À propos de ce poste Cybersecurity Engineer 3 chez TOMORROW HIRE
Job Title: Cybersecurity Engineer 3
Work Type: Onsite
Location: Richmond, VA 23219
Salary/Rate: Up to $104.77/hr
Start Date: 09/28/2026
End Date: 06/30/2027
Industry Category: Information Technology / Cybersecurity
Employment Type: Contract
Requisition ID: 811203
Overview:
The Virginia Department of Transportation (VDOT) is seeking a highly analytical and technically proficient Cybersecurity Engineer 3 to support cybersecurity operations and Splunk SIEM capabilities.
The position will develop and implement advanced cyber defense solutions, protect agency infrastructure, monitor and analyze security events, investigate threats, and support secure system deployment.
Application:
Candidates should have extensive hands-on experience with cybersecurity operations, Splunk SIEM, SPL, threat detection, log analysis, incident investigation, and threat hunting.
Strong knowledge of networking, firewalls, EDR, cloud platforms, security frameworks, and compliance standards is also required.
Job Description:
The Cybersecurity Engineer will leverage Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The role will focus on improving detection capabilities, investigating potential security incidents, developing security use cases, maintaining SIEM data sources, and supporting cybersecurity compliance requirements.
Responsibilities:
- Monitor network traffic, endpoint logs, and cloud security events for anomalous activity and potential security incidents.
- Use Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.
- Create, maintain, and tune Splunk correlation searches, alerts, and dashboards.
- Develop and optimize SPL queries for security monitoring, threat detection, and investigation.
- Investigate potential security incidents and analyze forensic evidence.
- Conduct threat hunting to identify malicious activity and indicators of compromise.
- Collaborate with IT, network, infrastructure, and security teams to contain and remediate threats.
- Develop and refine security detection and response use cases.
- Create detection and response playbooks using threat intelligence and security frameworks such as MITRE ATT&CK.
- Work with infrastructure teams to onboard new log and security data sources.
- Ensure log integrity, parsing, and normalization across the SIEM platform.
- Support SIEM data integrations and troubleshooting.
- Collect SIEM control evidence for security audits.
- Generate compliance and security reports aligned with organizational policies and standards.
- Manage multiple security tickets and investigations while maintaining effective communication with stakeholders.
Requirements
Minimum Qualifications:
- 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk environment.
- 8+ years of experience writing SPL (Splunk Processing Language).
- 8+ years of experience demonstrating critical thinking, problem-solving, and communication skills.
- Ability to operate calmly under pressure and manage multiple security tickets.
- 8+ years of experience with networking and firewalls.
- 8+ years of experience with EDR technologies.
- 8+ years of experience with cloud platforms, including AWS, Azure, and/or GCP.
- 8+ years of experience with security frameworks such as MITRE ATT&CK.
- 8+ years of experience with security compliance standards such as NIST, HIPAA, and/or SOC 2.
- Strong experience with log analysis, threat hunting, security monitoring, and incident investigation.
- Strong understanding of SIEM technologies and security event management.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
Preferred Qualifications:
- Splunk Core Certified User certification.
- Splunk Core Certified Advanced Power User certification.
- Additional Splunk or cybersecurity certifications.
- Experience developing Splunk Enterprise Security dashboards, correlation searches, and alerts.
- Experience developing security detection and response playbooks.
- Experience applying threat intelligence and MITRE ATT&CK-based detection strategies.
Benefits
Compensation:
Pay Rate: $104.77/hr
Schedule:
Onsite
Work Location:
Richmond, VA 23219