Job Listing Information

Cybersecurity Engineer
  • 22-Sep-2026 to 06-Oct-2026 (UTC)
  • Richmond, VA, USA
  • Full Time
  • Long Term Contract Length
  • 40 Weekly Hours

Complete Description:

- The Cybersecurity Engineer develops and implements advanced cyber defense solutions for the agency, safeguards the infrastructure, and assures that the system is built to specification and is deployed successfully.

- We are seeking a highly analytical and technically proficient Cybersecurity Engineer supporting Splunk SIEM.

- You will play a critical role in defending our organization against cyber threats by leveraging Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.

- The ideal candidate has strong expertise in log analysis, threat hunting, and writing Splunk queries to identify and contain malicious activity.

 

Key Responsibilities

- Threat Detection & Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.

- Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.

- Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.

- Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.

- Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.

- Compliance & Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards.

 

Fill the skill matrix below:

Skill

Required/Desired

Amount

Candidate's No. of years of experience

Minimum of 8+ years of hands-on experience in cybersecurity, specifically operating, building, and investigating threats within a SIEM or Splunk.

Required

8

 

Excellent critical thinking, problem-solving, and communication skills. Ability to operate calmly under pressure and manage multiple security tickets

Required

8

 

Proficiency in writing SPL (Splunk Processing Language)

Required

8

 

Strong understanding of networking, firewalls, EDR, and cloud platforms (AWS, Azure, or GCP).

Required

8

 

Knowledge of security frameworks (e.g., MITRE ATT&CK) and security compliance standards (e.g., NIST, HIPAA, or SOC 2).

Required

8

 

Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.

Required

 

 

Relevant certifications such as Splunk Core Certified User, Splunk Core Certified Advanced Power User, are highly preferred.

Highly desired

8