Cybersecurity Engineer ( Splunk SIEM ) - Immediate Placement
This is a very urgent requirement with immediate placement, please apply for immediate consideration.
Job Title:: Cybersecurity Engineer ( Splunk SIEM )
Location:: Richmond, Virginia
Interview:: Both Web Cam and In Person Interview
Duration:: Long Term
Key Responsibilities::
Threat Detection & Monitoring:
Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.
Splunk Management:
Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.
Incident Response:
Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.
Use Case Development:
Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.
Log Integration:
Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
Compliance & Reporting:
Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards.
Thanks.