Cybersecurity Engineer
Analytics
Cloud Platforms
Cyber Security
Cybersecurity Tools
Data Platform
Data Security
Detection Engineering
Digital Marketing
Endpoint Security
Incident Response
Information Security
Information Technology (IT)
InfoSec
Log Management
Risk Management
Security
Security Automation
Security Compliance
Security Information And Event Management
Security Monitoring
Security Operations
Security Standards
Siem
Splunk
Splunk Siem
Threat Intelligence
Job Description
Skywalk Global is seeking a Cybersecurity Engineer to strengthen the organization’s cyber defense program through advanced monitoring, detection, and incident support. In this Richmond, VA onsite role, you will help ensure systems are deployed successfully and built to specification while supporting Splunk SIEM capabilities using Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.
What you’ll do
- Continuously monitor network traffic, endpoint logs, and cloud security events to identify anomalous behavior and potential incidents.
- Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to reduce false positives and improve detection quality.
- Investigate potential security incidents, preserve and follow forensic evidence, and coordinate with IT and network teams to remediate threats.
- Develop and refine detection and response playbooks using threat intelligence and frameworks such as MITRE ATT&CK.
- Partner with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
- Support audit readiness by collecting SIEM control evidence and producing compliance reports aligned to internal policies and standards.
Required experience and qualifications
- 8+ years of hands-on cybersecurity experience, focused on operating, building, and investigating threats within a SIEM environment, specifically Splunk.
- Strong critical thinking, problem-solving, and communication skills, with the ability to remain calm under pressure while handling multiple security tickets.
- Proficiency in SPL (Splunk Processing Language).
- Working knowledge of networking, firewalls, EDR, and cloud platforms including AWS, Azure, or GCP.
- Knowledge of security frameworks such as MITRE ATT&CK and compliance standards including NIST, HIPAA, or SOC 2.
- A Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
Skills and tools
- Splunk SIEM and Splunk Enterprise Security
- SPL (Splunk Processing Language)
- Splunk correlation searches, alerts, and dashboards
- MITRE ATT&CK
- AWS, Azure, GCP
- EDR
- NIST, HIPAA, SOC 2