1

Splunk Cybersecurity Defense Analyst Jobs in Gilbert, AZ

Cyber Security Tutor

Phoenix, AZ · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Mesa, AZ · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Chandler, AZ · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Tempe, AZ · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Gilbert, AZ · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Cyber Security Tutor

Glendale, AZ · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Analyze threat intelligence, insider threat insights, incidents, simulation results, and business ... influencing cybersecurity, fraud, control, technology, and business partners without direct ...

Cyber Security Technical GRC - VP

Tempe, AZ · Hybrid

$106K - $143K/yr

As an individual contributor,you will act within thefirst line of defense, contributing to complex ... Monitor and analyze risk trends (internal and external) to proactively mitigate potential ...

Perform quality assurance checks on Splunk comment closures, Splunk investigations, and ... Experience conducting detailed technical analysis of Cybersecurity Events and Incidents * Must have ...

next page

Showing results 1-20

Splunk Cybersecurity Defense Analyst information

See Gilbert, AZ salary details

$42.9K

$99.1K

$149.5K

How much do splunk cybersecurity defense analyst jobs pay per year?

As of Sep 2, 2026, the average yearly pay for splunk cybersecurity defense analyst in Gilbert, AZ is $99,083.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,200.00 and $115,100.00 per year, depending on experience, location, and employer.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Gilbert, AZ?

For Splunk Cybersecurity Defense Analyst jobs in Gilbert, AZ, the most frequently searched job titles are:

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Gilbert, AZ look for?

The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Gilbert, AZ are:

What cities near Gilbert, AZ are hiring for Splunk Cybersecurity Defense Analyst jobs?

Cities near Gilbert, AZ with the most Splunk Cybersecurity Defense Analyst job openings:

Cyber Tier 1 Deputy Team Lead with Security Clearance

Leidos

Chandler, AZ • On-site

$110K - $149K/yr

Other

Medical, Retirement, PTO

This job post has expired today. Applications are no longer accepted.


Leidos rating

8.3

Company rating: 8.3 out of 10

Based on 152 frontline employees who took The Breakroom Quiz

80th of 500 rated business services


Job description

R-00190195 Description Leidos is seeking a Cyber Tier 1 Deputy Team Lead to join our team on a highly visible cyber security single-award IDIQ vehicle that provides Network Operations Security Center (NOSC) support, cyber analysis, application development, and a 24x7x365 support staff.  Department of Homeland Security (DHS), Network Operations Security Center (NOSC) is a U.S. Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise.   The DHS NOSC has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication. The Cyber Tier 1 (Monitoring and Analysis) team provide 24x7 support across 4 different shifts. We have front half shifts (day and night) and back half shifts (day and night). The front half shift will work 12-hour shifts from Sunday – Tuesday and alternating Wednesdays. The back half shift will work 12-hour shifts from Thursday – Saturday and alternating Wednesdays.  Candidates must have the ability to work non-core hours, if necessary.   Duties include network security monitoring and detection, proactively searching for threats, inspecting traffic for anomalies and new malware patterns, investigating and analyzing logs, providing analysis and response to alerts, and documenting activity in NOSC investigations and Security Event Notifications (SENs).   The Cyber Tier 1 Deputy Team Lead is a critical role within the Network Operations and Security Center (NOSC), created to enhance operational efficiency, streamline processes, and improve the overall cybersecurity posture. This role emphasizes continuous improvement of effectiveness and efficiency, ensuring consistent communication and task completion across all shifts, and providing quality assurance and content enhancement for cybersecurity investigations and monitoring tools.     Primary Responsibilities * Onboarding Optimization: * Lead efforts to reduce onboarding time through continuous observation and assessment of operations and administrative processes. * Implement process improvements to enhance efficiency and reduce unnecessary efforts, leveraging Lean Six Sigma methodologies. * Process Improvement: * Continuously review and refine Standard Operating Procedures (SOPs) and workflows to ensure they are modern, efficient, and aligned with current needs. * Collaborate with the SOAR team and other special teams to enhance automation and workflow capabilities. * Customer Service Enhancement: * Provide superior customer service to the Department of Homeland Security (DHS) by accurately identifying and addressing ad hoc requests from federal leadership. * Act as a point of contact for high-level leaders and leads on the federal side to ensure clear communication and understanding of requirements. * Training and Tools Management: * Oversee and maintain compliance with required training programs, including on-the-job cybersecurity training and DHS-mandated e-learning courses. * Manage and maintain access to cybersecurity tools, ensuring all team members have the necessary permissions to perform their roles effectively. * Provide training on the use of various cybersecurity tools to team members, enhancing their capability to use the tools efficiently. * Shift Liaison and Task Management: * Ensure that all shifts (Front Days, Back Days, Front Nights, Back Nights) do not miss important emails or tasks, maintaining consistency in task completion. * Monitor and follow-up on asks to ensure they are addressed and not overlooked, addressing gaps in previous processes. * Quality Assurance and Content Improvement: * Perform quality assurance checks on Splunk comment closures, Splunk investigations, and cybersecurity investigations (ECMs). * Conduct quality checks on EBMs or proxy and firewall blocks submitted within the network. * Review trends and data to develop better content for Splunk alerting and monitoring. * Continuously work to improve the accuracy and efficiency of monitoring content by analyzing investigation trends. * Process and Workflow Enhancement: * Collaborating with the federal cybersecurity leads to reduce waste and improve meaningful cybersecurity processes. * Engage with various teams to explore new methods to improve the work environment and cybersecurity services, including liaising with SOAR engineers and other special teams. * Tools and Service Evaluation * Test and evaluate new tools and services requested by the customer in a testing or development environment, providing critical feedback and analysis before enterprise-wide acquisition. Collaborate on feature development and enhancement of existing tools by testing new features and providing insights to optimize their functionality for the organization.   Basic Qualifications   * All NOSC Deputy Team Lead candidates shall have one of the following: * Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of 4 years total professional experience; * Associate’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of 6 years total professional experience; * High school diploma and AND a minimum of 8 years total professional experience; * And, professional experience in at least two of the areas listed below: * GenAI/Automation * Vulnerability Assessment * Intrusion Prevention and Detection * Access Control and Authorization * Policy Enforcement * Application Security * Protocol Analysis * Firewall Management * Incident Response * Encryption * Web-Filtering * Advanced Threat Protection * Military experience and training may be considered in lieu of degree * Active advanced cybersecurity certification(s) * Experience conducting detailed technical analysis of Cybersecurity Events and Incidents * Must have current TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program. * Must have one of the following certifications:  CCNA-Security, CYSA+, GICSP, GSEC, Security+ CE, CND, SSCP   Candidates should also demonstrate the following: * Extensive knowledge of a SOC’s/NOSC’s purpose and role within an organization * Detailed understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc) * Expertise with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc). * Expertise with packet analysis tools such as Wireshark * Able to perform critical thinking and analysis to investigate cyber security alerts * Extensive knowledge of common malware and attack vectors * Extensive experience with Windows operating systems and standard OS logging * Extensive experience with Antivirus, DLP, and host-based firewalls   Preferred Qualifications   * Familiarity with other continuous improvement methodologies, e.g. Theory of Constraints * Strong analytical skills with the ability to perform quality assurance and content improvement. * Demonstrated ability to liaise between multiple teams and organizational levels. * Excellent communication skills, both written and verbal, with the ability to interact effectively with federal leadership and team members across all shifts. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares. Original Posting: August 21, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $87,100.00 - $157,450.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits . Securing Your Data Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – neve

What Leidos employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Leidos logo

About Leidos

Sourced by ZipRecruiter

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success. We empower our teams, contribute to our communities, and operate sustainable practices. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Reston, VA, US

Social media