Jobs · OTHR · Maryland

Splunk Analyst

FedTec · Woodlawn, MD · 3 days ago
On-siteOTHRFull-time

Location: Woodlawn, MD (Onsite)

About the role

Prudent Technology LLC, a Women Owned Small Business, provides innovative IT Automation and Data solutions to federal clients. We are seeking a highly skilled Splunk Analyst with strong SIEM (Security Information and Event Management) experience to join our cybersecurity team. The ideal candidate will monitor, analyze, and respond to security events using Splunk and other SIEM tools, supporting organizational security objectives.

Responsibilities

  • Develop and maintain Splunk dashboards, reports, and alerts to support operational and security teams.
  • Analyze and interpret machine data using Splunk to identify trends, anomalies, and security incidents.
  • Monitor and analyze security events and incidents using Splunk and SIEM platforms.
  • Collaborate with IT and security teams to investigate and remediate security incidents.
  • Tune and optimize SIEM rules to reduce false positives and improve detection accuracy.
  • Document processes, procedures, and incident findings in accordance with organizational policies.
  • Stay current with emerging threats, vulnerabilities, and SIEM best practices.
  • Support compliance initiatives by ensuring proper logging and monitoring in accordance with relevant frameworks and standards.
  • Collaborate with IT, security, and business units to understand data requirements and deliver actionable insights.
  • Assist in data onboarding and ensure data quality and integrity within Splunk.
  • Monitor Splunk searches and alerts to detect and respond to potential issues.
  • Support incident investigations by providing relevant data analysis and reports.
  • Optimize search queries, data models, and indexing strategies to enhance search performance and reduce response times.
  • Responsible for the migration and upgrade of Splunk apps and add-ons, ensuring compatibility, minimal downtime, and adherence to best practices.
  • Fine-tune Splunk configurations and parameters to maximize resource utilization and minimize bottlenecks.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field (or equivalent experience).
  • 2+ years of experience working with Splunk in an analyst or similar role.
  • Proficiency in SPL (Search Processing Language).
  • Proven experience with SIEM technologies, including deployment, configuration, and management (Splunk Enterprise Security preferred).
  • Experience creating dashboards, reports, and alerts in Splunk.
  • Strong analytical and problem-solving skills.
  • Familiarity with IT operations, security monitoring, and incident response.
  • Excellent written and verbal communication skills.

Preferred Qualifications

  • Splunk certifications (e.g., Splunk Core Certified Power User, Splunk Enterprise Security Certified Admin).
  • Experience with scripting languages (Python, Bash, PowerShell).
  • Knowledge of security frameworks and compliance requirements.
  • Experience working in a federal or government environment.

Benefits

  • Comprehensive medical, dental, and vision coverage.
  • 401(k) retirement plans with company support.
  • Paid time off and paid holidays.
  • Training and certification opportunities.
  • Career advancement programs.
  • Flexible work arrangements based on program needs.

Similar jobs