JobRaahGet matched free

Jobs

Cybersecurity Engineer 3

TOMORROW HIRE · Richmond, Virginia, United States · On-site

Posted Sep 22, 2026

Apply with JobRaah

Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.

Job Title: Cybersecurity Engineer 3 Work Type: Onsite Location: Richmond, VA 23219 Salary/Rate: Up to $104.77/hr Start Date: 09/28/2026 End Date: 06/30/2027 Industry Category: Information Technology / Cybersecurity Employment Type: Contract Requisition ID: 811203 Overview: The Virginia Department of Transportation (VDOT) is seeking a highly analytical and technically proficient Cybersecurity Engineer 3 to support cybersecurity operations and Splunk SIEM capabilities. The position will develop and implement advanced cyber defense solutions, protect agency infrastructure, monitor and analyze security events, investigate threats, and support secure system deployment. Application: Candidates should have extensive hands-on experience with cybersecurity operations, Splunk SIEM, SPL, threat detection, log analysis, incident investigation, and threat hunting. Strong knowledge of networking, firewalls, EDR, cloud platforms, security frameworks, and compliance standards is also required. Job Description: The Cybersecurity Engineer will leverage Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The role will focus on improving detection capabilities, investigating potential security incidents, developing security use cases, maintaining SIEM data sources, and supporting cybersecurity compliance requirements. Responsibilities: Monitor network traffic, endpoint logs, and cloud security events for anomalous activity and potential security incidents. Use Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. Create, maintain, and tune Splunk correlation searches, alerts, and dashboards. Develop and optimize SPL queries for security monitoring, threat detection, and investigation. Investigate potential security incidents and analyze forensic evidence. Conduct threat hunting to identify malicious activity and indicators of compromise. Collaborate with IT, network, infrastructure, and security teams to contain and remediate threats. Develop and refine security detection and response use cases. Create detection and response playbooks using threat intelligence and security frameworks such as MITRE ATT&CK. Work with infrastructure teams to onboard new log and security data sources. Ensure log integrity, parsing, and normalization across the SIEM platform. Support SIEM data integrations and troubleshooting. Collect SIEM control evidence for security audits. Generate compliance and security reports aligned with organizational policies and standards. Manage multiple security tickets and investigations while maintaining effective communication with stakeholders. Requirements Minimum Qualifications: 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk environment. 8+ years of experience writing SPL (Splunk Processing Language). 8+ years of experience demonstrating critical thinking,…