Cybersecurity Engineer 3
Job Description
BranCore Technologies seeks a Cybersecurity Engineer 3 to support Splunk SIEM operations, with a focus on monitoring, detection engineering, incident response support, and compliance reporting. This is a fully onsite contract role based in the Richmond, VA area.
Responsibilities
- Continuously monitor network traffic, endpoint logs, and cloud security events to identify anomalous behavior and potential security incidents.
- Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to reduce false positives and improve detection coverage.
- Investigate potential security incidents, follow forensic evidence, and coordinate with IT and network teams on threat remediation.
- Develop and refine detection and response playbooks using threat intelligence and frameworks such as MITRE ATT&CK.
- Work with infrastructure teams to onboard new data sources, supporting log integrity, parsing, and normalization across the SIEM platform.
Requirements
- 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk environment (required).
- Excellent critical thinking, problem-solving, and communication skills, including the ability to operate calmly under pressure and manage multiple security tickets (required).
- Proficiency in writing SPL (Splunk Processing Language) (required).
- Strong understanding of networking, firewalls, EDR, and cloud platforms such as AWS, Azure, or GCP (required).
- Knowledge of security frameworks such as MITRE ATT&CK and compliance standards such as NIST, HIPAA, or SOC 2 (required).
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field (required).
- Relevant certifications such as Splunk Core Certified User and Splunk Core Certified Advanced Power User are highly preferred.
Compliance & Reporting
Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and applicable standards.
Contract Details
- Job type: contract
- Contract length: 8 months, with the possibility of extending based on project need
Location & Work Setup
- Location: Richmond, VA
- Work setup: fully onsite
- Eligibility: candidate must reside in the Richmond, VA area
Relevant Technologies
- Splunk Enterprise Security, Splunk, Splunk SIEM
- SPL (Splunk Processing Language)
- MITRE ATT&CK
- AWS, Azure, GCP
- NIST, HIPAA, SOC 2
- EDR
How to Apply
Email your details to [email protected].