Enable job alerts via email!

Cybersecurity Incident Response Analyst

Splunk

Colorado

On-site

USD 135,000 - 185,000

Full time

5 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join Splunk as a Cybersecurity Incident Response Analyst in a role that supports a global, shift-based Security Operations Center (SOC). You'll leverage your knowledge of information security and cybersecurity practices to protect Splunk's environments while working in a collaborative and fun team atmosphere. Ideal candidates will have excellent communication skills and the ability to thrive in a fast-paced environment.

Qualifications

  • 2+ years of relevant experience in cybersecurity or information security.
  • Familiarity with TCP/IP protocols, DNS, and network analysis.
  • Exposure to cloud platforms and technologies.

Responsibilities

  • Support 24x7 SOC operations and respond to security alerts.
  • Assist in tuning detection logic and improving data quality.
  • Participate in threat hunting engagements.

Skills

Information Security
Communication Skills
Problem Solving
Attention to Detail
Creative Thinking

Education

Bachelor's degree in computer science or related field

Tools

Firewalls
Intrusion Detection Systems
Endpoint Security Tools
Cloud Security Tools

Job description

Direct message the job poster from Splunk

Splunk, a Cisco company, is building a safer and more resilient digital world with an end-to-end full stack platform made for a hybrid, multi-cloud world. Leading enterprises use our unified security and observability platform to keep their digital systems secure and reliable. Our customers love our technology, but it's our caring employees that make Splunk stand out as an amazing career destination. No matter where in the world or what level of the organization, we approach our work with kindness. So bring your work experience, problem-solving skills and talent, of course, but also bring your joy, your passion and all the things that make you, you. Come help organizations be their best, while you reach new heights with a team that has your back.

Role

The Cybersecurity Incident Response Analyst works in Splunk's global, shift-based, 24/7 Security Operations Center (SOC) supporting the detection and response to cyber threats. You will have comprehensive applied knowledge of Information Security and Information Technology principles, excellent communication skills, and a desire to continuously learn and grow. We are a passionate team who has fun and enjoys a good laugh, but above all else, thinks security first!

Responsibilities

  • Support the 24x7 SOC operation respond to security alerts, contain threats, and ensure the safety and security of Splunk's product environments
  • Assist in tuning and updating detection logic in collaboration with Detection Engineering
  • Improve the quality of searches to enrich data through creation of automation and orchestration playbooks
  • Participate in threat hunting engagements across Splunk environments to surface sophisticated attacks and threats
  • Collect and represent evidence to support the organization's compliance and control monitoring responsibilities
  • Author, review, and update existing runbooks to ensure optimal and efficient response actions
  • Partner with Splunk's Center of Excellence to validate existing data sources and improve data ingestion standards, ensuring data quality
  • Collaborate with Splunk product teams by sharing observations and helping test security-related features
  • Work closely with teammates to share knowledge and contribute to a positive and effective team environment

Requirements

  • Bachelor's degree in computer science or related field or equivalent relevant experience (2+ years)
  • Familiarity with information security technologies, including firewalls, intrusion detection systems, and endpoint security tools; basic understanding of cloud and container security tools and practices is a plus
  • Solid grasp of TCP/IP protocols, DNS, network analysis, and the OSI framework
  • Exposure or hands-on experience with cloud platforms and technologies
  • Ability to manage multiple tasks and stay organized in a fast-paced environment
  • Approaches problems creatively and follows through on solutions
  • Excellent interpersonal skills and ability to see situations through a Customer First lens; ability to translate sophisticated technical concepts into clear, accessible language
  • Meticulous attention to detail; consistently meets high standards of quality

Splunk is an Equal Opportunity Employer

At Splunk, we believe creating a culture of belonging isn’t just the right thing to do; it’s also the smart thing. We prioritize diversity, equity, inclusion, and belonging to ensure our employees are supported to bring their best, most authentic selves to work where they can thrive. Qualified applicants receive consideration for employment without regard to race, religion, color, national origin, ancestry, sex, gender, gender identity, gender expression, sexual orientation, marital status, age, physical or mental disability or medical condition, genetic information, veteran status, or any other consideration made unlawful by federal, state, or local laws. We consider qualified applicants with criminal histories, consistent with legal requirements.

Seniority level
  • Seniority level
    Not Applicable
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Software Development, IT Services and IT Consulting, and Technology, Information and Internet

Referrals increase your chances of interviewing at Splunk by 2x

Get notified about new Cyber Security Analyst jobs in Colorado, United States.

Sr Cybersecurity Specialist, third-party/vendor risk management
Security Architect - Infrastructure Hardening & Ransomware
Senior Cybersecurity Systems Engineer - Remote
Sr Cybersecurity Compliance Specialist, GRC
Presales Engineer - Cloud Security Start Up Vendor
SMB Account Executive, Cyber Security & Data Privacy - Denver, CO
Lecturer - Information Systems & Cybersecurity Management (pool)
Senior Product Security Engineer, Security Platform

Denver, CO $135,000.00-$185,000.00 19 hours ago

Security Architect - Infrastructure Hardening & Ransomware
Senior Adversary Emulation Operator (Red Team)
Staff Security Operations Engineer (Observability & Automation)
Staff Security Operations Engineer (Observability & Automation)
Trust & Security Program Operations Analyst

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Cyber Security Analyst (Incident Response)

DeepSeas

San Diego null

Remote

Remote

USD 100,000 - 140,000

Full time

Yesterday
Be an early applicant

Cybersecurity Incident Response Analyst

Splunk

Hyde Park Township null

Remote

Remote

USD 106,000 - 147,000

Full time

30+ days ago

Cybersecurity Incident Response Analyst L3

Dell

Round Rock null

On-site

On-site

USD 164,000 - 213,000

Full time

30 days ago

Senior Cyber Security Incident Response Analyst

FIS

null null

Remote

Remote

USD 104,000 - 176,000

Full time

16 days ago

Senior Incident Response Analyst

Mondelez España Galletas Production SLU

Remote null

Remote

Remote

USD 117,000 - 162,000

Full time

6 days ago
Be an early applicant

SOC Level 3 Analyst & Incident Response Lead

BETSOL

Denver null

Hybrid

Hybrid

USD 135,000 - 185,000

Full time

6 days ago
Be an early applicant

Senior Incident Response Analyst 2

Sophos

null null

Remote

Remote

USD 131,000 - 219,000

Full time

29 days ago

Lead Cloud Incident Responder, SVP

Citigroup Inc.

Irving null

On-site

On-site

USD 156,000 - 235,000

Full time

Today
Be an early applicant

Senior Incident Response Analyst

Centene

null null

Remote

Remote

USD 85,000 - 159,000

Full time

30+ days ago