Summary
Overview
Work History
Education
Skills
Accomplishments
Timeline
Generic

Stanton Hoener

Palatine,IL

Summary

Innovative and detail-oriented Splunk Software Engineer with extensive technical experience in testing, evaluating, designing and implementing solutions. Proven track record updating current software systems, making improvement suggestions, collaborating with analysts and designers, testing applications, writing training manuals, and making sure projects are completed in time and within budget. Known for programming skills, creativity, attention to details, time management, and teamwork. Strength in creating an inclusive culture with strong communication and teamwork that benefits the entire organization.

Overview

24
24
years of professional experience

Work History

Splunk Engineer

Allstate Corp
Northbrook , IL
03.2013 - Current
  • Support of Splunk Enterprise Security Internal Modules
  • Support of Splunk add on for Phantom
  • Devised automation, backup and recovery protocols to preserve and safeguard Splunk data..
  • Coordinated ongoing performance assurance for software applications and automated performance test scripts.
  • Initiated efforts to migrate legacy applications to Splunk platform.
  • Support of Splunk Enterprise Core Infrastructure and Splunk ITSI
  • Formed dynamic team of Splunk software engineers to implement inputs/indexers and search head for critical resilient production.

IBM Tivoli ADM

Allstate Corp
Northbrook , IL
03.2001 - 03.2013
  • Kept resources current, organized and maintained in optimal condition.
  • Maintained Enterprise wide monitoring and alerting for critical system data (CPU, Disk Space, Memory, etc.)

Education

Splunk Admin, Architecture, Clustering

Splunk Instructor Lead Training
Online

Skills

  • Splunk Architecture
  • Splunk advanced apps, APIs, Enterprise Security and ITSI
  • Splunk System Reliability
  • Server Admin linux RedHat 7, ubuntu, Windows
  • Scripting in bash, powershell & python
  • Hybrid AWS/Azure/on-prem environment
  • SIEM, Soc, Scrum and Agile environments
  • Network (F5, Palo_Alto)
  • Tech Lead for 7 Engineers

Accomplishments

  • Technical Team Lead for seven Splunk Software Engineers
  • Build on-prem/AWS Splunk Hybrid Environment starting with 1TB indexing per day up to final size of 36 TB data indexing per day, 1.2PB storage, 84 clustered indexers, 8 search head clusters, and 7,000 input forwarders.
  • Splunk Enterprise Security,” Installed and built Splunk premium app with inputs using CIM formatting. This allowed Security Analyst and Threat Hunters to span notables events across multiple sources allowing stream lined detection of threats.
  • “Splunk IT Service Intelligence (ITSI),” Installedapp to trace company business flows. Allowed upper management to see and measure the impact of flow disruption.
    “Splunk add on for Phantom” Installed and upgraded, allowing automation directly from Splunk Security Events, reducing security reaction time.“Splunk frozen data backup,” devised AWS Glacier automation, backup and recovery protocols to meet regulatory 7 year data retention policy. Using the low cost of Glacier as compared to regular disk space saved the company millions of dollars as the data aged to 7 years of retention.
  • “Splunk Enterprise Core Infrastructure.” Installed and upgraded, as the Splunk requirements increased so did the Infrastructure.
    Worked multiple times (120 hours) with “Splunk Professional Services” as part of the team to perform Enterprise upgrades. This allowed unique insights into an large Enterprise Design of Splunk which allows remote automation and ease of maintenance. This also allowed me to perform upgrades on my own.
  • Splunk inputs from Rsyslog, 8 server cluster specifically built to pull Palo Alto logs into Splunk.
  • Splunk inputs Syslog-ng, 8 server cluster specifically built to pull network traffic into Splunk.
  • DBconnect, installed and upgraded allowing of Databases to be pulled directly into Splunk.
  • Developed a Yearly Splunk wellness review, This involved defining benchmarks, and comparing them over time to keep the Splunk Environment healthy and performing at Peak efficiency.

Timeline

Splunk Engineer

Allstate Corp
03.2013 - Current

IBM Tivoli ADM

Allstate Corp
03.2001 - 03.2013

Splunk Admin, Architecture, Clustering

Splunk Instructor Lead Training
Stanton Hoener