1

Splunk Cybersecurity Defense Analyst Jobs in Rialto, CA

BUSINESS DATA ANALYST 1

Norco, CA · On-site

$33.17 - $42.31/hr

Familiarity with Department of Defense or Navy data environments. * Exposure to data quality ... cybersecurity, cloud computing, geographic information systems (GIS), business intelligence (BI ...

Internship or coursework supporting DoD or defense programs. Company Summary Join the VSolvit Team ... cybersecurity, cloud computing, geographic information systems (GIS), business intelligence (BI ...

next page

Showing results 1-20

Splunk Cybersecurity Defense Analyst information

See Rialto, CA salary details

$43.1K

$99.7K

$150.4K

How much do splunk cybersecurity defense analyst jobs pay per year?

As of Sep 7, 2026, the average yearly pay for splunk cybersecurity defense analyst in Rialto, CA is $99,676.00, according to ZipRecruiter salary data. Most workers in this role earn between $79,700.00 and $115,800.00 per year, depending on experience, location, and employer.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What are popular job titles related to Splunk Cybersecurity Defense Analyst jobs in Rialto, CA?

For Splunk Cybersecurity Defense Analyst jobs in Rialto, CA, the most frequently searched job titles are:

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Rialto, CA look for?

The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Rialto, CA are:

What cities near Rialto, CA are hiring for Splunk Cybersecurity Defense Analyst jobs?

Cities near Rialto, CA with the most Splunk Cybersecurity Defense Analyst job openings:

Splunk Administrator (Site Reliability Engineer)

Schoolsfirstfcu

Riverside, CA • On-site

$59.50 - $79/hr

Full-time

Re-posted 28 days ago


Job description

We're always looking for diverse, talented, service-oriented people to join our exceptional team.

Splunk Administrator (Site Reliability Engineer)

The pay range for this position is listed below. Our pay ranges are built to allow for candidates with various levels of skill and experience to be considered, as well as for room for growth and tenure achieved in a role over time. Typical new hire salary offers fall within the minimum to midpoint of a pay range for many candidates. Any offer extended to a candidate will be based upon their unique set of knowledge, skills, education, and experience as well as internal equity.

Pay Range:

$46.90 - $75.04

Scheduled Weekly Hours:

40
What You'll Be Doing

Responsible for deploying, managing and optimizing. Onboard machine data, build queries using Search Processing Language (SPL) and design dashboards to power IT Enterprise Applications, Security Operations and observability practices. Proactively monitor and report on the environmental health of applications, as well as engage in critical system outages (triage) resolution efficiently to identify, review, analyze, debug and resolve issues with a team of Site Reliability Engineers. Serve as a subject matter expert for the Splunk Platform. .

  • Ensure enterprise applications and supporting platforms are fully functional, reliable, available, performant, and secure through frequent monitoring, operational checks, and timely restoration of service in the event of outages, ingestion issues, or system failures.

  • Ingest and onboard new operational data sources, including server, application, infrastructure, network, security, API, and system logs; ensure data is reliable, appropriately normalized, accurately timestamped, correctly categorized, and aligned to the Splunk Common Information Model where applicable.

  • Monitor and maintain Splunk platform health, including indexers, search heads, data flows, storage utilization, clustered or distributed components, internal logs, capacity trends, and service availability; resolve ingestion bottlenecks, performance issues, and platform outages.

  • Create, maintain, and improve real-time Splunk dashboards, visualizations, alerts, reports, metrics, logs, traces, and event views to provide actionable insight into system health, service levels, user experience, operational risk, network activity, security events, and threat indicators.

  • Craft, tune, and optimize Splunk Processing Language (SPL) searches, scheduled searches, alert logic, reports, dashboards, and resource-intensive queries to improve performance, reduce noise, support accurate KPI/SLA reporting, and enable analysis across large datasets.

  • Configure automated alerts and triggers for anomaly detection, system downtime, performance degradation, ingestion issues, and cyber or operational threats so critical issues are flagged immediately and routed for response.

  • Alert and accurately report KPIs on systems status with tuning recommendations at regular intervals; provide detailed analysis using APM, Splunk, and other monitoring or observability solutions.

  • Support a 24x7 production environment with a team of experienced engineers, including on-call rotation, deployment support, and timely response to critical incidents as needed.

  • Respond quickly to incidents, investigate triggered alerts, isolate performance bottlenecks, fix issues, and work with other engineers to ensure enterprise applications and platforms remain fully functional with a Member-first focus.

  • Serve as an escalation point for complex application, infrastructure, observability, security, and platform issues; coordinate resolution across infrastructure engineering, software engineering, software quality assurance, cybersecurity, operations, vendors, and other organizational teams.

  • Support incident triage, root cause analysis, post-incident reviews, postmortems, and corrective action planning; identify recurring issues and recommend preventive improvements.

  • Develop solutions to meet technical and business requirements; create detailed design documents and associated solutions built around current and new technologies.

  • Demonstrate application environment tuning abilities and provide solutions to capacity requirements, including JVM, web containers, database connections, HTTP servers, and related enterprise application components.

  • Contribute to automation and efficiency improvements for application and infrastructure buildout components, operational tasks, monitoring coverage, and deployment readiness.

  • Ensure effective release management, change management, quality assurance, rollback planning, peer review, and deployment readiness in project lifecycles using an ITIL-centric approach.

  • Support production and non-production environments, account for differences in each environment for deployments and testing, and peer review changes within the Enterprise Applications team.

  • Maintain and improve configuration documentation, diagrams, SOPs, runbooks, work/incident ticketing systems, knowledge articles, training materials, and other supporting documentation.

  • Ensure adherence to configuration, operating, security, compliance, and governance best practices and standards, including approved capacity, licensing, access control, and retention requirements.

  • Deploy and troubleshoot applications on both Java and .NET platforms as an expert for infrastructure and development teams.

  • Ensure the highest levels of service for Members and Team Members.

Additional Job Functions
  • Performs other duties as assigned
  • Complies with regulatory compliance and assigned training requirements including but not limited to BSA regulations corresponding to their specific job duties. Failure to do so may result in disciplinary and other employment related actions.
    Qualifications
    • High School Diploma or GED required
    • Bachelor's Degree in a related field or equivalent years of experience required
    • 5-7 years of prior relevant experience required
      Knowledge, Skills, and Abilities
      • Knowledge of the following:
      • Java Enterprise Edition and .NET frameworks.
      • Standard java/.NET tools to debug application and system performance issues.
      • Tuning application serving environments.
      • Software release management and the SDLC.
      • Redhat Linux and Microsoft Windows Server 2008/2012.
      • Security best practices for multi-tiered operating systems as well as application security practices.
      • Disaster recovery experience Preferred
      • Application Performance Management, such as Application Dynamics, Splunk and/or SNMP monitoring tools
      • IBM Security Access Manager (ISAM), IBM/Apache HTTP Server, IBM Secure Directory Server Preferred
      • Scripting skills for automating tasks
      • Experience with Docker, Kubernetes, Openshift, Python, Jenkins, Git/Gitflow, Ansible, Quay and Artifactory Preferred
      • Managing IBM AIX, Redhat, Linux and/or Microsoft Windows Servers, process development, support and implementation of systems architecture
      • Must possess solid oral and written communication, project management, and interpersonal skills.
        SchoolsFirst FCU is committed to Diverse, Equitable, and Inclusive Hiring
        At SchoolsFirst FCU we are dedicated to building and growing a diverse, inclusive, and authentic Dream Team, so if you're excited about a position or wanting to make a career change but your past experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. Many skills are transferrable and you may be just the right candidate for the position, or for other roles we are working on.

        SchoolsFirst Federal Credit Union is committed to fostering, cultivating, and preserving a culture of diversity and inclusion. SchoolsFirst FCU is an equal opportunity employer and prohibits discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibits discrimination against all individuals based on their race, color, religion, sex, national origin, age, sexual orientation, gender identity or expression, political affiliation, or genetic information.

        This organization participates in E-Verify.