1

Splunk Siem Engineer Jobs in Virginia (NOW HIRING)

Cybersecurity Engineer 3

Richmond, VA ยท On-site

$62 - $82/hr

Cybersecurity Engineer 3 Work Type : Onsite Location : Richmond, VA 23219 Start Date : 08/31/2026 ... This role is responsible for safeguarding enterprise infrastructure, supporting Splunk SIEM ...

Cybersecurity Engineer 3 Work Type : Onsite Location : Richmond, VA 23219 Start Date : 08/31/2026 ... This role is responsible for safeguarding enterprise infrastructure, supporting Splunk SIEM ...

We are seeking a highly analytical and technically proficient Cybersecurity Engineer supporting Splunk SIEM. You will play a critical role in defending our organization against cyber threats by ...

Cybersecurity Engineer 3

Richmond, VA ยท On-site

$62 - $82/hr

Cybersecurity Engineer 3 Work Type : Onsite Location : Richmond, VA 23219 Start Date : 08/31/2026 ... This role is responsible for safeguarding enterprise infrastructure, supporting Splunk SIEM ...

We are seeking a highly analytical and technically proficient Cybersecurity Engineer supporting Splunk SIEM. You will play a critical role in defending our organization against cyber threats by ...

Showing results 21-40

Splunk Siem Engineer information

See Virginia salary details

$53K

$122.6K

$176K

How much do splunk siem engineer jobs pay per year?

As of Aug 11, 2026, the average yearly pay for splunk siem engineer in Virginia is $122,572.00, according to ZipRecruiter salary data. Most workers in this role earn between $101,629.00 and $141,503.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Splunk SIEM Engineer?

To thrive as a Splunk SIEM Engineer, you need strong expertise in security information and event management (SIEM), log analysis, scripting, and a background in cybersecurity, often supported by a computer science degree or related certifications. Familiarity with Splunk Enterprise Security, Splunk Query Language (SPL), and certifications like Splunk Certified Power User or Splunk Certified Admin are commonly required. Analytical thinking, problem-solving skills, and effective communication help engineers interpret security data and collaborate with IT teams. These skills are crucial for proactively detecting threats, optimizing security operations, and ensuring the resilience of organizational IT environments.

What are some common challenges faced by Splunk SIEM Engineers when integrating new data sources?

Splunk SIEM Engineers often encounter challenges such as inconsistent log formats, lack of documentation from data source owners, and ensuring data normalization for effective correlation and analysis. Additionally, dealing with high data volume while maintaining system performance and security compliance can be demanding. Close collaboration with IT, security teams, and application owners is critical to troubleshoot issues and fine-tune data onboarding processes.

What is the difference between Splunk Siem Engineer vs Security Analyst?

AspectSplunk Siem EngineerSecurity Analyst
CertificationsSplunk Certified Power User, Splunk Certified AdminCompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on configuring, maintaining, and optimizing Splunk SIEM toolsMonitor security alerts, investigate incidents, and implement security measures
Industry UsagePrimarily in cybersecurity, IT operations, and complianceAcross cybersecurity teams, incident response, and risk management

The Splunk Siem Engineer specializes in deploying and managing Splunk SIEM solutions, ensuring data ingestion and system performance. In contrast, the Security Analyst focuses on analyzing security data, investigating threats, and responding to incidents. While both roles require security knowledge and certifications, the engineer emphasizes system setup and maintenance, whereas the analyst emphasizes threat detection and response.

What does a Splunk SIEM Engineer do?

A Splunk SIEM Engineer is responsible for designing, implementing, and managing Splunk Security Information and Event Management (SIEM) solutions within an organization. They monitor security events, create dashboards, and develop alerts to detect and respond to potential threats. Their work involves integrating various data sources into Splunk, maintaining system performance, and ensuring compliance with security policies. Splunk SIEM Engineers also play a key role in incident response and help organizations improve their overall security posture.
What job categories do people searching Splunk Siem Engineer jobs in Virginia look for? The top searched job categories for Splunk Siem Engineer jobs in Virginia are:
What cities in Virginia are hiring for Splunk Siem Engineer jobs? Cities in Virginia with the most Splunk Siem Engineer job openings:
Infographic showing various Splunk Siem Engineer job openings in Virginia as of August 2026, with employment types broken down into 91% Full Time, 4% Part Time, and 5% Contract. Highlights an 86% Physical, 5% Hybrid, and 9% Remote job distribution, with an average salary of $122,572 per year, or $58.9 per hour.

Cybersecurity Engineer 3

TOMORROW HIRE

Richmond, VA โ€ข On-site

$62 - $82/hr

Contractor

Posted 10 days ago


Job description

Job Title: Cybersecurity Engineer 3
Work Type: Onsite
Location: Richmond, VA 23219
Start Date: 08/31/2026
End Date: 06/30/2027
Industry Category: Information Technology / Government
Employment Type: 1099 Contract
Requisition ID: 807541
Overview
We are seeking an experienced Cybersecurity Engineer to strengthen the agency's cybersecurity operations by developing and implementing advanced cyber defense solutions. This role is responsible for safeguarding enterprise infrastructure, supporting Splunk SIEM operations, detecting and responding to cyber threats, and ensuring security solutions are implemented according to agency standards. The ideal candidate is a highly analytical security professional with deep experience in SIEM operations, threat detection, incident response, and security monitoring.
Application
Applications will be reviewed as received.
Candidates must:
  • Meet all required qualifications.
  • Be available to interview in person.
  • Physically reside within the United States for the duration of the assignment.
  • Be legally authorized to work in the United States without employer sponsorship, now or in the future.

Job Description
The Cybersecurity Engineer will support VDOT's cybersecurity operations by leveraging Splunk Enterprise Security to monitor, detect, investigate, and respond to cybersecurity threats across enterprise environments. This position works closely with infrastructure, networking, and IT teams to improve detection capabilities, onboard new log sources, develop threat detection use cases, and support security compliance initiatives while protecting critical systems and data.
Responsibilities
Threat Detection & Monitoring
  • Continuously monitor network traffic, endpoint activity, cloud environments, and security logs for suspicious behavior and potential security incidents.
  • Perform proactive threat hunting using Splunk Enterprise Security and advanced analytical techniques.
  • Identify, analyze, and prioritize security events requiring investigation.

Splunk SIEM Administration
  • Create, maintain, optimize, and tune Splunk correlation searches, dashboards, alerts, and detection rules.
  • Develop efficient SPL (Splunk Processing Language) queries to improve threat detection and reduce false positives.
  • Support onboarding, parsing, normalization, and validation of new log sources within the SIEM platform.

Incident Response
  • Investigate security incidents and analyze forensic evidence to determine root cause and impact.
  • Collaborate with infrastructure, networking, and IT teams to contain, remediate, and recover from cybersecurity events.
  • Document findings and contribute to continuous improvement of incident response procedures.

Security Engineering & Threat Intelligence
  • Develop and enhance detection use cases and response playbooks using threat intelligence and security frameworks such as MITRE ATT&CK.
  • Support implementation of advanced cyber defense capabilities that strengthen enterprise security posture.
  • Recommend improvements to monitoring, detection, and response processes.

Compliance & Reporting
  • Generate security reports and SIEM metrics supporting audit readiness.
  • Collect and maintain evidence required for security and compliance reviews.
  • Support compliance efforts aligned with recognized security standards and internal policies.

Requirements
Minimum Qualifications
  • Minimum of 8 years of hands-on cybersecurity experience operating, building, and investigating threats within SIEM or Splunk environments.
  • Minimum of 8 years of experience writing and optimizing SPL (Splunk Processing Language).
  • Minimum of 8 years of experience with networking concepts, firewalls, endpoint detection and response (EDR), and cloud platforms such as AWS, Azure, or GCP.
  • Minimum of 8 years of experience applying security frameworks and compliance standards such as MITRE ATT&CK, NIST, HIPAA, or SOC 2.
  • Minimum of 8 years demonstrating excellent critical thinking, problem-solving, communication, and the ability to manage multiple security incidents under pressure.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • Must physically reside within the United States for the duration of the assignment.
  • Must attend an in-person interview.
  • Must be legally authorized to work in the United States without employer sponsorship, now or in the future.

Preferred Qualifications
  • Minimum of 8 years of experience supported by Splunk certifications such as Splunk Core Certified User and Splunk Core Certified Advanced Power User.

Benefits
Compensation
This is a 1099 Contract opportunity.
Pay Rate: $62 - $82 per hour
Schedule
  • Assignment Start Date: 08/31/2026
  • Assignment End Date: 06/30/2027
  • Assignment Duration: Approximately 10 months
  • Work Arrangement: Onsite

Work Location
  • Richmond, VA
  • This position requires full-time onsite attendance.