1

Splunk Cybersecurity Defense Analyst Jobs in Tamuning, GU

Be Seen First

... Defense (DoD) cybersecurity environments, including RMF implementation, NIST SP 800-53 security ... Cybersecurity impact analyses. * Risk assessments. * Security reviews for proposed FRCS ...

New

Be Seen First

... Defense (DoD) cybersecurity environments, including RMF implementation, NIST SP 800-53 security ... Cybersecurity impact analyses. * Risk assessments. * Security reviews for proposed FRCS ...

New

Splunk Cybersecurity Defense Analyst information

See Tamuning, GU salary details

$37.8K

$87.4K

$131.9K

How much do splunk cybersecurity defense analyst jobs pay per year?

As of Aug 11, 2026, the average yearly pay for splunk cybersecurity defense analyst in Tamuning, GU is $87,430.00, according to ZipRecruiter salary data. Most workers in this role earn between $69,900.00 and $101,600.00 per year, depending on experience, location, and employer.

How does a Splunk Cybersecurity Defense Analyst typically collaborate with other IT and security teams?

A Splunk Cybersecurity Defense Analyst frequently works alongside network administrators, incident response teams, and other security professionals to detect, investigate, and remediate threats. Collaboration often involves sharing threat intelligence, creating automated alerts, and developing dashboards to provide visibility into security events across the organization. Analysts also participate in regular meetings to coordinate response strategies, review incident post-mortems, and ensure that Splunk configurations align with evolving security requirements. This cross-functional teamwork is essential for maintaining an effective and proactive cybersecurity posture.

What is a Splunk Cybersecurity Defense Analyst?

Splunk Cybersecurity Defense Analysts are professionals who use the Splunk platform to monitor, analyze, and defend an organization’s digital infrastructure against cyber threats. They collect and interpret security data, investigate incidents, and create alerts and dashboards to detect suspicious activity in real-time. Their work helps organizations respond quickly to threats, ensuring the safety and integrity of sensitive information and systems. These analysts often collaborate with IT and security teams to develop best practices for threat detection and response.

What are the key skills and qualifications needed to thrive as a Splunk Cybersecurity Defense Analyst, and why are they important?

To thrive as a Splunk Cybersecurity Defense Analyst, you need a solid understanding of cybersecurity principles, threat analysis, and incident response, typically supported by a degree in information security or related certifications like CompTIA Security+ or GIAC. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is essential. Strong analytical thinking, problem-solving abilities, and effective communication are important soft skills for collaborating with teams and responding to security incidents. These skills and qualities are critical for quickly identifying, investigating, and mitigating cyber threats to protect organizational assets.

What is the difference between Splunk Cybersecurity Defense Analyst vs Security Operations Center (SOC) Analyst?

AspectSplunk Cybersecurity Defense AnalystSecurity Operations Center (SOC) Analyst
CertificationsSplunk certifications, CompTIA Security+CompTIA Security+, GIAC certifications
Work EnvironmentPrimarily uses Splunk platform for data analysisMonitors security alerts across various tools in a SOC
Industry UsageFinancial, healthcare, tech sectors leveraging SplunkBroadly in all sectors with security teams
Job FocusAnalyzing security data with Splunk, threat detectionMonitoring, incident response, alert management

While both roles focus on cybersecurity, the Splunk Cybersecurity Defense Analyst specializes in using Splunk for data analysis and threat detection, whereas the SOC Analyst performs broader security monitoring and incident response across multiple tools. The roles often overlap but differ in platform focus and scope of responsibilities.

What job categories do people searching Splunk Cybersecurity Defense Analyst jobs in Tamuning, GU look for? The top searched job categories for Splunk Cybersecurity Defense Analyst jobs in Tamuning, GU are:

Information Systems Security Analyst

EIGENNET LLC

Santa Rita, GU • On-site

$65K - $75K/yr

Full-time

Posted 3 days ago

New

Be Seen First

After you apply to this job, you can share why you’re interested to jump to the top of the candidate list.


Job description

Job Title: Information Systems Security Engineer (ISSE) – Systems Security Analyst

Employment Type: Full-Time – Up to 40 hours per week
Employment Status: Contingent Upon Contract Award
Customer Agency: Naval Facilities Engineering Systems Command (NAVFAC) Marianas – Command Information Office (CIO3 Office)

Work Location: On-Site

Place of Performance:

  • Naval Facilities Engineering Systems Command (NAVFAC) Marianas facilities:
    • Building 205, Halsey Drive, Nimitz Hill, Piti, Guam 96915.
    • Building 3179, Sumay Drive, Naval Base Guam, Santa Rita, Guam 96915.
  • Additional Government facilities as required:
    • Marine Corps Base Camp Blaz, Guam.
    • Andersen Air Force Base, Guam.

 

Position Overview

·       The Information Systems Security Engineer (ISSE) will provide cybersecurity engineering support to the Naval Facilities Engineering Systems Command (NAVFAC) Marianas Command Information Office (CIO). The ISSE will support the protection, operation, and continuous improvement of Facility-Related Control Systems (FRCS) by ensuring the confidentiality, integrity, availability, and security of Government information systems, networks, and data.

·       The successful candidate will execute cybersecurity engineering activities supporting the Risk Management Framework (RMF), Authority to Operate (ATO) authorization processes, vulnerability management, continuous monitoring, security assessments, and cybersecurity risk management activities across NAVFAC Marianas installations.

·       This position requires demonstrated experience supporting Department of the Navy (DoN) and Department of Defense (DoD) cybersecurity environments, including RMF implementation, NIST SP 800-53 security controls, eMASS authorization package management, vulnerability assessments, Security Technical Implementation Guide (STIG) compliance, Plan of Action and Milestones (POA&M) management, and configuration management activities.

·       The ISSE will work independently with minimal Government supervision and serve as a mission-essential cybersecurity resource supporting cybersecurity operations, Configuration Control Board (CCB) activities, and Cyber Emergency Response Team (CERT) functions.

 

Essential Duties and Responsibilities

  • Execute Risk Management Framework (RMF) lifecycle activities (Steps 1–6) in accordance with applicable Department of the Navy (DoN), Department of Defense (DoD), and NAVFAC Echelon II cybersecurity guidance.
  • Review and validate:
    • System inventories.
    • Security documentation.
    • Authorization artifacts.
    • Compliance evidence.
    • RMF package information.
  • Support Authority to Operate (ATO) authorization activities for Facility-Related Control Systems (FRCS), including:
    • Maintaining and tracking authorization packages.
    • Supporting annual security reviews.
    • Preparing and maintaining Memorandums for Record (MFRs) for approved baseline changes during RMF Step 6 activities.
  • Develop, maintain, and update cybersecurity documentation, including:
    • System Security Plans (SSPs).
    • Security policies.
    • Standard Operating Procedures (SOPs).
    • Implementation plans.
    • After-action reports.
    • Cybersecurity-related technical documentation.
  • Apply NIST SP 800-53 security controls and tailor cybersecurity requirements to FRCS operational environments.
  • Develop and execute vulnerability management strategies using approved DoD and Department of the Navy cybersecurity processes.
  • Perform vulnerability and compliance assessments using approved cybersecurity tools, including:
    • ACAS/Nessus.
    • Security Content Automation Protocol (SCAP).
    • Evaluate STIG.
    • Security Center.
    • Vulnerability Remediation Asset Management (VRAM).
  • Perform manual Security Technical Implementation Guide (STIG) and Security Requirements Guide (SRG) compliance validation using:
    • .ckl files.
    • .cklb checklist formats.
  • Generate cybersecurity assessment reports and maintain vulnerability documentation, including:
    • Scan results.
    • Compliance artifacts.
    • Remediation documentation.
    • Risk acceptance documentation.
  • Upload and maintain cybersecurity artifacts within applicable systems, including:
    • Enterprise Mission Assurance Support Service (eMASS).
    • Vulnerability Remediation Asset Management (VRAM).
  • Perform System-Level Continuous Monitoring (SLCM) activities, including:
    • Vulnerability scanning.
    • Audit log review.
    • Remediation tracking.
    • Plan of Action and Milestones (POA&M) updates.
  • Support RMF Step 4 assessment activities by:
    • Coordinating technical evidence collection.
    • Performing system validation activities.
    • Supporting security assessment preparation with system owners and assessment teams.
  • Serve as a cybersecurity technical representative and/or Configuration Management (CM) Officer supporting Configuration Control Board (CCB) activities.
  • Perform:
    • Cybersecurity impact analyses.
    • Risk assessments.
    • Security reviews for proposed FRCS configuration changes.
  • Support cybersecurity incident response operations as part of the MAR Cyber Emergency Response Team (CERT).
  • Participate in designated on-call rotations and provide cybersecurity support during emergency or mission-essential conditions.
  • Coordinate cybersecurity support activities across multiple FRCS environments and installation locations.
  • Prepare and provide cybersecurity status reporting, including:
    • Bi-weekly RMF status reports.
    • Monthly status reports.
    • Contract-required documentation.
  • Maintain FRCS RMF project tracking information using applicable project management systems, including:
    • Maximo.
    • eProjects.
  • Provide on-site cybersecurity support at Naval Base Guam and other supported locations, including:
    • Marine Corps Base Camp Blaz.
    • Andersen Air Force Base.
  • Perform other cybersecurity engineering duties as assigned by the Contracting Officer’s Representative (COR).

 

Required Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, Information Technology, Engineering, or a related technical discipline preferred.
  • Equivalent combinations of education, professional experience, and cybersecurity certifications may be considered.
  • Minimum five (5) years of professional experience supporting Risk Management Framework (RMF) activities.
  • Minimum one (1) year of specialized experience supporting Facility-Related Control Systems (FRCS) cybersecurity engineering and RMF implementation.
  • Demonstrated experience executing RMF lifecycle activities (Steps 1–6) within:
    • Department of Defense environments.
    • Department of the Navy environments.
  • Experience supporting Authority to Operate (ATO) processes, including:
    • Authorization package development.
    • Security reviews.
    • Security documentation maintenance.
  • Experience developing and maintaining cybersecurity documentation, including:
    • System Security Plans (SSPs).
    • Plans of Action and Milestones (POA&Ms).
    • Memorandums for Record (MFRs).
    • SOPs.
    • Security policies.
    • Implementation plans.
  • Experience implementing and assessing NIST SP 800-53 security controls.
  • Experience performing cybersecurity assessments using DoD-approved tools, including:
    • ACAS/Nessus.
    • SCAP.
    • Evaluate STIG.
    • Security Center.
    • VRAM.
  • Experience performing manual STIG/SRG compliance validation using .ckl and .cklb checklist formats.
  • Experience supporting continuous monitoring activities, including:
    • Vulnerability management.
    • Audit reviews.
    • Remediation tracking.
    • POA&M management.
  • Experience supporting Configuration Control Board (CCB) activities and cybersecurity impact assessments.
  • Experience supporting cybersecurity incident response operations, CERT activities, or equivalent cyber defense functions.
  • Strong written and verbal communication skills with the ability to communicate effectively with:
    • Government personnel.
    • System owners.
    • Information Systems Security Managers (ISSMs).
    • Cybersecurity stakeholders.
  • Ability to work independently, prioritize multiple tasks, and perform cybersecurity activities with minimal Government supervision.
  • Ability to operate within secure military installation environments while complying with DoD security requirements.
  • Ability to perform essential field activities, including:
    • Walking on uneven terrain.
    • Climbing ladders.
    • Bending, crouching, and reaching.
    • Lifting and moving IT equipment up to 25 pounds.
    • Conducting on-site cybersecurity assessments.

 

Preferred Qualifications

  • Experience supporting:
    • NAVFAC cybersecurity operations.
    • Department of the Navy cybersecurity programs.
    • DoD cybersecurity environments.
  • Experience supporting:
    • Facility-Related Control Systems (FRCS).
    • Operational Technology (OT).
    • Industrial Control Systems (ICS).
    • Building automation and security systems.
  • Hands-on experience managing RMF authorization packages within eMASS.
  • Experience using eMASS for:
    • Authorization package management.
    • Artifact uploads.
    • Package maintenance.
  • Knowledge of:
    • DoN cybersecurity directives.
    • NAVFAC Echelon II RMF Business Rules.
    • DoD cybersecurity policies.
  • Experience tracking cybersecurity project activities using:
    • Maximo.
    • eProjects.
  • Experience supporting military installation cybersecurity operations and mission-essential environments.
  • Experience performing:
    • Security assessments.
    • Technical reviews.
    • Vulnerability remediation.
    • Cybersecurity risk management.
  • Strong technical writing skills with experience preparing:
    • Cybersecurity policies.
    • Procedures.
    • Implementation plans.
    • Incident response documentation.
  • Ability to manage multiple cybersecurity projects and FRCS environments simultaneously.

 

Required Certifications

Candidates must possess and maintain at least one approved commercial cybersecurity certification aligned with DoDM 8140.03 Work Role Code 461 (Systems Security Analyst), Intermediate Proficiency Level prior to onboarding.

Intermediate-Level Certifications

  • Certified Cloud Security Professional (CCSP).
  • CompTIA Cloud+.
  • Global Industrial Cyber Security Professional (GICSP).
  • GIAC Information Security Fundamentals (GISF).
  • GIAC Security Essentials Certification (GSEC).
  • CompTIA Security+.

Advanced-Level Certifications (Also Acceptable)

  • Registered Cybersecurity Career Professional (RCCE) Level 1.
  • Certified Information Systems Security Officer (CISSO).
  • CISSP Information Systems Security Engineering Professional (CISSP-ISSEP).
  • CompTIA Cybersecurity Analyst (CySA+).
  • FITSP-Operations (FITSP-O).
  • GIAC Cloud Security Automation (GCLD).
  • GIAC Certified Security Architect (GCSA).
  • GIAC Systems and Network Auditor (GSNA).

 

Certification Maintenance Requirements

  • Certifications must remain active and in good standing throughout contract performance.
  • Personnel must complete:
    • Minimum twenty (20) hours of Continuous Professional Development (CPD) annually; or
    • The minimum CPD requirement established by the certification provider, whichever is greater.

 

Operational Requirements

  • Position requires full-time on-site performance at Naval Base Guam.
  • Work schedule:
    • Up to forty (40) hours per week.
    • Monday through Friday.
    • During normal business hours.
    • Excluding Federal holidays.
  • Remote telework is not authorized except for emergency or situational circumstances approved by the COR.
  • Personnel are considered Emergency Essential and/or Mission Essential and may be required to support expanded mission conditions.
  • Participation in MAR Cyber Emergency Response Team (CERT) activities and on-call rotations may be required.
  • Local travel may be required between:
    • Naval Base Guam.
    • Marine Corps Base Camp Blaz.
    • Andersen Air Force Base.
  • Contractor personnel must provide their own transportation for local travel unless otherwise authorized.
  • Overtime is not authorized under this contract.