1

Netwitness Jobs (NOW HIRING)

... NetWitness, and others. * Work with project managers, product owners, other application teams, cybersecurity personnel, and executives to inform business decisions, work collaboratively, and ...

... NetWitness, and others. * Work with project managers, product owners, other application teams, cybersecurity personnel, and executives to inform business decisions, work collaboratively, and ...

Assist other members of a multi-tool administration team with user or data administration of applications such as Tenable, Fortify, Carbon Black, NetWitness, and others.Work with project managers ...

Showing results 21-30

Netwitness information

What are the key skills and qualifications needed to thrive in the NetWitness position, and why are they important?

To thrive as a NetWitness Analyst, you need a solid background in cybersecurity, network analysis, and incident response, often supported by a degree in information technology or related certifications such as CISSP, CEH, or specifically RSA NetWitness certifications. Familiarity with the RSA NetWitness Platform, intrusion detection/prevention systems (IDS/IPS), security information and event management (SIEM) tools, and scripting languages is essential. Strong analytical thinking, effective communication, and attention to detail are important soft skills for success in this position. These capabilities ensure thorough threat detection, accurate forensic investigations, and strong collaboration with security teams to protect an organization's digital assets.

What are the typical day-to-day responsibilities of a NetWitness analyst?

A NetWitness Analyst is primarily responsible for monitoring network activity, analyzing security incidents, and investigating potential threats using the RSA NetWitness Platform. On a daily basis, you will review logs and alerts, conduct deep packet inspections, and work with other security team members to respond to incidents and improve detection rules. You'll often collaborate with IT, compliance, and threat intelligence teams to address vulnerabilities and help implement proactive security measures. Staying updated on the latest cyber threats and refining response procedures are also key aspects of the role, making it a dynamic and critical position within any organization's security operations center.

What is a NetWitness?

A NetWitness job typically involves monitoring, analyzing, and responding to cybersecurity threats using the NetWitness platform. Professionals in this role work with security information and event management (SIEM) tools, threat intelligence, and network traffic analysis to detect and mitigate cyber risks. They may also investigate security incidents, configure NetWitness solutions, and collaborate with IT and security teams to enhance an organization's cybersecurity posture. This role is common in Security Operations Centers (SOCs) and requires expertise in cybersecurity principles.

More about Netwitness jobs

What cities are hiring for Netwitness jobs?

Cities with the most Netwitness job openings:

What are the most commonly searched types of Netwitness jobs?

The most popular types of Netwitness jobs are:

What states have the most Netwitness jobs?

States with the most job openings for Netwitness jobs include:

Infographic showing various Netwitness job openings in the United States as of August 2026, with employment types broken down into 70% Full Time, and 30% Contract. Highlights an 95% Physical, and 5% Hybrid job distribution.

JUNIOR SPLUNK DEVELOPER

Zermount, Inc

Arlington, VA • On-site

Full-time

Re-posted 6 days ago


Job description

JUNIOR SPLUNK DEVELOPER
MILITARY FRIENDLY & PREFERRED - HOH SPONSOR
Zermount Inc. is looking for a Junior Splunk Developer to assist with maintaining custom Splunk apps and interfaces for our clients. The candidate must be very familiar with the Splunk Enterprise platform, including deployment of the product, onboarding standard and proprietary data sources, maintaining a Splunk environment, installing and configuring Splunk apps and TAs, and building content for users such as reports, dashboards, etc. The ideal candidate will also have experience in or exposure to custom web development, JavaScript, HTML, CSS, XML, JSON, REST APIs, and Python.
DUTIES AND RESPONSIBILITIES
  • Maintaining and making enhancements to custom functionality built on top of the Splunk platform, including dashboards, user interface and data entry screens, backend data stores and scripts, integrations, and REST endpoints.
  • Maintaining, troubleshooting, and adding new inputs, parsers, and filters for data ingestion from various application groups across the enterprise.
  • Troubleshooting anomalies with Universal Forwarders, data source inconsistencies, and other interruptions in log ingestion identifying root causes and rectifying when issues are found to exist on the Splunk UF/HF/SH/IDX side.
  • Performing tuning of search head performance, SPL efficiency, knowledge bundles, etc.
  • Performing other Splunk operations and maintenance duties at the application, server, and integration layers as required.
  • Evaluating third-party apps and TAs as necessary to fulfill business needs.
  • Updating custom apps prior to Splunk upgrades, ensuring continuity of functionality.
  • Adding, removing, and modifying Splunk users, roles, and capabilities.
  • Tracking work activities or projects through methods such as status reports, request and incident tickets, Kanban boards, etc.
  • Assist other members of a multi-tool administration team with user or data administration of applications such as Tenable, Fortify, Carbon Black, NetWitness, and others.
  • Work with project managers, product owners, other application teams, cybersecurity personnel, and executives to inform business decisions, work collaboratively, and accomplish strategic goals or sprint-based targets.

QUALIFICATIONS
  • Certification(s): Splunk Enterprise Certified Admin.
  • 1-3 years of demonstratable experience in implementing or maintaining a Splunk environment.
  • 1 year of demonstrable experience in building Splunk content (e.g. dashboards).
  • Demonstratable basic familiarity with the Linux operating system and terminal.
  • Excellent written and verbal communication ability, to include presentation and briefing skills.
  • Ability to quickly learn new concepts and ways of thinking outside the box to leverage the Splunk platform.
  • Proficiency in the Microsoft Office software suite.

PREFERRED QUALIFICATIONS
  • Advanced Splunk Certification(s), e.g., Architect, Consultant, Developer, etc.
  • Experience building custom Splunk apps from scratch.
  • Experience with complex data-transforming SPL.
  • Experience in front-end web development utilizing JavaScript, REST APIs, HTML, CSS, etc.
  • Experience in server-side scripting utilizing Python or Bash or Powershell, etc.
  • Experience in the integration of two or more applications using either app-proprietary methods and/or scripting, etc.
  • Experience in user interface design or graphic design and Adobe Photoshop (or similar).
  • Experience with BYOC Splunk in AWS, including AWS-specific data sources such as CloudWatch, CloudTrail, and Lambda outputs.
  • Familiarity with the requirements, artifacts, roles, and activities involved in the following processes:
    • Risk Management Framework
    • Governance, Risk, and Compliance
    • Assessment and Authorization
    • Authority to Operate

EDUCATION:
Minimum of Bachelor's degree in Computer Science, IT, Engineering, or similar fields. Years of experience will be taken into consideration, in place of a degree.
CLEARANCE:
  • Active Secret clearance is required
  • Must be a United States citizen.

WORK LOCATION and HOURS:
  • Location: Hybrid - primarily remote. Occasional onsite work required at the client location in Springfield, VA and Zermount HQ in Arlington, VA.
  • Core Hours: 9:00 am ET - 3:00 pm ET