Cyber Security Analyst - Splunk & Threat Alerts

Stefanini North America and APAC

Atlanta (GA)

On-site

USD 90,000 - 130,000

Full time

8 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Stefanini Group is seeking a Cyber Security Analyst with strong Splunk Enterprise / Splunk Enterprise Security experience to monitor, investigate, and respond to cyber threats within a banking/financial services environment. The role emphasizes threat-alert triage, incident investigation, threat hunting, and security monitoring across critical systems.

Responsibilities include monitoring Splunk alerts, investigating suspicious activity, writing SPL queries, and mapping detections to MITRE ATT&CK

Qualifications

  • 5+ years of cybersecurity operations, SOC monitoring, or incident response.
  • Hands-on experience with Splunk and SPL query development.
  • Experience in banking, financial services, payments, fintech, or regulated environments.
  • Knowledge of financial-sector risks, including fraud and data protection.
  • Strong experience with Splunk Enterprise Security and SPL searches.
  • Familiarity with Windows/Linux, network security, IAM, EDR, cloud security, and IR processes.
  • Strong analytical, documentation, communication, and alert-prioritization skills.

Responsibilities

  • Monitor and triage Splunk notable events, correlation searches, dashboards, and risk-based alerts.
  • Investigate suspicious authentication, privileged-account activity, malware, phishing, ransomware, and data exfiltration.
  • Write and optimize SPL queries for alert investigation, event correlation, and threat hunting.
  • Analyze logs from SIEM, EDR, firewalls, VPN, identity platforms, cloud services, applications, and banking systems.
  • Validate true/false positives, prioritize alerts by risk, and escalate incidents per SOC procedures.
  • Develop and tune Splunk correlation searches, dashboards, reports, and detection rules.
  • Support incident response, root-cause analysis, evidence preservation, and post-incident reporting.
  • Map threats to MITRE ATT&CK and financial-sector controls.

Skills

Splunk
SPL queries
SOC monitoring
Incident response
Threat hunting
Log analysis
Windows/Linux
EDR
Cloud security
MITRE mapping
Documentation
Communication

Tools

Splunk Enterprise Security

Job description

Stefanini Group is hiring!

Exciting opportunity awaits, let us help you get started!

Details:

Stefanini Group is hiring! Exciting opportunity awaits, let us help you get started!

Position Summary

We are seeking a Cyber Security Analyst with strong Splunk Enterprise / Splunk Enterprise Security experience to monitor, investigate, and respond to cyber threats within a banking and financial services environment. The role will focus on threat-alert triage, incident investigation, threat hunting, and security monitoring across critical financial systems.

Key Responsibilities
  • Monitor and triage Splunk notable events, correlation searches, dashboards, and risk-based alerts.
  • Investigate suspicious authentication, privileged-account activity, malware, phishing, ransomware, data exfiltration, and unauthorized transactions or system access.
  • Write and optimize SPL queries for alert investigation, event correlation, and threat hunting.
  • Analyze logs from SIEM, EDR, firewalls, VPN, identity platforms, cloud services, applications, and banking systems.
  • Validate true and false positives, prioritize alerts by risk, and escalated confirmed incidents according to SOC procedures.
  • Develop and tune Splunk correlation searches, dashboards, reports, and detection rules to reduce false positives and improve coverage.
  • Support incident response, root-cause analysis, evidence preservation, and post-incident reporting.
  • Map threats and detections to MITRE ATT&CK and relevant financial-sector security controls.
Job Requirements
Required Qualifications
  • 5+ years of experience in cybersecurity operations, SOC monitoring, or incident response.
  • Strong hands-on experience with Splunk and SPL query development.
  • Experience in banking, financial services, payments, fintech, or regulated environments.
  • Knowledge of financial-sector risks, including fraud, account takeover, payment-system threats, insider risk, and protection of sensitive customer data.
  • Strong hands-on experience with Splunk Enterprise Security.
  • Strong experience developing and troubleshooting SPL searches.
  • Familiarity with Windows/Linux, network security, identity and access management, EDR, cloud security, and incident-response processes.
  • Strong analytical, documentation, communication, and alert-prioritization skills.

*Listed salary ranges may vary based on experience, qualifications, and local market. Also, some positions may include bonuses or other incentives*

About Stefanini Group

The Stefanini Group is a global provider of offshore, onshore and near shore outsourcing, IT digital consulting, systems integration, application and strategic staffing services to Fortune 1000 enterprises around the world. Our presence is in countries like Americas, Europe, Africa and Asia, and more than 400 clients across a broad spectrum of markets, including financial services, manufacturing, telecommunications, chemical services, technology, public sector, and utilities. Stefanini is a CMM level 5, IT consulting, company with global presence. We are CMM Level 5 company.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst - Splunk & Threat Alerts
Cyber Security Analyst - Splunk & Threat Alerts

Stefanini, Inc • Atlanta (GA)

On-site
USD 143,270,000 - 171,924,000
Senior Splunk Cybersecurity Analyst (Threat Hunting)
Senior Splunk Cybersecurity Analyst (Threat Hunting)

Stefanini North America and APAC • Atlanta (GA)

On-site
USD 90,000 - 130,000
Splunk & Threat Alerts Cyber Security Analyst
Splunk & Threat Alerts Cyber Security Analyst

Stefanini, Inc • Atlanta (GA)

Hybrid
USD 143,270,000 - 171,924,000
Cyber Security Engineer
Cyber Security Engineer

Smartsearchonline • Allen Park (MI)

On-site
USD 90,000 - 96,000
Full Stack Engineer
Full Stack Engineer

Stefanini North America and APAC • Atlanta (GA)

On-site
USD 60,000 - 95,000
Data Scientist
Data Scientist

Stefanini North America and APAC • New York (NY)

On-site
USD 90,000 - 130,000
Threat Hunter - Plano, Tx
Threat Hunter - Plano, Tx

Motion Recruitment • Plano (TX)

On-site
USD 83,000 - 124,000
ServiceNow Developer
ServiceNow Developer

Stefanini North America and APAC • Dallas (TX)

On-site
USD 120,000 - 160,000
Threat Hunting Investigator
Threat Hunting Investigator

Piper Companies • United States

Remote
USD 140,000 - 165,000
Medical insurance
Dental insurance
Vision insurance
+2
Full Stack Engineer
Full Stack Engineer

Stefanini, Inc • Atlanta (GA)

On-site
USD 76,000 - 83,000