Data Capital

7 jobs near Columbus, OH

... data interchange formats including JSON and XML Strong analytical and problem-solving capabilities Effective written and verbal communication skills Preferred Expertise Experience with JSP and/or ...

Perform backup verification, data archival, and recovery activities. * Support network connectivity and data center monitoring. * Maintain technical documentation, procedures, and configuration ...

ServiceNow Developer

Richmond, VA · On-site

$53.50 - $73.50/hr

Troubleshoot complex platform, integration, data, and performance issues * Apply development standards, security controls, automated testing, code review, source control, and release-management ...

New

Senior Infrastructure Engineer

Richmond, VA · On-site

$107K - $146K/yr

Senior Infrastructure Engineer Location: Richmond, VA Metro Area Work Arrangement: Hybrid - Onsite 1-2 days per week after initial training and knowledge transfer Candidate Preference: Local ...

Cybersecurity Engineer - Splunk SIEM

Data Capital Inc

Richmond, VA • On-site

Other

This job post has expired today. Applications are no longer accepted.


Job description

Cybersecurity Engineer – Splunk SIEM

Location: Richmond, VA Metro Area | Hybrid
Type: Contract | Client: Virginia Government Agency

Job Summary

Seeking an experienced Cybersecurity Engineer with strong Splunk SIEM / Splunk Enterprise Security expertise to support security monitoring, threat detection, threat hunting, and incident response.

Key Responsibilities
  • Monitor and investigate security events using Splunk Enterprise Security.

  • Develop and tune SPL queries, correlation searches, alerts, dashboards, and reports.

  • Perform threat hunting and security incident investigations.

  • Onboard and troubleshoot security log sources and data ingestion.

  • Develop security detection use cases aligned with MITRE ATT&CK.

  • Analyze endpoint, network, server, application, and cloud logs.

  • Reduce false positives and improve detection capabilities.

  • Collaborate with infrastructure, network, cloud, and security teams.

  • Support incident response, security audits, and documentation.

Required Skills
  • 5+ years of Cybersecurity/SIEM/Security Operations experience.

  • Strong hands-on Splunk ES and SPL experience.

  • Experience with correlation searches, dashboards, alerts, and threat hunting.

  • Strong log analysis and incident response skills.

  • Knowledge of MITRE ATT&CK, NIST, and security detection techniques.

  • Experience with log ingestion, parsing, field extraction, and normalization.

  • Understanding of network, endpoint, Windows/Linux, and cloud security logs.

Preferred
  • Splunk certifications.

  • Experience with SOAR, EDR/XDR, and cloud security.

  • Knowledge of Azure/AWS/Google Cloud Platform.

  • Certifications such as CISSP, Security+, CySA+, IH.

Must Have: Splunk SIEM/ES + SPL + Threat Hunting + Incident Response.