Cybersecurity Engineer (Splunk SIEM

DataSync, Inc.
Richmond, VA, United States
10 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security CompTIA Security+ Cyber Security Digital Forensics Intrusion Detection and Prevention Information Systems Security Architecture Professional Log Analysis Security Information and Event Management Google Cloud Cloud Platform System
+5 more
Mitre Att&ck Cyber Threat Analysis Firewalls (Computer Science) Cybercrime Splunk

Job description

  • Monitor, detect, and respond to cybersecurity threats using Splunk Enterprise Security.
  • Develop, maintain, and optimize Splunk correlation searches, dashboards, and alerts.
  • Perform incident investigation, threat hunting, and forensic analysis.
  • Create and enhance SIEM use cases, detection rules, and response playbooks.
  • Integrate and normalize log sources across enterprise infrastructure.
  • Support compliance reporting, audit readiness, and security control validation.
  • Collaborate with infrastructure, networking, and security teams to improve detection capabilities.
  • Analyze security events across network, endpoint, and cloud environments.

Requirements

We are seeking an experienced Cybersecurity Engineer (Splunk SIEM) to strengthen enterprise security operations through proactive threat detection, SIEM engineering, incident response, and security monitoring. The ideal candidate will have deep expertise with Splunk Enterprise Security, threat hunting, log analysis, security frameworks, and cloud security technologies to protect critical enterprise infrastructure., * Splunk SIEM Engineering & Security Operations - 8+ years

  • Splunk Processing Language (SPL) - 8+ years
  • Threat Hunting & Incident Response - 8+ years
  • Log Analysis & SIEM Use Case Development - 8+ years
  • Networking, Firewalls, EDR & Cloud Security (AWS/Azure/Google Cloud Platform) - 8+ years
  • Security Frameworks (MITRE ATT&CK, NIST, HIPAA, SOC 2) - 8+ years
  • Cybersecurity Operations & Threat Investigation - 8+ years

Preferred Skills

  • Splunk Enterprise Security Administration
  • SIEM Log Integration & Normalization
  • Security Compliance & Audit Support
  • Digital Forensics
  • Security Monitoring & Detection Engineering

Preferred Certifications

  • Splunk Core Certified User
  • Splunk Core Certified Advanced Power User
  • CompTIA Security+
  • GIAC Certified Incident Handler (GCIH)
  • Certified Information Systems Security Professional (CISSP)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Videos

See all

Related articles

See all