1

Splunk Cybersecurity Defense Analyst Jobs in Washington

ASRC Federal is seeking a highly skilled and experienced Cyber Defense Analyst (Threat Hunter) to ... Maintain and upkeep various cybersecurity applications and tools on servers and workstations to ...

next page

Showing results 1-20

Splunk Cybersecurity Defense Analyst information

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Washington? For Splunk Cybersecurity Defense Analyst jobs in Washington, the most frequently searched job titles are:
What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Washington look for? The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Washington are:
What cities in Washington are hiring for Splunk Cybersecurity Defense Analyst jobs? Cities in Washington with the most Splunk Cybersecurity Defense Analyst job openings:
Infographic showing various Splunk Cybersecurity Defense Analyst job openings in Washington as of July 2026, with employment types broken down into 64% Full Time, 12% Part Time, and 24% Contract. Highlights an 61% Physical, 5% Hybrid, and 34% Remote job distribution.

Senior Splunk Cyber Security Engineer

MANTECH

Chantilly, VA • On-site

Other

Posted 20 days ago


ManTech rating

9.0

Company rating: 9.0 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

33rd of 241 rated software companies


Job description

MANTECH seeks a motivated, career, and customer-oriented Senior Splunk Cyber Security Engineer to join our team in Chantilly, VA.

In this role, you will support a mission-critical initiative and contribute directly to cybersecurity operations through the administration and engineering of a large enterprise Splunk environment. This position is ideal for professionals with strong hands-on experience in system integration, data management, and cyber defense initiatives. You will play a key role in maintaining and tuning Splunk systems, while collaborating with technical teams and cyber analysts across a dynamic enterprise environment.

Responsibilities include but are not limited to:

  • Managing the day-to-day operation of large enterprise Splunk deployments.
  • Troubleshooting data collection issues and resolving system conditions affecting stability or integrity.
  • Deploying and maintaining both supported and unsupported Splunk add-ons.
  • Executing Splunk Enterprise upgrades and patches.
  • Configuring and deploying Splunk forwarders using centralized management tools.
  • Maintaining and tuning Splunk Enterprise Security (ES) content and performance.
  • Managing knowledge objects, data models, dashboards, alerts, and operational content.

Minimum Qualifications:

  • Bachelor’s degree, or 4+ additional years of IT experience in lieu of a degree.
  • 5+ years of experience in an enterprise and/or cybersecurity-focused environment.
  • Experience with Splunk administration and engineering.
  • Experience with Splunk Enterprise Security (ES) operations and configurations.
  • Proficiency with Unix and Windows environments.
  • DoD 8570 IAT Level II certification (e.g., Security+, CCNA-Security, GSEC).

Preferred Qualifications:

  • Splunk certifications such as Architect, Consultant I/II, Admin, or Power User.
  • Experience with scripting or programming languages (e.g., Bash, Python, Java, Perl, .NET).
  • Familiarity with developing and deploying operational and security use cases within Splunk.

Clearance Requirements

  • Must have a current/active TS/SCI with Polygraph.

Physical Requirements

  • Must be able to remain in a stationary position 50% of the time.
  • Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers via email, phone, or virtual communication, which may involve delivering presentations.

What ManTech employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom