CybersecurityJobs.io
← Back to all jobs

Job Description

Skywalk Global is seeking a Cybersecurity Engineer to strengthen the organization’s cyber defense program through advanced monitoring, detection, and incident support. In this Richmond, VA onsite role, you will help ensure systems are deployed successfully and built to specification while supporting Splunk SIEM capabilities using Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.

What you’ll do

  • Continuously monitor network traffic, endpoint logs, and cloud security events to identify anomalous behavior and potential incidents.
  • Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to reduce false positives and improve detection quality.
  • Investigate potential security incidents, preserve and follow forensic evidence, and coordinate with IT and network teams to remediate threats.
  • Develop and refine detection and response playbooks using threat intelligence and frameworks such as MITRE ATT&CK.
  • Partner with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
  • Support audit readiness by collecting SIEM control evidence and producing compliance reports aligned to internal policies and standards.

Required experience and qualifications

  • 8+ years of hands-on cybersecurity experience, focused on operating, building, and investigating threats within a SIEM environment, specifically Splunk.
  • Strong critical thinking, problem-solving, and communication skills, with the ability to remain calm under pressure while handling multiple security tickets.
  • Proficiency in SPL (Splunk Processing Language).
  • Working knowledge of networking, firewalls, EDR, and cloud platforms including AWS, Azure, or GCP.
  • Knowledge of security frameworks such as MITRE ATT&CK and compliance standards including NIST, HIPAA, or SOC 2.
  • A Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.

Skills and tools

  • Splunk SIEM and Splunk Enterprise Security
  • SPL (Splunk Processing Language)
  • Splunk correlation searches, alerts, and dashboards
  • MITRE ATT&CK
  • AWS, Azure, GCP
  • EDR
  • NIST, HIPAA, SOC 2

Similar Jobs