Onboard and troubleshoot security log sources and data ingestion. * Develop security detection use cases aligned with MITRE ATT&CK . * Analyze endpoint, network, server, application, and cloud logs.
Data Capital
7 jobs near Columbus, OH
Onboard and troubleshoot security log sources and data ingestion. * Develop security detection use cases aligned with MITRE ATT&CK . * Analyze endpoint, network, server, application, and cloud logs.
Jr.Java Developer
Greenbelt, MD · On-site
... data interchange formats including JSON and XML Strong analytical and problem-solving capabilities Effective written and verbal communication skills Preferred Expertise Experience with JSP and/or ...
Jr.Java Developer
Greenbelt, MD · On-site
... data interchange formats including JSON and XML Strong analytical and problem-solving capabilities Effective written and verbal communication skills Preferred Expertise Experience with JSP and/or ...
System Administrator
Roanoke, VA · On-site
Perform backup verification, data archival, and recovery activities. * Support network connectivity and data center monitoring. * Maintain technical documentation, procedures, and configuration ...
System Administrator
Roanoke, VA · On-site
Perform backup verification, data archival, and recovery activities. * Support network connectivity and data center monitoring. * Maintain technical documentation, procedures, and configuration ...
ServiceNow Developer
Richmond, VA · On-site
$53.50 - $73.50/hr
Troubleshoot complex platform, integration, data, and performance issues * Apply development standards, security controls, automated testing, code review, source control, and release-management ...
New
ServiceNow Developer
Richmond, VA · On-site
$53.50 - $73.50/hr
Troubleshoot complex platform, integration, data, and performance issues * Apply development standards, security controls, automated testing, code review, source control, and release-management ...
New
Important Requirements Local Richmond, VA candidates only. Vendors should submit candidates who already reside in the Richmond, VA area. Candidates must be available to interview onsite. The selected ...
Important Requirements Local Richmond, VA candidates only. Vendors should submit candidates who already reside in the Richmond, VA area. Candidates must be available to interview onsite. The selected ...
Senior Infrastructure Engineer
Richmond, VA · On-site
$107K - $146K/yr
Senior Infrastructure Engineer Location: Richmond, VA Metro Area Work Arrangement: Hybrid - Onsite 1-2 days per week after initial training and knowledge transfer Candidate Preference: Local ...
Senior Infrastructure Engineer
Richmond, VA · On-site
$107K - $146K/yr
Senior Infrastructure Engineer Location: Richmond, VA Metro Area Work Arrangement: Hybrid - Onsite 1-2 days per week after initial training and knowledge transfer Candidate Preference: Local ...
Database Administrator 2 - SQL DBA / Database MigrationJob Summary We are seeking an experienced Database Administrator 2 (DBA 2) to support database migration, administration, troubleshooting ...
Database Administrator 2 - SQL DBA / Database MigrationJob Summary We are seeking an experienced Database Administrator 2 (DBA 2) to support database migration, administration, troubleshooting ...
Other
This job post has expired today. Applications are no longer accepted.
Job description
Location: Richmond, VA Metro Area | Hybrid
Type: Contract | Client: Virginia Government Agency
Seeking an experienced Cybersecurity Engineer with strong Splunk SIEM / Splunk Enterprise Security expertise to support security monitoring, threat detection, threat hunting, and incident response.
Key Responsibilities-
Monitor and investigate security events using Splunk Enterprise Security.
-
Develop and tune SPL queries, correlation searches, alerts, dashboards, and reports.
-
Perform threat hunting and security incident investigations.
-
Onboard and troubleshoot security log sources and data ingestion.
-
Develop security detection use cases aligned with MITRE ATT&CK.
-
Analyze endpoint, network, server, application, and cloud logs.
-
Reduce false positives and improve detection capabilities.
-
Collaborate with infrastructure, network, cloud, and security teams.
-
Support incident response, security audits, and documentation.
-
5+ years of Cybersecurity/SIEM/Security Operations experience.
-
Strong hands-on Splunk ES and SPL experience.
-
Experience with correlation searches, dashboards, alerts, and threat hunting.
-
Strong log analysis and incident response skills.
-
Knowledge of MITRE ATT&CK, NIST, and security detection techniques.
-
Experience with log ingestion, parsing, field extraction, and normalization.
-
Understanding of network, endpoint, Windows/Linux, and cloud security logs.
-
Splunk certifications.
-
Experience with SOAR, EDR/XDR, and cloud security.
-
Knowledge of Azure/AWS/Google Cloud Platform.
-
Certifications such as CISSP, Security+, CySA+, IH.
Must Have: Splunk SIEM/ES + SPL + Threat Hunting + Incident Response.