← Back to jobs

Stefanini IT Solutions Logo
Cyber Security Analyst - Splunk & Threat Alerts

Stefanini IT Solutions

 

Atlanta, GA, USA

Posted On: 5 days ago
Experience: 5+ years
Availability: Hybrid
Openings: 1
Category: Cyber Security Analyst
Tenure: No Preference/Any
Related Jobs

No related jobs found

Description

Position Summary

We are seeking a Cyber Security Analyst with strong Splunk Enterprise / Splunk Enterprise Security experience to monitor, investigate, and respond to cyber threats within a banking and financial services environment. The role will focus on threat-alert triage, incident investigation, threat hunting, and security monitoring across critical financial systems.

 

Key Responsibilities

  • Monitor and triage Splunk notable events, correlation searches, dashboards, and risk-based alerts.
  • Investigate suspicious authentication, privileged-account activity, malware, phishing, ransomware, data exfiltration, and unauthorized transactions or system access.
  • Write and optimize SPL queries for alert investigation, event correlation, and threat hunting.
  • Analyze logs from SIEM, EDR, firewalls, VPN, identity platforms, cloud services, applications, and banking systems.
  • Validate true and false positives, prioritize alerts by risk, and escalate confirmed incidents according to SOC procedures.
  • Develop and tune Splunk correlation searches, dashboards, reports, and detection rules to reduce false positives and improve coverage.
  • Support incident response, root-cause analysis, evidence preservation, and post-incident reporting.
  • Map threats and detections to MITRE ATT&CK and relevant financial-sector security controls.

 

Job Requirements

Details:

 

Required Qualifications

  • 5+ years of experience in cybersecurity operations, SOC monitoring, or incident response.
  • Strong hands-on experience with Splunk and SPL query development.
  • Experience in banking, financial services, payments, fintech, or regulated environments.
  • Knowledge of financial-sector risks, including fraud, account takeover, payment-system threats, insider risk, and protection of sensitive customer data.
  • Strong hands-on experience with Splunk Enterprise Security.
  • Strong experience developing and troubleshooting SPL searches.
     
  • Familiarity with Windows/Linux, network security, identity and access management, EDR, cloud security, and incident-response processes.
  • Strong analytical, documentation, communication, and alert-prioritization skills

Education

Any Graduate

Related Jobs

No related jobs found

← Back to jobs