Cybersecurity Engineer — SIEM & Splunk Expert

electro soft

Richmond (OH)

On-site

USD 150,000 - 160,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

EOE/Veterans/Disabled

Job summary

Electrosoft Services, LLC seeks a Cybersecurity Engineer specialized in SIEM and ELM to support a large-scale DoD cybersecurity environment. You will provide architecture, engineering, administration, content development, troubleshooting, integration and sustainment for Splunk Core and Splunk Enterprise Security.

The role involves developing SIEM use cases, dashboards, and data feeds, plus ensuring scalable performance, security, and compliance with DoD policies across the enterprise.

Qualifications

  • Seven (7) years of relevant IT experience.
  • DOD Secret Clearance.
  • Must be eligible for IT I.
  • Relevant certification meeting DOD 8570/8140 IAT level III.
  • Relevant certification meeting DOD 8570/8140 CND-IS.
  • Computing Environment: Linux+, Splunk Administrator.
  • Experience creating custom dashboards and reports in Splunk using threat data.
  • Experience in the integration and sustainment of Splunk Core and Splunk Enterprise Security (ES).

Responsibilities

  • Research, plan, install, configure, troubleshoot, maintain, and back up components of the enterprise Splunk ELM/SIEM environment.
  • Enhance ELM and SIEM architecture by incorporating new data feeds, products, and security capabilities.
  • Integrate security event and data feeds into the Splunk environment.
  • Develop and implement SIEM use cases to improve cybersecurity situational awareness.
  • Develop customized dashboards, reports, data monitors, active channels, trends, correlation rules, and other SIEM content.
  • Analyze threat information from logs, IDS, intelligence reporting, vendor sources, and other cybersecurity sources.
  • Identify and elevate high-threat events to incident responders.
  • Perform event analysis and tuning to improve detection capabilities and reduce false positives.
  • Support the development and optimization of security rules and correlation capabilities.
  • Perform upgrades, maintenance, troubleshooting, and performance tuning of SIEM infrastructure.
  • Conduct network and capacity analysis to ensure the environment can support anticipated event volumes.
  • Analyze endpoint availability and data-collection capabilities.
  • Define and maintain appropriate user roles and access.
  • Evaluate data-storage requirements and their impact on SIEM architecture.
  • Support Security Test and Evaluation and Information Assurance assessments.
  • Review DoD policies and assess their impact on SIEM and cybersecurity architecture.
  • Develop and maintain technical standards, security architecture documentation, SOPs, and implementation documentation.
  • Conduct research and market analysis of emerging cybersecurity and SIEM technologies.
  • Provide technical training, briefings, and knowledge transfer to Government and contractor personnel.

Skills

SIEM engineering
Troubleshooting
Threat analysis
Security monitoring

Education

DOD 8570/8140 IAT III
DOD 8570/8140 CND-IS

Tools

Splunk Core
Splunk Enterprise Security

Job description

Electrosoft Services, LLC seeks a Cybersecurity Engineer specialized in SIEM and ELM to support a large-scale DoD cybersecurity environment. You will provide architecture, engineering, administration, content development, troubleshooting, integration and sustainment for Splunk Core and Splunk Enterprise Security.

The role involves developing SIEM use cases, dashboards, and data feeds, plus ensuring scalable performance, security, and compliance with DoD policies across the enterprise.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SIEM & Splunk Engineer for DoD Cyber Defense
Senior SIEM & Splunk Engineer for DoD Cyber Defense

Electrosoft • Richmond (VA)

On-site
USD 150,000 - 160,000
Cybersecurity Engineer - Splunk SIEM & ES (DoD)
Cybersecurity Engineer - Splunk SIEM & ES (DoD)

Electrosoft • Columbus (OH)

On-site
USD 150,000 - 160,000
Senior SIEM Engineer — Splunk ES & DoD Expertise
Senior SIEM Engineer — Splunk ES & DoD Expertise

Socket.dev • Richmond (OH)

On-site
USD 150,000 - 160,000
SIEM/Splunk Engineer for DoD Cybersecurity
SIEM/Splunk Engineer for DoD Cybersecurity

Electrosoft • Columbus (OH)

On-site
USD 150,000 - 160,000
Cybersecurity Engineer – SIEM / Splunk
Cybersecurity Engineer – SIEM / Splunk

electro soft • Richmond (OH)

On-site
USD 150,000 - 160,000
EOE/Veterans/Disabled
Cybersecurity Engineer – SIEM / Splunk
Cybersecurity Engineer – SIEM / Splunk

Electrosoft • Richmond (VA)

On-site
USD 150,000 - 160,000
Cybersecurity Engineer – SIEM / Splunk
Cybersecurity Engineer – SIEM / Splunk

Electrosoft • Columbus (OH)

On-site
USD 150,000 - 160,000
Cybersecurity Engineer – SIEM / Splunk
Cybersecurity Engineer – SIEM / Splunk

Socket.dev • Richmond (OH)

On-site
USD 150,000 - 160,000
Cybersecurity Engineer 4 - SIEM / Splunk Engineer
Cybersecurity Engineer 4 - SIEM / Splunk Engineer

Kinsley Power Systems • Columbus (OH)

On-site
USD 120,000 - 160,000
Senior SIEM Engineer — Splunk & Threat Detection Expert
Senior SIEM Engineer — Splunk & Threat Detection Expert

Leidos • Corridor North (MD)

On-site
USD 131,000 - 237,000