1

Splunk Cybersecurity Defense Analyst Jobs in Roxboro, NC

Cyber Security Tutor

Durham, NC · Remote

$18 - $40/hr

Skilled at teaching security analysis, threat modeling, and defensive strategy implementation ... Familiar with cybersecurity curricula and certification pathways including CompTIA Security+ and ...

Strong cybersecurity foundation, including threat modeling, adversary simulation, exploit or vulnerability research, malware analysis, network defense, threat hunting, detection engineering, digital ...

Splunk Cybersecurity Defense Analyst information

See Roxboro, NC salary details

$37.8K

$87.4K

$132K

How much do splunk cybersecurity defense analyst jobs pay per year?

As of Aug 17, 2026, the average yearly pay for splunk cybersecurity defense analyst in Roxboro, NC is $87,443.00, according to ZipRecruiter salary data. Most workers in this role earn between $69,900.00 and $101,600.00 per year, depending on experience, location, and employer.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Roxboro, NC look for?

The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Roxboro, NC are:

What cities near Roxboro, NC are hiring for Splunk Cybersecurity Defense Analyst jobs?

Cities near Roxboro, NC with the most Splunk Cybersecurity Defense Analyst job openings:

Principal Cybersecurity Analyst

Fidelity Investments

Durham, NC

Full-time

Re-posted 3 days ago


Fidelity Investments rating

8.7

Company rating: 8.7 out of 10

Based on 271 frontline employees who took The Breakroom Quiz

16th of 150 rated financial services


Job description

Job Description:

Position Description:

Note: Fidelity will not provide immigration sponsorship for this position.

Performs functions related to Network and Perimeter specialized Security Engineers including Email Security, DNS, Distributed Denial of Service (DDoS), IDS/IPS and cloud security. Understands cyber threats, malicious cyber threat actor motivations, and capabilities relevant to regions of interest. Builds Email Security, Email and Web Advance Threat Protection, DNS, DDoS, IDS/IPS and cloud security. Stops external attacks to firm systems using endpoint controls includes firewall, antivirus, and host-based intrusion systems. Manages Intrusion Prevention System (IPS), Advance Threat Protection (ATP), Cloud Security and Email Security operational functions.

Primary Responsibilities:

  • Makes information security risk determinations based on intelligence analysis.
  • Develops plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs.
  • Monitors current reports of computer viruses to determine when to update virus protection systems.
  • Encrypts data transmissions and erects firewalls to conceal confidential information as it is being transmitted and to keep out tainted digital transfers.
  • Performs risk assessments and executes tests of data processing systems to ensure functions of data processing activities and security measures.
  • Modifies computer security files to incorporate new software, correct errors, or change individual access status.

Education and Experience:

Bachelor's degree in Computer Science, Engineering, Information Technology, Information Systems, or a closely related field (or foreign education equivalent) and five (5) years of experience as a Principal Cybersecurity Analyst (or closely related occupation) designing and implementing perimeter security defense solutions to protect enterprise networks from external threats, unauthorized access, and DDoS attacks, in on premises and Cloud environments.

Or, alternatively, Master's degree in Computer Science, Engineering, Information Technology, Information Systems, or a closely related field (or foreign education equivalent) and three (3) years of experience as a Principal Cybersecurity Analyst (or closely related occupation) designing and implementing perimeter security defense solutions to protect enterprise networks from external threats, unauthorized access, and DDoS attacks, in on premises and Cloud environments.

Skills and Knowledge:

Candidate must also possess:

  • Demonstrated Expertise ("DE") designing enterprise networks requiring security using secure routing protocols (RIPv2 and OSPF), encryption protocols (IPSec and SSL or TSL), and robust firewalls and access control implementation.
  • DE performing manual and penetration testing, using Nmap, Dirbuster, and Metasploit to secure enterprise network from unauthorized access; and performing automated penetration testing using Nessus, Qualys, and Burpsuite to identify vulnerabilities, analyze traffic, and validate security controls.
  • DE maintaining security systems (Cisco ASA, Juniper SRX, or Check Point Firewalls), intrusion detection and prevention systems, force point proxy servers, and log management tools (Spunk, Qradar, and Sevone) to monitor and troubleshoot network traffic.
  • DE engaging in incident handling -- threat discovery, triage, containment, recovery, and remediation plan coordination -- using Splunk, Wireshark, Crowdstrike, Sentinelone, and Servicenow to ensure rapid response and resolution.

#PE1M2

#LI-DNI

Fidelity's Onsite Working Model
Fidelity is transitioning to a full-time onsite working model through a phased rollout across regions and roles. Currently, some roles and locations require 100% onsite presence, while others require less. Onsite expectations are likely to evolve as the rollout continues. This transition does not apply to fully remote roles.

Certifications:Category:Information Technology

Please be advised that Fidelity's business is governed by the provisions of the Securities Exchange Act of 1934, the Investment Advisers Act of 1940, the Investment Company Act of 1940, ERISA, numerous state laws governing securities, investment and retirement-related financial activities and the rules and regulations of numerous self-regulatory organizations, including FINRA, among others. Those laws and regulations may restrict Fidelity from hiring and/or associating with individuals with certain Criminal Histories.


What Fidelity Investments employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom