster management, upgrades, and log onboarding via UF/UDP/TCP/SSL.
- Built interactive dashboards, alerts, and reports; presented solutions and roadmaps directly to clients.
Senior Application Engineer & Support at Standard Chartered Bank GBS (2017-05 – 2019-02)
Supported multiple Standard Chartered banking entities across Malaysia and Singapore, operating within highly regulated, business-critical financial environments where reliability, data integrity, and careful change control are paramount.
- Worked directly with banking stakeholders across Malaysia and Singapore to understand complex operational problems, then designed and developed specialised dashboards tailored to security, operations, and compliance needs.
- Led careful, governed onboarding of data sources into Splunk for mission-critical banking systems — including ATM networks — recognising the sensitivity, regulatory scrutiny, and zero-tolerance-for-error nature of banking operations.
- Configured Splunk Enterprise Security (ES) Search Heads, data enrichment, and lookups to strengthen monitoring and threat visibility.
- Managed Search Head Clusters, Splunk version upgrades, and log onboarding under strict change-management discipline.
- Built dashboards, alerts, and analytical reports trusted by security and operations teams across regions.
Splunk Developer at Accenture (2014-04 – 2017-05)
British Telecom Retail Project. Joined as an Intern; promoted to Associate Software Engineer in 2 months, then to Software Engineering Analyst with top recognition.
- Independently implemented Splunk in greenfield environments — forwarder installation, configuration, and admin activities.
- Built Log Management and Server Management dashboards for client teams (Splunk 6.0.2 / 6.1.2).