Cybersecurity Engineer 3

Cybersecurity Jobs

Richmond (VA)

On-site

USD 115,000 - 150,000

Full time

12 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

BranCore Technologies is seeking a Cybersecurity Engineer 3 to support a Splunk SIEM program focused on monitoring, detection, analysis, and response to security events. This fully onsite contract role is based in the Richmond, VA area, where you will help improve detection quality, ensure SIEM data integration, and support compliance reporting.

You’ll monitor threats, create Splunk correlation searches and dashboards, investigate incidents, and develop playbooks with MITRE ATT&CK guidance.

Qualifications

  • 8+ years of hands-on cybersecurity experience in SIEM, Splunk, or similar
  • Proficiency with SPL (Splunk Processing Language)
  • Understanding of networking, firewalls, EDR, and cloud platforms (AWS/Azure/GCP)
  • Familiarity with frameworks like MITRE ATT&CK and standards such as NIST/HIPAA/SOC 2
  • Bachelor’s degree required
  • Certifications such as Splunk Core Certified User/Advanced Power User are highly preferred

Responsibilities

  • Monitor network, endpoint, and cloud security events to identify incidents
  • Create and tune Splunk correlation searches, alerts, and dashboards
  • Investigate incidents and coordinate remediation with IT teams
  • Develop detection and response playbooks using threat intelligence
  • Onboard new data sources and ensure log integrity across the SIEM
  • Support audit readiness with SIEM control evidence and reports

Skills

Splunk
SPL
8+ years
MITRE ATTACK
NIST
HIPAA
SOC 2
Cloud platforms
Communication

Education

Bachelor’s degree in CS/Cybersecurity/IT

Tools

Splunk
Splunk Enterprise Security

Job description

BranCore Technologies is hiring a Cybersecurity Engineer 3 to support a Splunk SIEM program focused on monitoring, detection, analysis, and response to security events. This fully onsite contract role is based in the Richmond, VA area, where you will help improve detection quality, ensure SIEM data integration, and support compliance reporting.

What you’ll do
  • Continuously monitor network traffic, endpoint logs, and cloud security events to identify anomalous behavior and potential security incidents.
  • Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to reduce false positives and strengthen detection coverage.
  • Investigate potential security incidents, preserve and follow forensic evidence, and coordinate with IT and network teams to remediate threats.
  • Develop and refine detection and response playbooks using threat intelligence and frameworks such as MITRE ATT&CK.
  • Partner with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
  • Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned to internal policies and standards.
Required experience and skills
  • Minimum 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk. Required
  • Strong critical thinking, problem-solving, and communication skills, with the ability to operate calmly under pressure and manage multiple security tickets. Required
  • Proficiency writing SPL (Splunk Processing Language). Required
  • Solid understanding of networking, firewalls, EDR, and cloud platforms including AWS, Azure, or GCP. Required
  • Knowledge of security frameworks (for example, MITRE ATT&CK) and security compliance standards such as NIST, HIPAA, or SOC 2. Required
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field. Required
  • Relevant certifications such as Splunk Core Certified User and Splunk Core Certified Advanced Power User are highly preferred. Highly desired
Technologies
  • Splunk Enterprise Security, Splunk, Splunk SIEM
  • SPL (Splunk Processing Language)
  • MITRE ATT&CK
  • AWS, Azure, GCP
  • NIST, HIPAA, SOC 2
  • EDR
Location and contract details
  • Location: Richmond, VA (onsite)
  • Work setup: Fully onsite
  • Contract length: 8 months, with the possibility of extending based on project need
  • Requirement: Candidate must reside in the Richmond, VA area
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cybersecurity Engineer — Splunk SIEM & Threat Detection (Onsite, Richmond)
Senior Cybersecurity Engineer — Splunk SIEM & Threat Detection (Onsite, Richmond)

Cybersecurity Jobs • Richmond (VA)

On-site
USD 115,000 - 150,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates, Inc • Richmond (VA)

On-site
USD 110,000 - 150,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Delan Associates Inc. • Richmond (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

Cybersecurity Jobs • Richmond (VA)

On-site
USD 130,000 - 170,000
Cybersecurity Engineer
Cybersecurity Engineer

ZealHire Inc. • Richmond (VA), Northern (KY)

Hybrid
USD 110,000 - 190,000
VDOT Cybersecurity Engineer 3
VDOT Cybersecurity Engineer 3

TALENT Software Services • Richmond (VA)

On-site
USD 90,000 - 130,000
Cybersecurity Engineer 3
Cybersecurity Engineer 3

Mbi Llc • Richmond (VA)

On-site
USD 110,000 - 160,000
Cybersecurity Engineer 4 - SIEM / Splunk Engineer
Cybersecurity Engineer 4 - SIEM / Splunk Engineer

Kinsley Power Systems • Columbus (OH)

On-site
USD 120,000 - 160,000
Senior Splunk SIEM Engineer - Threat Detection
Senior Splunk SIEM Engineer - Threat Detection

Delan Associates, Inc • Richmond (VA)

On-site
USD 110,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

Accylerate, LLC. • Richmond (VA)

On-site
USD 110,000 - 140,000