EngineerJobs.io
← Back to all jobs

Job Description

Intellibee is seeking a Cybersecurity Engineer to design and implement advanced cyber defense capabilities in a hands-on, detection-focused environment. Based in Richmond, VA, this onsite role partners closely with IT and network teams while leveraging Splunk SIEM and Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.

The position emphasizes log analysis, threat hunting, incident response, and the continuous improvement of Splunk detections and compliance reporting.

What you will do

  • Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and possible security incidents.
  • Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to reduce false positives and improve detection coverage.
  • Investigate potential incidents by following forensic evidence and coordinating with IT and network teams to remediate threats.
  • Develop and refine detection and response playbooks using threat intelligence and frameworks such as MITRE ATT&CK.
  • Collaborate with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
  • Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards.

Required qualifications

  • 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk. (Required: 8 years)
  • Excellent critical thinking, problem-solving, and communication skills, including the ability to stay calm under pressure and manage multiple security tickets. (Required: 8 years)
  • Proficiency writing SPL (Splunk Processing Language). (Required: 8 years)
  • Strong understanding of networking, firewalls, EDR, and cloud platforms such as AWS, Azure, or GCP. (Required: 8 years)
  • Knowledge of security frameworks (for example, MITRE ATT&CK) and security compliance standards such as NIST, HIPAA, or SOC 2. (Required: 8 years)
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field. (Required)
  • Relevant certifications such as Splunk Core Certified User and/or Splunk Core Certified Advanced Power User are highly preferred. (Highly desired: 8 years)

Tools and technologies

  • Splunk SIEM
  • Splunk Enterprise Security
  • Splunk Processing Language (SPL)
  • MITRE ATT&CK
  • AWS, Azure, GCP
  • NIST, HIPAA, SOC 2
  • EDR

Benefits

  • Long-Term Stability: Multi-year opportunities with room to grow.
  • Comprehensive Health Coverage: Healthcare benefits for you and your family.
  • Future Planning: 401(k) program support.
  • GC Assistance: Support for immediate Green Card processing, if required.

Similar Jobs