Cybersecurity Engineer

Smart IMS•Richmond, VA
•Onsite

About The Position

As a Cybersecurity Engineer, you will develop, implement, and support advanced cybersecurity solutions designed to protect enterprise infrastructure, applications, and critical business assets. This role is focused on leveraging Splunk SIEM technologies to monitor, detect, investigate, and respond to cyber threats while enhancing the organization's overall security posture. The ideal candidate will possess strong expertise in security monitoring, threat detection, incident response, log analysis, and security operations. You will work closely with infrastructure, network, and security teams to ensure effective visibility into security events, improve detection capabilities, and support compliance and audit requirements.

Requirements

  • Strong experience with Splunk Enterprise Security, including dashboard development, correlation searches, alerts, and SIEM operations.
  • Experience monitoring and responding to cybersecurity incidents across enterprise environments.
  • Strong knowledge of threat detection, threat hunting, incident response, and security operations processes.
  • Experience with log analysis, event correlation, and security monitoring across network, endpoint, and cloud platforms.
  • Knowledge of cybersecurity frameworks and methodologies, including MITRE ATT&CK.
  • Experience developing and maintaining security use cases, detection content, and response playbooks.
  • Familiarity with forensic investigation techniques and evidence-based incident analysis.
  • Experience integrating and managing security log sources within SIEM environments.
  • Strong understanding of network security, cloud security, endpoint security, and security best practices.
  • Experience supporting compliance, audit readiness, and security reporting initiatives.
  • Excellent analytical, troubleshooting, problem-solving, and communication skills.
  • Ability to collaborate effectively with security, infrastructure, networking, and operations teams to resolve security risks and incidents.

Responsibilities

  • Monitor network traffic, endpoint activity, cloud environments, and security logs for anomalous behavior and potential security threats.
  • Utilize Splunk Enterprise Security to detect, analyze, and respond to security incidents.
  • Create, maintain, optimize, and tune Splunk correlation searches, alerts, dashboards, and detection rules.
  • Investigate security incidents, perform forensic analysis, and coordinate remediation efforts with technical teams.
  • Develop and enhance threat detection use cases, playbooks, and response procedures based on industry frameworks and threat intelligence.
  • Conduct proactive threat hunting activities to identify indicators of compromise and malicious activity.
  • Collaborate with infrastructure and operations teams to onboard and integrate new log sources into the SIEM platform.
  • Ensure proper log collection, normalization, parsing, and data integrity across security monitoring solutions.
  • Generate security reports, metrics, and dashboards to support operational and compliance requirements.
  • Support audit readiness activities by collecting evidence, documenting controls, and producing compliance reports.
  • Assist in strengthening enterprise cyber defense capabilities through continuous monitoring, security analysis, and process improvements.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service