1

Splunk Cybersecurity Defense Analyst Jobs in Nevada

... intersection of cybersecurity, data, and artificial intelligence, Deloitte's Cyber Defense ... Google SecOps, Splunk, CrowdStrike, and Palo Alto Networks while advancing AI and analytics ...

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Las Vegas, NV · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Reno, NV · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Henderson, NV · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cybersecurity Compliance -- Work closely with cybersecurity teams to ensure adherence to DoD IA and ... the Department of Defense, intelligence agencies, and enterprises around the globe. Our ...

next page

Showing results 1-20

Splunk Cybersecurity Defense Analyst information

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Nevada?

For Splunk Cybersecurity Defense Analyst jobs in Nevada, the most frequently searched job titles are:

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Nevada look for?

The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Nevada are:

What cities in Nevada are hiring for Splunk Cybersecurity Defense Analyst jobs?

Cities in Nevada with the most Splunk Cybersecurity Defense Analyst job openings:

Cyber Security Defense Manager - Incident Response

Fusion HCR

Las Vegas, NV • Hybrid

Full-time

Posted 23 days ago


Job description

Fusion HCR is Hiring!

Position: Cyber Security Defense Manager – Incident Response
Location: Las Vegas, NV (Hybrid, Local Candidates Only)
Type: Direct Hire
Industry: Gaming

Position Overview
Client of Fusion HCR is seeking an experienced Cyber Security Defense Manager – Incident Response to oversee the full incident response lifecycle for a premier casino entertainment organization. This role will manage day-to-day incident response operations, drive continuous improvement of threat detection capabilities, and lead a critical transition of MSSP (Managed Security Service Provider) services to a new partner. The ideal candidate brings deep incident response leadership experience, strong technical detection knowledge, and proven success managing complex vendor transitions in a cybersecurity context.

Key Responsibilities

Incident Response Leadership

  • Oversee the full incident response lifecycle: preparation, identification, containment, eradication, recovery, and post-incident lessons learned (per NIST SP 800-61 or similar frameworks)
  • Manage day-to-day incident response operations, including triage, investigation coordination, forensic analysis, and executive-level reporting
  • Develop, maintain, and regularly test incident response playbooks, runbooks, and escalation procedures

Detection Engineering & Capability Enhancement

  • Drive continuous improvement of threat detection engineering, including SIEM rule tuning, EDR/XDR configuration, threat intelligence integration, and behavioral analytics
  • Collaborate with SOC, threat hunting, and security engineering teams to reduce false positives and accelerate MTTD/MTTR
  • Lead initiatives to mature internal blue-team capabilities across endpoints, cloud, identity, network, and email environments

MSSP Transition Management

  • Lead the end-to-end transition of MSSP services from the current provider to a new partner, including planning, knowledge transfer, contract/SLA alignment, and cutover execution
  • Conduct due diligence on the new MSSP, define transition success criteria, and mitigate risks during handover
  • Establish governance for the new MSSP relationship, including performance monitoring, service reviews, and incident handoff protocols
  • Ensure the transition strengthens rather than disrupts detection and response effectiveness

Team Leadership & Development

  • Build, mentor, and lead a high-performing incident response team of internal analysts, responders, and cross-functional partners
  • Provide performance management, career development, and technical coaching to team members
  • Foster a culture of continuous learning through tabletop exercises, red/blue team simulations, and post-incident reviews

Stakeholder Collaboration & Reporting

  • Serve as primary point of contact for major incidents, briefing executive leadership, legal, compliance, and external regulators as needed
  • Coordinate with IT, legal, risk, business units, and external partners (e.g., law enforcement, forensics firms) during incidents
  • Produce executive-level reports on incident trends, program maturity, detection improvements, and transition status

Program Maturity & Compliance

  • Align incident response practices with industry standards (NIST, ISO 27001, MITRE ATT&CK, etc.) and regulatory requirements
  • Drive metrics-driven improvements and maturity assessments for the IR program
  • Contribute to enterprise-wide security initiatives, including vulnerability management, threat intelligence, and security awareness

Required Qualifications

  • 10+ years of progressive cybersecurity experience, including 5+ years in incident response, digital forensics, or security operations leadership
  • Proven experience leading cyber incident response teams and managing complex, high-impact incidents
  • Demonstrated success in vendor/MSSP transitions or outsourcing handovers in a cybersecurity context
  • Strong understanding of detection technologies (SIEM, EDR/XDR, SOAR, threat intelligence platforms)
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or related field (Master's preferred)
  • Relevant certifications such as CISSP, CISM, GIAC GCFA/GCIH/GCTI, or similar

Preferred Qualifications

  • Experience in a regulated industry (finance, healthcare, critical infrastructure, or gaming)
  • Hands-on technical experience with tools such as Splunk, Elastic, CrowdStrike, Microsoft Defender, Sentinel, or similar
  • Prior experience building or maturing an internal SOC/IR function while reducing MSSP dependency

Why Join?
This is a high-visibility leadership opportunity to build and mature a critical incident response function, lead a strategic MSSP transition, and shape long-term security program maturity for a premier gaming organization.