> Markdown version of [/jobs/ext/2153501-cybersecurity-engineer-siem-splunk](https://www.wearedevelopers.com/jobs/ext/2153501-cybersecurity-engineer-siem-splunk). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - SIEM / Splunk - **Company:** Electro Soft Inc - **Location:** Richmond, OH, United States - **Experience:** Expert - **Salary:** $150,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Linux, Intrusion Detection and Prevention, Intrusion Detection Systems, Information Systems Security Architecture Professional, Performance Tuning, Security Information and Event Management, Information Technology, Splunk - **Published:** August 20, 2026 - **Apply:** https://dejobs.org/x/x/69D138B0621242AAAB07BAD9AD5EA83F/job/ ## About the Role * Seven (7) years of relevant IT experience * DOD Secret Clearance * Must be eligible for IT I * Relevant certification meeting DOD 8570/8140 IAT level III * Relevant certification meeting DOD 8570/8140 CND-IS * Computing Environment: Linux+, Splunk Administrator * Experience creating custom dashboards and reports in Splunk using threat data * Experience in the integration and sustainment of Splunk Core and Splunk Enterprise Security (ES). ## Description Electrosoft is seeking a Cybersecurity Engineer specializing in Security Information and Event Management (SIEM) and Enterprise Log Management (ELM) to support a large-scale DoD cybersecurity environment. The engineer will provide architecture, engineering, administration, content development, troubleshooting, integration, and sustainment support for Splunk Core and Splunk Enterprise Security (ES)., * Research, plan, install, configure, troubleshoot, maintain, and back up components of the enterprise Splunk ELM/SIEM environment. * Enhance ELM and SIEM architecture by incorporating new data feeds, products, and security capabilities. * Integrate security event and data feeds into the Splunk environment. * Develop and implement SIEM use cases to improve cybersecurity situational awareness. * Develop customized dashboards, reports, data monitors, active channels, trends, correlation rules, and other SIEM content. * Analyze threat information from logs, IDS, intelligence reporting, vendor sources, and other cybersecurity sources. * Identify and elevate high-threat events to incident responders. * Perform event analysis and tuning to improve detection capabilities and reduce false positives. * Support the development and optimization of security rules and correlation capabilities. * Perform upgrades, maintenance, troubleshooting, and performance tuning of SIEM infrastructure. * Conduct network and capacity analysis to ensure the environment can support anticipated event volumes. * Analyze endpoint availability and data-collection capabilities. * Define and maintain appropriate user roles and access. * Evaluate data-storage requirements and their impact on SIEM architecture. * Support Security Test and Evaluation and Information Assurance assessments. * Review DoD policies and assess their impact on SIEM and cybersecurity architecture. * Develop and maintain technical standards, security architecture documentation, SOPs, and implementation documentation. * Conduct research and market analysis of emerging cybersecurity and SIEM technologies. * Provide technical training, briefings, and knowledge transfer to Government and contractor personnel. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)