EngineerJobs.io
← Back to all jobs

Job Description

BranCore Technologies seeks a Cybersecurity Engineer 3 to support Splunk SIEM operations, with a focus on monitoring, detection engineering, incident response support, and compliance reporting. This is a fully onsite contract role based in the Richmond, VA area.

Responsibilities

  • Continuously monitor network traffic, endpoint logs, and cloud security events to identify anomalous behavior and potential security incidents.
  • Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to reduce false positives and improve detection coverage.
  • Investigate potential security incidents, follow forensic evidence, and coordinate with IT and network teams on threat remediation.
  • Develop and refine detection and response playbooks using threat intelligence and frameworks such as MITRE ATT&CK.
  • Work with infrastructure teams to onboard new data sources, supporting log integrity, parsing, and normalization across the SIEM platform.

Requirements

  • 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk environment (required).
  • Excellent critical thinking, problem-solving, and communication skills, including the ability to operate calmly under pressure and manage multiple security tickets (required).
  • Proficiency in writing SPL (Splunk Processing Language) (required).
  • Strong understanding of networking, firewalls, EDR, and cloud platforms such as AWS, Azure, or GCP (required).
  • Knowledge of security frameworks such as MITRE ATT&CK and compliance standards such as NIST, HIPAA, or SOC 2 (required).
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field (required).
  • Relevant certifications such as Splunk Core Certified User and Splunk Core Certified Advanced Power User are highly preferred.

Compliance & Reporting

Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and applicable standards.

Contract Details

  • Job type: contract
  • Contract length: 8 months, with the possibility of extending based on project need

Location & Work Setup

  • Location: Richmond, VA
  • Work setup: fully onsite
  • Eligibility: candidate must reside in the Richmond, VA area

Relevant Technologies

  • Splunk Enterprise Security, Splunk, Splunk SIEM
  • SPL (Splunk Processing Language)
  • MITRE ATT&CK
  • AWS, Azure, GCP
  • NIST, HIPAA, SOC 2
  • EDR

How to Apply

Email your details to [email protected].

Similar Jobs