Cyber Analyst current L, Q or TS mandatory
United Global Technologies
Job Description
Job Description
Must have current, not active, DOE L, Q or TS and above to be qualified
Salary and if needed, per diem to be onsite in Idaho Falls Idaho. NO REMOTE WORK
1. Qualifying individual must be willing to relocate to Idaho Falls, Idaho.
2. Qualifying individual must have a current “L” or “Q” clearance OR Top Secret
3. Qualifying individual “MUST” have the following skillsets:
- Deep expertise in Splunk SPL, including advanced search commands, statistical functions, data models, and performance optimization
- Hands-on experience with Splunk Enterprise Security, including correlation searches, risk-based alerting (RBA), notable events, and the ES framework
- Working knowledge of the Splunk AI Toolkit (AITK) for building and applying ML-based detections
- Experience with the Splunk App for Data Science and Deep Learning (DSDL), including custom model development and deployment
- Strong understanding of the MITRE ATT&CK framework and detection engineering methodology
- Familiarity with common attack techniques, log sources, and security data (EDR, network, cloud, identity, etc.)
4. Qualifying individual “NICE” to have the following skillsets:
- Experience with detection-as-code practices and tools (Git, CI/CD pipelines)
- Proficiency in Python for data processing and model development
- Knowledge of SOAR platforms and detection automation
- Relevant certifications (Splunk Certified Power User/Admin, Splunk Enterprise Security Certified Admin, GIAC, etc.)
- Prior experience in a SOC, threat hunting, or incident response role
In this role, the selected candidate will design, build, and tune detections that identify malicious activity across our environment, working at the intersection of security analysis, data engineering, and machine learning. We're looking for a candidate that lives and breathes Splunk and gets excited about turning raw telemetry into high-fidelity alerts, we want to hear from you.
What the candidate is expected to perform:
- Design, develop, and maintain detection content using Splunk Search Processing Language (SPL) to identify threats across diverse data sources
- Build and tune correlation searches, notable events, and risk-based alerting within Splunk Enterprise Security (ES)
- Leverage the Splunk App for Data Science and Deep Learning (DSDL) to develop machine learning models for anomaly detection and advanced threat identification
- Apply the Splunk App for Anomaly Detection and the Splunk AI Toolkit (AITK) to develop statistical and ML-driven detections that go beyond signature-based approaches
- Map detection coverage to the MITRE ATT&CK framework and identify gaps in visibility
- Collaborate with threat intelligence, incident response, and SOC teams to translate emerging threats into actionable detections
- Reduce false positives and alert fatigue through continuous tuning and detection lifecycle management
- Develop and maintain detection-as-code workflows, including version control, testing, and CI/CD for detection content
- Create documentation, runbooks, and detection specifications to support downstream analysts
- ...documentation, runbooks, and detection specifications to support downstream analysts.Requirements · Be willing to relocate to Idaho Falls, Idaho. (Relocation assistance may be available) · Have a current "L" or "Q" clearance.· Have the following required skillsets:o Deep...SuggestedRelocationRelocation package
- ...cybersecurity awareness training and requirements are current for NSS users based on identified needs... ...stakeholders. Promote awareness of cyber policy and strategy as appropriate among... ...be a US Citizen and hold an active DOE "Q" clearance (or DOD/DOJ equivalent)...SuggestedWork experience placementWork at officeRelocationVisa sponsorshipRelocation packageFlexible hours
- ...involving long-range plans and enterprise programs Studies current and proposed policies and assesses impact on processes, procedures... .... Qualification Summary To qualify for a Supply Systems Analyst, your resume and supporting documentation must support: A....SuggestedFull timeRemote work
- ...involving long-range plans and enterprise programs. Studies current and proposed policies and assesses impact on processes, procedures... .... Qualification Summary To qualify for a Supply Systems Analyst, your resume and supporting documentation must support: A....SuggestedFull timeRemote work
- ...Client Solution Architects (CSA) is currently seeking a Network Engineer to support our program at Gowen Field, Idaho.For nearly 50 years, CSA has delivered integrated technology and operational support services to meet the defense and federal sector's most complex enterprise...SuggestedContract workTemporary workFor contractorsWork at office
- ...PIH Health is seeking an Epic Health Information Management Application Analyst I, II or III to support HIM apps, guide workflow design, build and test, and analyze Epic-related issues. The role requires strong analytical skills and ongoing collaboration with Epic counterparts...Remote work
$67.7k - $90.27k
...and as part of a team. Compensation This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant factors...Full timeTemporary workRemote workWork from home$84.63k - $112.84k
...surfacing risks constructively Compensation This information reflects the anticipated base salary range for this position based on current national data. Minimums and maximums may vary based on location. Individual pay is based on skills, experience and other relevant...Full timeContract workTemporary workRemote work- ...advisor in the digital space. ~ Regularly engage with client Program Leads to discuss workflows and potential optimizations. ~ Stay current on market trends and look for ways to improve processes. ~7 or more year of experience in a Digital Delivery role ~ Technical,...Work at office
$94.8k - $148.2k
A leading defense contractor is seeking a Cybersecurity Analyst to support a complex software system for emergency response. This role involves collaboration with teams, managing compliance with cybersecurity standards, and ensuring secure data sharing. The ideal candidate...Remote jobFor contractors$94.8k - $148.2k
...carrier Fleets. Looking for a lifetime career? Apply today! Job Description We are seeking an accomplished and innovative Cybersecurity Analyst to support the design, implementation, and compliance oversight of a highly complex, first-of-its-kind software system for Naval...For contractorsLocal areaFlexible hours- Description Client has selected Splunk SaaS as the enterprise logging and observability platform. The existing logging data from various platforms is in the process of migrating into Splunk SaaS. Elastic stack is a large platform that is processing critical logs including...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Analyst current L, Q or TS mandatory. Be the first to apply!



