VDOT Cybersecurity Engineer 3 – Splunk SIEM
Location: Richmond, VA | Interview: In Person Only
Seeking an experienced Cybersecurity Engineer with 8+ years of hands-on SIEM/Splunk experience to monitor, detect, investigate, and respond to cyber threats.
Key Responsibilities:
Manage and optimize Splunk Enterprise Security, correlation searches, alerts, dashboards, and SPL queries.
Perform threat hunting, log analysis, incident investigation, and response.
Develop security use cases and playbooks aligned with MITRE ATT&CK.
Integrate and normalize logs from endpoints, networks, firewalls, and cloud platforms.
Support security monitoring, compliance reporting, and audit readiness.
Collaborate with infrastructure, network, and security teams to remediate threats.
Required Skills:
8+ years of cybersecurity/SIEM experience, preferably with Splunk.
Strong SPL (Splunk Processing Language) skills.
Experience with networking, firewalls, EDR, AWS/Azure/Google Cloud Platform.
Knowledge of MITRE ATT&CK, NIST, HIPAA, or SOC 2.
Strong analytical, troubleshooting, communication, and incident-response skills.
Bachelor’s degree in Cybersecurity, Computer Science, IT, or related field.