Cybersecurity Engineer 3
Listed on 2026-08-03
-
IT/Tech
Cybersecurity, Security Management & Operations, Network Security, Information Security & Data Protection
- The Cybersecurity Engineer develops and implements advanced cyber defense solutions for the agency, safeguards the infrastructure, and assures that the system is built to specification and is deployed successfully.
- We are seeking a highly analytical and technically proficient Cybersecurity Engineer supporting Splunk SIEM.
- You will play a critical role in defending our organization against cyber threats by leveraging Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.
- The ideal candidate has strong expertise in log analysis, threat hunting, and writing Splunk queries to identify and contain malicious activity.
Key Responsibilities- - Threat Detection & Monitoring:
Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents. - - Splunk Management:
Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities. - - Incident Response:
Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats. - - Use Case Development:
Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK. - - Log Integration:
Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform. - - Compliance & Reporting:
Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards
Fill the skill matrix below:
Skill
Amount
Candidate's No. of years of experience
Minimum of 8+ years of hands-on experience in cybersecurity, specifically operating, building, and investigating threats within a SIEM or Splunk.
Required
8
Excellent critical thinking, problem-solving, and communication skills. Ability to operate calmly under pressure and manage multiple security tickets
Required
8
Proficiency in writing SPL (Splunk Processing Language)
Required
8
Strong understanding of networking, firewalls, EDR, and cloud platforms (AWS, Azure, or GCP).
Required
8
Knowledge of security frameworks (e.g., MITRE ATT&CK) and security compliance standards (e.g., NIST, HIPAA, or SOC
2).
Required
8
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
Required
Relevant certifications such as Splunk Core Certified User, Splunk Core Certified Advanced Power User, are highly preferred.
Highly desired
8
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).