Job Description
Company: Fisec Global
Location: US
Job Title: Splunk Analyst – IAM & Authentication Monitoring
Job Description
We are seeking a Splunk Analyst with strong experience in ingesting, analyzing, and visualizing authentication and identity data from SiteMinder and Okta. This role will focus on building high-quality dashboards, alerts, and SPL queries to monitor authentication activity, security trends, and access anomalies across enterprise IAM platforms.
The ideal candidate will have hands-on expertise with Splunk dashboard development, a solid understanding of IAM, SSO, and MFA workflows, and experience working with identity and access management logs in a security monitoring context.
Key Responsibilities
• Ingest, parse, and normalize SiteMinder and Okta logs into Splunk
• Develop and optimize SPL queries for authentication and access analytics
• Design and build Splunk dashboards and visualizations covering: • Authentication activity and trends
• MFA usage patterns
• Failed logins and account lockouts
• Access anomalies and suspicious behavior
• Admin actions and privileged access
• SSO performance and health monitoring
• Create alerts and reports for security and operational use cases
• Perform field extractions, lookups, and data enrichment as needed
• Collaborate with IAM, Security, and SOC teams to support monitoring and incident response
• Support ongoing tuning, optimization, and enhancement of Splunk content
Required Skills & Qualifications
• Strong hands-on ex
Source: BeBee