Cyber Defense Analyst – Intermediate (Splunk SIEM)

Remote
Apply
AI Summary

Tangent Technologies seeks a Cyber Defense Analyst – Intermediate to administer and sustain enterprise Splunk SIEM environments. Responsibilities include log onboarding, dashboard development, and supporting cybersecurity teams with analysis. This 100% remote role requires 3-6 years of cybersecurity experience with hands-on Splunk expertise.

Key Highlights
100% remote position
Focus on Splunk SIEM administration and sustainment
Requires 3-6 years of cybersecurity experience with Splunk
Key Responsibilities
Support administration and maintenance of Splunk Enterprise environments
Configure and maintain log ingestion and Splunk forwarders
Onboard new data sources, applications, and infrastructure logs
Develop and maintain Splunk dashboards, searches, and reports
Assist with field extractions, log parsing, and normalization
Support cybersecurity teams by running log queries and event analysis
Assist with alert tuning and detection use case development
Troubleshoot Splunk search performance and indexing issues
Maintain documentation related to log sources, dashboards, and monitoring capabilities
Technical Skills Required
Splunk Enterprise Splunk forwarders Linux system logs Windows system logs TCP/IP DNS HTTP
Benefits & Perks
100% remote
Nice to Have
Splunk Power User or Splunk Admin certification
Experience supporting Splunk Enterprise Security
Experience in a Security Operations Center (SOC)
Familiarity with log parsing, regex, or scripting
Experience integrating cloud, endpoint, or network security logs

Job Description


Tangent Technologies is seeking a Cyber Defense Analyst – Intermediate with Splunk experience to support the sustainment and administration of enterprise Splunk SIEM environments. This position focuses on maintaining Splunk infrastructure, onboarding log sources, supporting dashboards and searches, and assisting cybersecurity teams with log analysis.

This role is 100% remote, making it an excellent opportunity for a mid-level Splunk engineer or SOC analyst with Splunk experience who wants to grow their SIEM engineering skills while supporting federal cybersecurity programs.

Key Responsibilities

  • Support administration and maintenance of Splunk Enterprise environments
  • Configure and maintain log ingestion and Splunk forwarders
  • Onboard new data sources, applications, and infrastructure logs
  • Develop and maintain Splunk dashboards, searches, and reports
  • Assist with field extractions, log parsing, and normalization
  • Support cybersecurity teams by running log queries and event analysis
  • Assist with alert tuning and detection use case development
  • Troubleshoot Splunk search performance and indexing issues
  • Maintain documentation related to log sources, dashboards, and monitoring capabilities

Required Qualifications

  • 3–6 years of experience in cybersecurity operations, SIEM administration, or system engineering
  • Hands-on experience with Splunk Enterprise or similar SIEM platforms
  • Experience onboarding log sources and configuring Splunk forwarders
  • Experience creating search queries, dashboards, and reports
  • Familiarity with Linux or Windows system logs
  • Understanding of network protocols (TCP/IP, DNS, HTTP)
  • Strong troubleshooting and documentation skills

Preferred Qualifications

  • Splunk Power User or Splunk Admin certification
  • Experience supporting Splunk Enterprise Security
  • Experience in a Security Operations Center (SOC)
  • Familiarity with log parsing, regex, or scripting
  • Experience integrating cloud, endpoint, or network security logs

Powered by JazzHR

XKEFFPdF0B

Similar Jobs

Explore other opportunities that match your interests

Corporate Security Manager

Cyber Security
5d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Onebrief

Namer

Corporate Security Engineering Manager

Cyber Security
1mo ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Onebrief

Namer

Senior IT Security Engineer - DLP and CASB

Cyber Security
1h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

CSAA Insurance Group, a AAA In...

United State

Subscribe our newsletter

New Things Will Always Update Regularly