Cyber Security Analyst III (Splunk SIEM Engineering & Development) jobs in United States
cer-icon
Apply on Employer Site
company-logo

OSC Technical Solutions · 1 month ago

Cyber Security Analyst III (Splunk SIEM Engineering & Development)

OSC Technical Solutions is seeking a Cyber Security Analyst III to enhance their Splunk dashboards and data integrations. The role focuses on improving enterprise threat detection and response while collaborating with engineering and cybersecurity operations teams.

Information Technology & Services
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Build and maintain Splunk dashboards, reports, and correlation searches to improve visibility into security events
Help onboard, parse, and normalize log data from various sources (firewalls, endpoints, servers, cloud environments)
Participate in regular Splunk health checks, monitor ingestion pipelines, and assist in troubleshooting performance or parsing issues
Contribute to the development of basic automation scripts and workflows under the direction of senior engineers
Work closely with security operations and IT teams to understand their needs and turn them into actionable Splunk solutions
Maintain accurate configuration records, standard operating procedures, and change logs
Ensure SIEM operations and configurations remain consistent with NIST SP 800-53, FISMA, and internal cybersecurity requirements
Stay current on Splunk capabilities, industry trends, and best practices to help advance team maturity

Qualification

Splunk Search Processing LanguageSIEM conceptsNIST SP 800-53Splunk certificationsPython scriptingAPI integrationsCloud loggingAnalytical skillsMicrosoft Office proficiencyInterpersonal skillsOrganizational skillsCommunication skills

Required

Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field and at least five (5) years of progressive experience in information technology or cybersecurity, including two plus (2+) years of direct, hands-on experience with Splunk Enterprise or Splunk ES, or an equivalent combination of education, experience and training
Ability to pass a background and drug screening
Must have identification compliant with the Real ID Act at time of hire
Must be able to obtain Department of Energy access badge
Must be able to obtain and maintain a U.S. government security clearance
Working knowledge of Splunk Search Processing Language (SPL) for dashboards, reports and alerts
Understanding of SIEM concepts, including event correlation, log management and alerting
Familiarity with federal cybersecurity frameworks such as NIST SP 800-53 and FISMA
Familiarity with the MITRE ATT&CK framework
Good interpersonal skills: ability to work effectively and cooperatively with all levels of management and staff, affiliated-company employees as well as outside business associates; exhibits a professional manner in dealing with others
Superior organizational, follow-up and detail-oriented skills
Strong ability to analyze documents and categorize appropriately
Ability to maintain accurate records
Work independently, as well as on a team and with minimal supervision
Make decisions, solve problems and exercise excellent judgment
Work well under pressure and independently prioritize workload, while working on multiple projects
Ability to research, organize and analyze technical information with particular attention to accuracy and detail
Excellent written and verbal communication skills; including thorough knowledge of proper grammar, advanced vocabulary, spelling, editing and proofreading skills
Proficient using Microsoft Office products, such as Word, Excel and PowerPoint, and industry-standard computer software and databases
High degree of sensitivity regarding confidential information
Sufficient fine motor skills for the use of computers, calculators with an ability to withstand repetitive keyboarding for extended periods of time
Visual and communications ability adequate to perform the essential functions of the job
Ability to kneel, bend and twist at the waist on an occasional basis
Ability to reach below shoulder height with regular frequency (desk position) and at or above shoulder height on occasion
Ability to push, pull, carry and lift objects weighing up to 10 pounds on a regular basis, and greater weights on an occasional basis
Ability to travel by vehicle or aircraft, and ability to safely operate a motor vehicle

Preferred

Splunk Certifications such as Core Certified Power User, Enterprise Certified Admin, or ES Certified Admin
Experience with Python scripting, API integrations, or SOAR platforms (Cortex XSOAR, Phantom, etc.)
Exposure to cloud logging from AWS or Azure
Experience supporting cybersecurity operations in a federal or highly regulated environment

Benefits

Paid holidays
Paid time off
401k with employer match
Dental
Vision
Health insurance plans through the Federal Employee Health Benefits (FEHB) program
Life and disability benefits

Company

OSC Technical Solutions

twitter
company-logo
At OSC Technical Solutions, we deliver secure, resilient, and mission-driven solutions across four core service areas: Software Engineering & PM We modernize legacy systems and develop custom software that enhances performance, streamlines operations, and supports enterprise-wide transformation.

Funding

Current Stage
Growth Stage
Company data provided by crunchbase