Stefanini Group
Stefanini Group·2 days ago

Cyber security analyst - splunk & threat alerts

Apply now

Location

hybrid, Atlanta, GA, United States

Commitment

Full Time

Level

Senior (5+ years)

Required skills

DatastoresLog AnalyticsLogging & MonitoringAnalyticsBig Data ToolsDevOpsInfrastructureMonitoringLog ManagementObservabilityOS

Job Description

Job Description

Stefanini Group is hiring! Exciting opportunity awaits, let us help you get started! Click Apply now or you may call: (248) 582-6563/ email: Manisha Singh ( [email protected] ) for faster processing!

Position Summary

We are seeking a Cyber Security Analyst with strong Splunk Enterprise / Splunk Enterprise Security experience to monitor, investigate, and respond to cyber threats within a banking and financial services environment. The role will focus on threat-alert triage, incident investigation, threat hunting, and security monitoring across critical financial systems.

Key Responsibilities

  • Monitor and triage Splunk notable events, correlation searches, dashboards, and risk-based alerts.
  • Investigate suspicious authentication, privileged-account activity, malware, phishing, ransomware, data exfiltration, and unauthorized transactions or system access.
  • Write and optimize SPL queries for alert investigation, event correlation, and threat hunting.
  • Analyze logs from SIEM, EDR, firewalls, VPN, identity platforms, cloud services, applications, and banking systems.
  • Validate true and false positives, prioritize alerts by risk, and escalate confirmed incidents according to SOC procedures.
  • Develop and tune Splunk correlation searches, dashboards, reports, and detection rules to reduce false positives and improve coverage.
  • Support incident response, root-cause analysis, evidence preservation, and post-incident reporting.
  • Map threats and detections to MITRE ATT&CK and relevant financial-sector security controls.

Required Qualifications

  • 5+ years of experience in cybersecurity operations, SOC monitoring, or incident response.
  • Strong hands-on experience with Splunk and SPL query development.
  • Experience in banking, financial services, payments, fintech, or regulated environments.
  • Knowledge of financial-sector risks, including fraud, account takeover, payment-system threats, insider risk, and protection of sensitive customer data.
  • Strong hands-on experience with Splunk Enterprise Security.
  • Strong experience developing and troubleshooting SPL searches.
  • Familiarity with Windows/Linux, network security, identity and access management, EDR, cloud security, and incident-response processes.
  • Strong analytical, documentation, communication, and alert-prioritization skills.

*Listed salary ranges may vary based on experience, qualifications, and local market. Also, some positions may include bonuses or other incentives*

About Stefanini Group

The Stefanini Group is a global provider of offshore, onshore and near shore outsourcing, IT digital consulting, systems integration, application and strategic staffing services to Fortune 1000 enterprises around the world. Our presence is in countries like Americas, Europe, Africa and Asia, and more than 400 clients across a broad spectrum of markets, including financial services, manufacturing, telecommunications, chemical services, technology, public sector, and utilities. Stefanini is a CMM level 5, IT consulting, company with global presence. We are CMM Level 5 company.

#LI-MS3 #LI-HYBRID

Ready to join the team?

Apply now