Cybersecurity Engineer

Hybrid in Richmond, VA, US • Posted 5 hours ago • Updated 1 hour ago
Full Time
No Travel Required
Able to Sponsor
Hybrid
Depends on Experience
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Splunk
  • Threat Analysis
  • Regulatory Compliance
  • SPL
  • SIEM
  • Cloud Security
  • Cyber Security
  • Use Cases
  • Elasticsearch

Summary

Job Summary

The Cybersecurity Engineer will play a critical role in protecting enterprise infrastructure by leveraging Splunk Enterprise Security (ES) to monitor, detect, investigate, analyze, and respond to security threats.

The ideal candidate will have strong hands-on experience with Splunk, SIEM, SPL, log analysis, threat hunting, incident response, detection engineering, and security use-case development.

Key Responsibilities

Threat Detection & Monitoring

  • Continuously monitor network traffic, endpoint logs, and cloud security events.
  • Identify anomalous behavior and potential security incidents.
  • Perform proactive threat hunting across enterprise security data.
  • Analyze security events and identify indicators of compromise.

Splunk SIEM Management

  • Administer, configure, maintain, and tune Splunk Enterprise Security.
  • Develop and maintain Splunk correlation searches.
  • Create and tune security alerts and dashboards.
  • Write advanced SPL (Splunk Processing Language) queries.
  • Reduce false positives and improve detection capabilities.
  • Develop and maintain Splunk-based security monitoring and detection use cases.

Incident Response

  • Investigate potential cybersecurity incidents.
  • Perform security event and log analysis.
  • Trace and analyze forensic evidence.
  • Assist with containment, remediation, and recovery activities.
  • Collaborate with IT, infrastructure, endpoint, and network teams during incident response.

Detection & Use Case Development

  • Develop and refine security detection use cases.
  • Create incident response and detection playbooks.
  • Map security detections to MITRE ATT&CK techniques.
  • Leverage threat intelligence to improve detection and response capabilities.

Log Integration

  • Work with infrastructure teams to onboard new security and application data sources into Splunk.
  • Ensure proper log collection, parsing, normalization, and integrity.
  • Troubleshoot data ingestion and logging issues.
  • Maintain consistent security data across the SIEM platform.

Compliance & Reporting

  • Support cybersecurity audits and compliance activities.
  • Collect SIEM control evidence.
  • Generate security and compliance reports.
  • Ensure security monitoring aligns with organizational policies and standards.

Required Skills

  • 8+ years of hands-on cybersecurity experience.
  • 8+ years of experience operating, building, and investigating threats within SIEM/Splunk environments.
  • 8+ years of experience writing SPL (Splunk Processing Language).
  • Strong experience with Splunk Enterprise Security (ES).
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10118415
  • Position Id: 9091109
  • Posted 5 hours ago
Contact the job poster
MN

Mohammed Nazer

Recruiter @ NovaLink Solutions
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Richmond, Virginia

Today

Easy Apply

Contract, Third Party

Depends on Experience

Richmond, Virginia

Today

Easy Apply

Third Party, Contract

Depends on Experience

Richmond, Virginia

Today

Easy Apply

Contract, Third Party

Richmond, Virginia

Today

Easy Apply

Contract, Third Party

Depends on Experience

Search all similar jobs