1

Splunk Cybersecurity Defense Analyst Jobs in Utah

... and defense-in-depth strategies * Hands-on experience securing both on-premises and cloud ... Strong analytical, problem-solving, and risk-assessment skills * Excellent written and verbal ...

... strengthening defense systems. Opportunities exist across public agencies, private sector ... These roles require discretion, analytical rigor, and unwavering integrity. Security professionals ...

DCO Counter-Measures Engineer

Sunset, UT · On-site

$107K - $195K/yr

The selected candidate will provide support for defensive cyber operations activities and will be ... Skilled in developing extended cyber security analytics. * Experience in developing and supporting ...

Showing results 41-60

Splunk Cybersecurity Defense Analyst information

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Utah?

For Splunk Cybersecurity Defense Analyst jobs in Utah, the most frequently searched job titles are:

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Utah look for?

The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Utah are:

What cities in Utah are hiring for Splunk Cybersecurity Defense Analyst jobs?

Cities in Utah with the most Splunk Cybersecurity Defense Analyst job openings:

Information System Security Officer

Dark Wolf Solutions

Ogden, UT • On-site

Full-time

Posted 19 days ago


Job description

Dark Wolf Solutions is looking for a Information Systems Security Officer who will perform continuous system monitoring to identify malicious cyber-attacks while supporting the containment, and remediation of IT threats. Additionally, this position will monitor networks and applications to identify a possible cyber-attack or intrusion and help coordinate and report on the cyber incident responses.
Key Responsibilities:
  • Vulnerability Management actions to include providing recommendations. Implement mitigations.
  • Conduct intrusion analysis and correlation of unauthorized activities; provide and implement recommendations to improve customer mitigation processes
  • Perform threat insight processes to provide analysis to support mitigation and remediation activities
  • Analyze cyber incidents, correlate incident details, and formulate and implement response actions with guidance from leadership
  • Participate in Root Cause Analysis process and documentation capturing efforts taken to mitigate unauthorized actions
  • Participate in the development of DCO tactics, techniques, and procedures
  • Participate in the development of DCO concept of operations, processes, and procedures
  • Identify security discrepancies and report and respond to security incidents
  • Provide research and analysis in support of expanding programs and areas of responsibility
  • Draft documentation for briefings, reports, and informational analyses
  • Assist in the development of local Tactics, Techniques, and Procedures (TTPs)
  • Participate in customer exercises (after duty hours may be required)
  • Adhere to defined policies, master plans and schedules
  • Complete all initial and annual training requirements and disclosures as outlined by BSTG
  • Perform all other duties as required, consistent with the goals, objectives, and responsibilities of the department

Required Qualifications:
  • 4+ years of relevant experience
  • 2+ years of experience with a SIEM Tool (LogRhythm, Splunk)
  • 2+ years of experience with employment of DoD cybersecurity requirements, policies, and procedures to include assessment and authorization activities
  • Experience within a vSOC, SOC, or CSSP responding to cyber incidents
  • Department of Defense Directive (DoDD) 8140 (formerly DoDD 8570) IAT CSSP Certification must be obtained prior to hire (CEH, CCNA Security, GCIH, CySA+ or Equivalent)
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • US Citizenship and an active Top Secret/SCI security clearance required

Desired Qualifications:
  • Experience performing cybersecurity activities in support of software and system requirements, design, development, testing, and sustainment
  • Experience with HBSS, ACAS, SCAP Compliance Checker (SCC), DISA STIGs
  • Working knowledge of NIST 800-53 Security and Privacy Controls
  • Experience with RHEL
  • Experience in performing post-incident computer forensics without destruction of critical data
  • Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.
In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire.