1

Splunk Security Analyst Jobs (NOW HIRING)

Use scripting and automation to improve SIEM operations and support security analytics. * Support ... Experience supporting Splunk across Windows, Linux, Solaris, and macOS environments. * Hands-on ...

Security Analyst

Mountain View, CA · On-site +1

$90K - $120K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Monitor security alerts and events using SIEM tools (SPLUNK, Wazuh) and other security monitoring systems. * Conduct initial triage and investigation of potential security incidents. * Analyze logs ...

Security Analyst (SOC)

Hawthorne, CA · On-site +1

$110K - $130K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Experience using Elastic, Splunk and/or other SIEMs. * Experience with scripting language(s) for ... Security Analyst/Level I: $95,000.00 - $115,000.00/per year Security Analyst/Level II: $110,000.00 ...

Security Analyst

Mountain View, CA · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Monitor security alerts and events using SIEM tools (SPLUNK, Wazuh) and other security monitoring systems. * Conduct initial triage and investigation of potential security incidents. * Analyze logs ...

SUMMARY The Security Analyst detects, manages and reduces the impact of cybersecurity threats to ... Investigate security alerts / notifications from SPLUNK * Work with the process automation team on ...

Security Analyst

Mountain View, CA · Remote

$120K/yr

  • Dental

  • Vision

  • Life

  • Retirement

... SPLUNK, Wazuh) and other security monitoring systems. \t \t \tConduct initial triage and ... with senior analysts and other teams to coordinate response efforts. \t \t \tAssist in the ...

SUMMARY The Security Analyst detects, manages and reduces the impact of cybersecurity threats to ... Investigate security alerts / notifications from SPLUNK * Work with the process automation team on ...

Security Analyst (SOC)

Hawthorne, CA · On-site

$110K - $130K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

SECURITY ANALYST (SOC) As a Security Analyst at SpaceX, you are on the frontline of our information ... Experience using Elastic, Splunk and/or other SIEMs. * Experience with scripting language(s) for ...

Security Analyst (Blue Team)

Hawthorne, CA · On-site +1

$110K - $130K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Experience using Elastic, Splunk and/or other SIEMs. * Experience with scripting language(s) for ... Security Analyst/Level I: $95,000.00 - $115,000.00/per year Security Analyst/Level II: $110,000.00 ...

Security Analyst (Threat Detection)

Hawthorne, CA · On-site +1

$110K - $130K/yr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

Experience using Elastic, Splunk and/or other SIEMs. * Experience with scripting language(s) for ... Security Analyst/Level I: $95,000.00 - $115,000.00/per year Security Analyst/Level II: $110,000.00 ...

Showing results 41-60

Splunk Security Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do splunk security analyst jobs pay per year?

As of Aug 17, 2026, the average yearly pay for splunk security analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is a Splunk Security Analyst?

A Splunk Security Analyst is a cybersecurity professional who specializes in using Splunk, a leading Security Information and Event Management (SIEM) platform, to monitor, analyze, and respond to security events within an organization. They are responsible for configuring Splunk dashboards, creating alerts, investigating potential threats, and helping to ensure compliance with security policies. Their work is essential for detecting and mitigating cyber threats, as well as supporting incident response efforts. Splunk Security Analysts often collaborate with IT and security teams to improve the overall security posture of their organization.

What are some typical challenges Splunk Security Analysts face when managing large-scale security events?

Splunk Security Analysts often encounter challenges such as handling high volumes of security alerts and ensuring timely incident response. Effectively parsing and correlating diverse data sources can be complex, especially in organizations with vast or fragmented IT environments. Analysts must prioritize alerts, filter out false positives, and maintain up-to-date detection rules to stay ahead of evolving threats. Collaborating closely with IT, network, and application teams is key to resolving incidents efficiently and improving overall security posture.

What are the key skills and qualifications needed to thrive as a Splunk Security Analyst, and why are they important?

To thrive as a Splunk Security Analyst, you need expertise in cybersecurity principles, strong analytical abilities, and experience with security incident detection and response, often supported by a degree in computer science or related certifications like Splunk Core Certified User or Security+. Proficiency with Splunk Enterprise Security, SIEM platforms, and scripting languages such as Python or PowerShell is typically required. Strong problem-solving skills, attention to detail, and effective communication set top performers apart in this role. These skills enable analysts to efficiently detect, investigate, and mitigate security threats, ensuring robust protection of organizational assets.

What is the difference between Splunk Security Analyst vs SOC Analyst?

AspectSplunk Security AnalystSOC Analyst
CertificationsSplunk certifications, Security+Security+ or GIAC certifications, Splunk certifications
Work EnvironmentSecurity teams, SIEM-focused rolesSecurity Operations Centers, incident response teams
Industry UsageIT security, cybersecurity firms, enterprise securitySecurity operations, threat monitoring, incident handling

Both roles involve security monitoring and require knowledge of SIEM tools like Splunk. A Splunk Security Analyst specializes in using Splunk for security data analysis, while a SOC Analyst performs broader security operations, including incident response and threat detection, often using Splunk as a tool. The roles are complementary, with overlapping skills but different focus areas within cybersecurity teams.

More about Splunk Security Analyst jobs
Infographic showing various Splunk Security Analyst job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 11% Part Time, and 2% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $107,334 per year, or $51.6 per hour.

Splunk Engineer

Ashburn Consulting

Camp Springs, MD • On-site

Full-time

Re-posted 21 days ago


Job description

Company Description

Ashburn Consulting, LLC, based in the Washington, DC metropolitan area, specializes in providing network and network security solutions in complex environments to a select set of government and business clients. The company, an established leader in its field, is composed of an elite team of engineers and business consultants, each of whom is recognized, and highly regarded, within the network and security communities. 

Job Description

Ashburn is seeking a Senior Splunk Engineer to support a federal cybersecurity architecture opportunity. This Key Personnel role will support enterprise SIEM operations, Splunk architecture, data ingestion, dashboards, alerting, analytics, secure configuration, and performance optimization in a complex Government environment for a proposal opportunity.

Primary Responsibilities

  • Architect, deploy, operate, and maintain enterprise Splunk infrastructure.
  • Support SIEM data ingestion, indexing, normalization, dashboarding, alerting, and operational reporting.
  • Develop dashboards and visualizations for security, operations, and mission stakeholders.
  • Manage Splunk configurations, search/index clusters, data models, alerts, reports, saved searches, and knowledge objects.
  • Support account/access management, server management, monitoring, patching, Splunk version upgrades, and app/add-on maintenance.
  • Improve log source coverage and quality across enterprise systems and applications.
  • Use scripting and automation to improve SIEM operations and support security analytics.
  • Support federal cybersecurity standards, secure configuration, and audit-ready documentation.
Qualifications

Required Qualifications

  • Candidates must be U.S. citizens.
  • Candidates must be willing and able to work as Ashburn W-2 employees. 1099 and corp-to-corp arrangements are not permitted for these roles.
  • DHS EOD / suitability is required.
  • 10+ years of experience designing, implementing, and maintaining Splunk architecture across diverse Government or similarly complex enterprise environments.
  • Experience supporting Splunk across Windows, Linux, Solaris, and macOS environments.
  • Hands-on expertise with core Splunk components: Indexer, Search Head, Deployer, Deployment Server, License Master, Heavy Forwarder, Universal Forwarder.
  • Experience with Splunk authentication methods such as LDAP and SAML.
  • Experience managing Splunk indexer and search clusters.
  • Experience configuring Splunk through configuration files and implementing policies, procedures, and standards for secure and efficient Splunk operations.
  • Advanced ability to use Splunk to extract, transform, analyze, and visualize data for actionable security and operational insights.
  • Experience developing advanced Splunk queries, dashboards, reports, alerts, and data models.
  • Experience conducting application performance and capacity analysis.
  • Advanced scripting experience using Shell, Python, JavaScript, XML, CSS, or equivalent tools.
  • Experience configuring data collection applications such as Splunk DB Connect and the Splunk App for AWS.
  • Experience deploying or supporting Splunk Cloud services on AWS.

Preferred / Strongly Desired Qualifications

  • Prior DHS, DOD / DOW, or federal civilian cybersecurity program experience.
  • Experience supporting large, multi-datacenter Splunk clusters.
  • Experience improving log coverage, log quality, data source onboarding, dashboards, anomaly detection, and security analytics.
  • Splunk certifications strongly preferred.
  • Experience working in DevSecOps, cybersecurity operations, or enterprise security architecture environments.
Additional Information

PHYSICAL REQUIREMENTS:
Work is equally performed in the field as well as in a normal office environment. Lifting (up to 50lbs) may be required. Ladder climbing may be required. Driving is required. All duties performed with or without reasonable accommodations.

Additional Information

Equal Opportunity Employer/Veterans/Disabled. An Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status

Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail [email protected]."

Ashburn Consulting is an Equal Opportunity Affirmative Action Employer.
In compliance with the American with Disabilities Act Amendments Act (ADAAA), if you have a disability and would like to request and accommodation in order to apply for a position with Ashburn Consulting, please e-mail [email protected]."