1

Splunk Cybersecurity Defense Analyst Jobs in Michigan

Cyber Security Tutor

Detroit, MI · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Ann Arbor, MI · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Kalamazoo, MI · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

As a Senior Consultant - Cyber Defense and Resilience, you will help deliver security engineering ... Collaborating with security operations center analysts, threat hunters, and client stakeholders to ...

... Analyst, Global Information Assurance Certification Certified Incident Handler, Splunk, or cloud ... As a Consultant - Cyber Defense and Resilience, you will support the design and deployment of ...

... Analyst, Global Information Assurance Certification Certified Incident Handler, Splunk, or cloud ... As a Consultant - Cyber Defense and Resilience, you will support the design and deployment of ...

... the Defense Industrial Base Manufacturing and Small Business Innovation Research initiatives ... Provide analysis of emerging DLA R&D Information Systems, R&D OT, and R&D IT Infrastructure to ...

... the Defense Industrial Base Manufacturing and Small Business Innovation Research initiatives ... Provide analysis of emerging DLA R&D Information Systems, R&D OT, and R&D IT Infrastructure to ...

Vice President of Cybersecurity

Detroit, MI · Hybrid

$148K - $186K/yr

Champion zero-trust, secure-by-design, and defense-in-depth principles * Lead executive-level incident response, cyber crisis management, and post-incident analysis * Ensure cybersecurity is embedded ...

next page

Showing results 1-20

Splunk Cybersecurity Defense Analyst information

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Michigan?

For Splunk Cybersecurity Defense Analyst jobs in Michigan, the most frequently searched job titles are:

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Michigan look for?

The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Michigan are:

What cities in Michigan are hiring for Splunk Cybersecurity Defense Analyst jobs?

Cities in Michigan with the most Splunk Cybersecurity Defense Analyst job openings:

Infographic showing various Splunk Cybersecurity Defense Analyst job openings in Michigan as of August 2026, with employment types broken down into 86% Full Time, 7% Part Time, 2% Temporary, 3% Contract, and 2% Nights. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution.

Senior Cybersecurity Incident Analyst

General Motors

Warren, MI • On-site

$120 - $180/hr

Other

Posted 5 days ago


General Motors rating

8.2

Company rating: 8.2 out of 10

General Motors

Based on 306 frontline employees who took The Breakroom Quiz

7.4

Company rating compared to similar companies: 7.4 out of 10

Automakers average

Based on 6,288 frontline employees who took The Breakroom Quiz


Job description

## Senior Cybersecurity Incident AnalystApplyremote type: Hybridlocations: Warren, Michigan, United States of Americatime type: Full timeposted on: Posted Todayjob requisition id: JR-202616771**Job Description****The Role**As a Senior Cyber Detection Incident Analyst, you will play a critical role in protecting General Motors' global enterprise by identifying, analyzing, and helping mitigate advanced cyber threats across cloud, identity, endpoint, network, application, and manufacturing ecosystems.You will serve as a senior technical leader within the Cyber Detection organization, driving detection engineering initiatives, leading complex investigations, and continuously improving the technologies, analytics, and processes used to identify malicious activity. This role combines deep technical expertise, threat-focused analysis, and cross-functional collaboration to enhance GM's overall cybersecurity posture.The ideal candidate possesses a passion for cyber defense, strong analytical and investigative skills, and experience developing scalable detection capabilities across modern enterprise environments.**What You'll Do*** Lead advanced investigations involving complex security incidents, emerging threats, and high-severity escalations* Develop, implement, and optimize detection logic across SIEM, EDR, NDR, SOAR, cloud-native security platforms, and other security monitoring technologies* Conduct threat hunting activities to proactively identify adversary behaviors, attack techniques, and detection gaps* Apply threat intelligence, adversary tradecraft, and MITRE ATT&CK methodologies to improve detection coverage effectiveness* Design, tune, and validate analytics to reduce false positives and improve alert fidelity* Develop automation, enrichment workflows, and operational efficiencies using AI, scripting and security orchestration technologies* Partner with Incident Response, Threat Intelligence, Cloud Security, Product Security, Manufacturing Security, and other cybersecurity teams to improve detection capabilities* Mentor and provide technical guidance to analysts and detection engineers* Drive continuous improvement initiatives that increase visibility, reduce investigative effort, and improve operational effectiveness* Evaluate emerging technologies, AI capabilities, and security monitoring solutions to advance GM's detection maturity**Your Skills & Abilities (Required Qualifications)*** Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experience* 5+ years of experience in cybersecurity with a focus on detection engineering, security operations, incident response, threat hunting, intrusion detection, or security event analysis* Experience working with enterprise SIEM platforms and log-centric detection methodologies* Experience developing and tuning security detections using correlation logic, behavioral analytics, and threat intelligence* Strong understanding of endpoint security technologies and EDR platforms* Experience investigating security events across endpoint, network, cloud, identity, and application environments* Knowledge of attacker tactics, techniques, and procedures (TTPs) and familiarity with the MITRE ATT&CK framework* Experience using scripting and query languages such as Python, PowerShell, or similar technologies* Strong analytical, troubleshooting, and investigative skills* Experience communicating technical findings to both technical and non-technical audiences* Ability to lead investigations during cybersecurity incidents* Demonstrated ability to collaborate effectively across multiple teams and stakeholders* Ability and willingness to participate in a 24x7 on-call rotation**What Can Give You a Competitive Advantage (Preferred Qualifications)*** Experience with cloud security monitoring and detection engineering in Azure, AWS, and GCP environments* Experience with SaaS security monitoring and identity threat detection* Experience with network security monitoring, IDS/IPS technologies, packet analysis, and network telemetry* Experience supporting manufacturing, operational technology (OT), or industrial control system environments* Experience with vehicle cybersecurity, automotive architectures, or embedded security telemetry* Experience with application security monitoring, API security, runtime protection, and CI/CD security telemetry* Experience with malware analysis, reverse engineering, or digital forensics* Experience developing SOAR workflows and security automation solutions* Security certifications such as GCIA, GCIH, GCFA, GCDA, AWS Security Specialty, or equivalent* Proven ability to mentor, coach, and develop cybersecurity professionals* Demonstrated success leading technical initiatives and influencing cybersecurity strategy* Strong written and verbal communication skills* Continuous learning mindset with a passion for innovation and cybersecurity excellence#LI-SB3GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc).This role is categorized as hybrid. This means the selected candidate is expected to report to a specific location at least 3 times a week {or other frequency dictated by their manager}.This job may be eligible for relocation benefits. #J-18808-Ljbffr

Working at General Motors


What General Motors employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


General Motors logo

About General Motors

Sourced by ZipRecruiter

General Motors is a company with global scale and capabilities, headquartered in Detroit, Michigan, with employees around the world. The company employs over 165,000 people, serves six continents, operates across 22 time zones, and has a diverse workforce speaking 75 languages1. GM’s vision is to drive the world forward by pioneering innovations that move and connect people to what matters. The company is working towards an all-electric future with its new Ultium Platform and is pushing transportation options beyond our wildest imaginations with autonomous vehicles. GM is also committed to becoming the most inclusive company in the world.

Industry

Transportation equipment manufacturing

Company size

10,000+ Employees

Headquarters location

Detroit, MI, US

Year founded

1908