Cybersecurity Engineer 3

Astyra Corporation

Richmond (VA)

On-site

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Astyra Corporation in Richmond, VA seeks a Cybersecurity Engineer 3 for a 9-month, on-site contract to develop and implement advanced cyber defense solutions, focusing on Splunk SIEM.

The ideal candidate has 8+ years of hands-on security experience, deep SPL proficiency, threat hunting, incident response, and the ability to translate threat intel into detections and playbooks, with knowledge of MITRE ATT&CK and NIST/SOC 2.

Qualifications

  • Minimum of 8+ years of hands-on experience in cybersecurity, specifically operating, building, and investigating threats within a SIEM or Splunk.
  • Excellent critical thinking, problem-solving, and communication skills. Ability to operate calmly under pressure and manage multiple security tickets.
  • Proficiency in writing SPL (Splunk Processing Language).
  • Strong understanding of networking, firewalls, EDR, and cloud platforms (AWS, Azure, or GCP).
  • Knowledge of security frameworks (e.g., MITRE ATT&CK) and security compliance standards (e.g., NIST, HIPAA, or SOC 2).
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • Relevant certifications such as Splunk Core Certified User and Splunk Core Certified Advanced Power User are highly preferred.

Responsibilities

  • Threat Detection Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.
  • Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.
  • Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.
  • Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.
  • Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
  • Compliance Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards.

Skills

SPL (Splunk)
Splunk Enterprise Security
Threat hunting
Incident response
Log analysis
Compliance reporting
Networking fundamentals
Cloud platforms (AWS/Azure/GCP)
Communication skills

Education

Bachelor’s degree in Computer Science, Cybersecurity, IT

Tools

Splunk Core Certified User
Splunk Core Certified Advanced Power User

Job description

Cybersecurity Engineer 3

9-month contract position – On-site

Description

The Cybersecurity Engineer develops and implements advanced cyber defense solutions, safeguards the infrastructure, and ensures that the system is built to specification and is deployed successfully. We are seeking a highly analytical and technically proficient Cybersecurity Engineer supporting Splunk SIEM. You will play a critical role in defending against cyber threats by leveraging Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The ideal candidate has strong expertise in log analysis, threat hunting, and writing Splunk queries to identify and contain malicious activity.

Key Responsibilities
  • Threat Detection Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.
  • Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.
  • Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.
  • Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.
  • Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
  • Compliance Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards.
Required Skills/Knowledge/Experience
  • Minimum of 8+ years of hands‑on experience in cybersecurity, specifically operating, building, and investigating threats within a SIEM or Splunk. Required: 8 Years
  • Excellent critical thinking, problem‑solving, and communication skills. Ability to operate calmly under pressure and manage multiple security tickets. Required: 8 Years
  • Proficiency in writing SPL (Splunk Processing Language). Required: 8 Years
  • Strong understanding of networking, firewalls, EDR, and cloud platforms (AWS, Azure, or GCP). Required: 8 Years
  • Knowledge of security frameworks (e.g., MITRE ATT&CK) and security compliance standards (e.g., NIST, HIPAA, or SOC 2). Required: 8 Years
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field. Required
  • Relevant certifications such as Splunk Core Certified User and Splunk Core Certified Advanced Power User are highly preferred. Highly Desired: 8 Years
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer 3
Cybersecurity Engineer 3

Mbi Llc • Richmond (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates Inc. • Richmond (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates, Inc • Richmond (VA)

On-site
USD 110,000 - 150,000
Cybersecurity Engineer 3 – Contract Position
Cybersecurity Engineer 3 – Contract Position

BranCore Technologies • Richmond (VA)

On-site
USD 110,000 - 165,000
Cybersecurity Engineer
Cybersecurity Engineer

Global Sumi Technologies Inc., • Richmond (VA)

On-site
USD 110,000 - 170,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Ampcus Inc • Richmond (VA)

On-site
USD 110,000 - 160,000
Must be Virginia Locals || Cybersecurity Engineer || 1099/W2 Role
Must be Virginia Locals || Cybersecurity Engineer || 1099/W2 Role

VLS Systems Inc • Richmond (VA)

On-site
USD 120,000 - 180,000
Cybersecurity Engineer 3 - Hybrid Richmond, VA
Cybersecurity Engineer 3 - Hybrid Richmond, VA

Novalink Solutions LLC • Richmond (VA)

Hybrid
USD 120,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

SSV Technologies Inc. • Richmond (VA)

On-site
USD 120,000 - 180,000
Cybersecurity Engineer
Cybersecurity Engineer

DataStaff, Inc. • Richmond (VA)

On-site
USD 110,000 - 150,000
Medical insurance
Dental coverage
Vision coverage
+2