1

Splunk Cybersecurity Defense Analyst Jobs in Guam

GU · On-site

Ensure deterministic performance, strict boundary defense, high availability, and cybersecurity ... analysis with industrial protocol analyzers (e.g., Wireshark). * Coordinate with facility ...

New

... hardware, boundary defense firewalls, protocol analysis, and Risk Management Framework (RMF ... Coordinate with facility/mechanical engineers, SCADA/BMS vendors, and IT cybersecurity teams to ...

New

... II cybersecurity directives. * Vulnerability Management & Compliance Assessments * develop ... Duties include conducting routine vulnerability scans, performing audit log analysis, driving ...

New

Splunk Cybersecurity Defense Analyst information

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Guam? For Splunk Cybersecurity Defense Analyst jobs in Guam, the most frequently searched job titles are:
What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Guam look for? The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Guam are:
What cities in Guam are hiring for Splunk Cybersecurity Defense Analyst jobs? Cities in Guam with the most Splunk Cybersecurity Defense Analyst job openings:
Infographic showing various Splunk Cybersecurity Defense Analyst job openings in Guam as of August 2026, with employment types broken down into 88% Full Time, 6% Contract, and 6% Nights. Highlights an 100% In-person job distribution.

Operational Technology (OT) Network Administrator

Deftec Corporation

GU • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 2 days ago

New


Job description

OPERATIONAL TECHNOLOGY (OT) NETWORK ADMINISTRATOR

DEFTEC delivers mission-critical solutions through skillfully delivered services and innovative products. We are inspired by our clients' critical missions and driven to provide the most effective solutions to execute their missions, operational challenges, and requirements. Our dedicated, experienced, and talented employees work closely with our clients to ensure the delivery of exceptional services and products.

POSITION OVERVIEW

The Operational Technology (OT) Network Administrator serves as the senior technical authority responsible for designing, securing, and sustaining highly available industrial and building automation networks that support missioncritical FRCS, ICS, SCADA, and BMS environments. This role configures and maintains ruggedized network hardware, implements deterministic Layer2 topologies, enforces strict segmentation aligned with the Purdue Model, and manages PPSM to ensure only authorized industrial protocols traverse secured enclaves. The administrator leads OT boundary defense through NGFWs and unidirectional gateways, applies and tests OTspecific STIGs safely, and conducts advanced protocol analysis to resolve connectivity and performance issues affecting physical facility systems. Additional responsibilities include developing SOPs and baselines, supporting RMF artifacts and cybersecurity compliance, evaluating contractor designs and BOMs, and providing SME oversight during integration, testing, commissioning, and MILCON modernization efforts. The position requires a U.S. citizen with an active Tier 5 Top Secret clearance and extensive, specialized experience securing and operating OT networks without disrupting critical facility operations.

JOB RESPONSIBILITIES:

  • Configure and maintain industrial-grade network hardware (e.g., Cisco Industrial Ethernet, Palo Alto, Data Diode, Allen-Bradley Stratix, Ruggedcom, standard enterprise switches adapted for OT) deployed in mechanical rooms and harsh physical environments.
  • Manage network topologies (e.g., Resilient Ethernet Protocol (REP), Device Level Ring (DLR)) to ensure rapid failover and continuous deterministic traffic flow for time-sensitive control processes and environmental controls.
  • Maintain comprehensive backup solutions for all industrial and building switch, router, and firewall configuration files.
  • Implement strict network segmentation and micro-segmentation adhering to the Purdue Enterprise Reference Architecture (PERA).
  • Manage Ports, Protocols, and Services Management (PPSM) across the IT/OT boundary, ensuring only authorized protocols (e.g., BACnet IP, LonWorks, Modbus TCP, Fox Protocol, DNP3, CIP) traverse network enclaves.
  • Configure and manage OT-specific Next-Generation Firewalls (NGFW) and Unidirectional Gateways (Data Diodes).
  • Apply network-specific Security Technical Implementation Guides (STIGs) securely, testing configurations in non-production settings to prevent accidental physical equipment shutdowns.
  • Act as the primary escalation point for severe network degradation, packet loss, or routing failures within the FRCS/ICS/BMS environment.
  • Utilize advanced protocol analyzers (e.g., Wireshark) tailored for industrial and building protocols to conduct root-cause analysis on connectivity drops impacting physical machinery and facility controls.
  • Coordinate with facility/mechanical engineers, SCADA/BMS vendors, and IT cybersecurity teams to resolve boundary crossing anomalies.
  • Evaluate network capacity and provide engineering recommendations for lifecycle replacements, bandwidth upgrades, and hardware specifications.
  • Author network-specific Standard Operating Procedures (SOPs) and system baselines for the OT environment.
  • Support the RMF process for Platform IT (PIT) and FRCS by providing technical artifacts, topology diagrams, hardware/software lists, PPSM, and supporting vulnerability scans.
  • Participate in facility modernization and Military Construction (MILCON) project design reviews (35%, 65%, 95%, 100% phases).
  • Evaluate proposed contractor network architectures, hardware Bills of Materials (BOM), and PPSM for compliance with Command OT standards, the Purdue Model, and DoD cybersecurity mandates.
  • Provide SME support and oversight during integration, testing, and commissioning of new control systems and HVAC/Building systems.
  • Collaborate with government stakeholders and the cybersecurity commissioning team (CyCx) prior to final project handover and government acceptance.

REQUIRED QUALIFICATIONS:

  • Citizenship: Must be a United States citizen.
  • Security Clearance: Must possess an active Tier 5 (T5) Top Secret security.
  • Experience: Minimum of 5 years of advanced network administration experience, with at least 3 years explicitly focused on ICS, SCADA, BMS, FRCS or IT/OT network environments.
  • SME Knowledge: Deep technical expertise in Operational Technology (OT) network administration, focusing on strict network segmentation, firewall rule development, and the routing of industrial protocols (e.g., BACnet/IP, Modbus TCP). Must demonstrate a proven ability to securely apply DoD cybersecurity mandates, NIST SP 800-82 standards, and OT-safe network monitoring practices within the Purdue Model, ensuring deterministic traffic flows and highly available connectivity without disrupting critical facility operations or life-safety systems.
  • Communication: Ability to communicate in English fluently and effectively, both orally and in writing. Demonstrated ability to read and interpret Command policies, technical documents, and manuals.
  • Reporting: Demonstrated ability to prepare correspondence, write reports, and communicate effectively with other governmental professionals and stakeholder representatives of various backgrounds (including Government senior civilians, military personnel, and contract management).
  • Software Proficiency: Demonstrated experience in the use and application of the Microsoft Office Suite (Word, Excel, PowerPoint, Outlook, etc.).
  • Physical Requirements: Capable of the physical exertion required to perform the necessary services. This includes long periods of standing; walking over rough, uneven, or rocky surfaces; recurring bending, crouching, stooping, and reaching; climbing ladders; lifting and moving IT/OT equipment (up to 25 lbs); and other physical activities common to mechanical rooms and facility environments. Must have sufficient vision to identify safety hazards.

CERTIFICATION AND LICENSE REQUIREMENTS:

  • In accordance with DoDM 8140.03, the OT Network Administrator must have the following qualifications:
  • Work Role Code (WRC): 441
  • Work Role Title: FRCS Network Administrator
  • Required Proficiency Level: Intermediate
  • To satisfy the Foundational Qualification requirement of DoDM 8140.03 for WRC 441, the OT Network Administrator must posses and maintain at least one of the following commercial certifications prior to onboarding:
  • Intermediate (min requirement): CEH, Cloud+, GCIH, GICSP, GSEC, Security+, SSCP
  • Advanced (automatically qualifies): SecurityX (CASP+), CCNA, CCNP Security, CCSP, GCED, GCIA, GCLD, GDSA, GFACT

DEFTEC offers a comprehensive whole-life benefits package that includes medical, dental, vision, holiday, paid time off, 401K with a match, life insurance, short/long-term disability, and educational reimbursement. The DEFTEC team comprises professionals who make a difference daily in crucial national security missions. Our leadership knows that this happens by employing a diverse team that is well cared for. Our top priority is our employees, making DEFTEC an ideal workplace.

Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Please get in touch with HR@deftec.com if you require reasonable accommodations.

DEFTEC is a Drug-Free Workplace where post-offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria are met as outlined in our policies.

AAP/EEO STATEMENT

DEFTEC Corp is an Equal Opportunity and Affirmative Action Employer and prohibits discrimination and harassment of any typebased on actual or perceived race, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeedingand medical conditions related to pregnancy, childbirth or breastfeeding),gender, gender identity, and gender expression, religious creed,disability (mental and physical) including HIV and AIDS, medical condition (cancer and genetic characteristics ), genetic information, age, marital status, civil union status, sexual orientation, military and veteran status, denial of family and medical care leave, arrest record and/or any other characteristic(s) protected by federal, state or local law.

This policy applies to all terms of employment, includingrecruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, training, compensation, benefits, employee activities, and general treatment during employment.

OTHER DUTIES

Please note that this job description is not designed to cover or contain a comprehensive listing of the activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time, with or without notice.