Designing and tuning detection systems, the full-time salaried Cyber Analyst Level 3 will focus on identifying malicious activities using Splunk, while working fully remotely. Key responsibilities Develop and maintain detection content using Splunk Search Processing Language (SPL) to identify threats across various data sources Build and tune correlation searches and risk-based alerting within Splunk Enterprise Security Collaborate with cross-functional teams to translate emerging threats into actionable detections and reduce false positives through continuous tuning Required qualifications Current "L", "Q", or "TS" security clearance Deep expertise in Splunk SPL, including advanced search commands and performance optimization Hands-on experience with Splunk Enterprise Security and correlation searches Working knowledge of the Splunk AI Toolkit for building ML-based detections Strong understanding of the MITRE ATT&CK framework and detection engineering methodology
Cyber Analyst Level 3 in workfromhome at Unknown Company
This position is listed as full time and able to be worked remotely.