The default search app has 2 dashboards which will tell you CPU utilization issues related to indexing and searching. They can be accessed by:
Also, what version of Splunk are you using? I had similar issues when I upgraded from 4.2 to 4.3. Then I upgraded to 4.3.1 and the problem went away.