Electrosoft
Cybersecurity Engineer – SIEM / Splunk
Richmond, Virginia, United States · Columbus, Ohio, United States
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Matched against 2.3M live jobs from 200,000+ employers in 200+ countries.
Tailor my resume for this job →hirly's read of this role
- Seniority
- Mid level
- Stated salary
- $140,000 – $150,000 per year
- Country
- US
- Work mode
- On-site / unstated
- First seen by hirly
- 28 Sept 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
Electrosoft Services, LLC is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. While cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent automation. We always seek to delight our customers, so we retain highly qualified employees and offer them meaningful work, growth opportunities, and work-life balance. What sets us apart from all other contractors is the sense of teamwork our employees feel – and the knowledge that outstanding effort is recognized and rewarded. The camaraderie we share emanates from Lunch & Learn sessions where we explore new ideas together, fun group activities ranging from escape rooms to miniature golf, and much, much more. If we’ve described you and your dream workplace, please apply and share in the many benefits and opportunities we offer.
Cybersecurity Engineer – SIEM / Splunk
Position Summary
Electrosoft is seeking a Cybersecurity Engineer specializing in Security Information and Event Management (SIEM) and Enterprise Log Management (ELM) to support a large-scale DoD cybersecurity environment.
The engineer will provide architecture, engineering, administration, content development, troubleshooting, integration, and sustainment support for Splunk Core and Splunk Enterprise Security (ES).
Key Responsibilities
Research, plan, install, configure, troubleshoot, maintain, and back up components of the enterprise Splunk ELM/SIEM environment.
Enhance ELM and SIEM architecture by incorporating new data feeds, products, and security capabilities.
Integrate security event and data feeds into the Splunk environment.
Develop and implement SIEM use cases to improve cybersecurity situational awareness.
Develop customized dashboards, reports, data monitors, active channels, trends, correlation rules, and other SIEM content.
Analyze threat information from logs, IDS, intelligence reporting, vendor sources, and other cybersecurity sources.
Identify and elevate high-threat events to incident responders.
Perform event analysis and tuning to improve detection capabilities and reduce false positives.
Support the development and optimization of security rules and correlation capabilities.
Perform upgrades, maintenance, troubleshooting, and performance tuning of SIEM infrastructure.
Conduct network and capacity analysis to ensure the environment can support anticipated event volumes.
Analyze endpoint availability and data-collection capabilities.
Define and maintain appropriate user roles and access.
Evaluate data-storage requirements and their impact on SIEM architecture.
Support Security Test and Evaluation and Information Assurance assessments.
Review DoD policies and assess their impact on SIEM and cybersecurity architecture.
Develop and maintain technical standards, security architecture documentation, SOPs, and implementation documentation.
Conduct research and market analysis of emerging cybersecurity and SIEM technologies.
Provide technical training, briefings, and knowledge transfer to Government and contractor personnel.
Basic Qualifications:
Seven (7) years of relevant IT experience
DOD Secret Clearance
Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission
- Primary DCWF Work Role 521: Cyber Defense Infrastructure Support
- Proficiency Level: Intermediate
- Secondary DCWF Work Role 451: System Administrator
- Proficiency Level: Intermediate
Computing Environment: Linux+, Splunk Administrator
Experience creating custom dashboards and reports in Splunk using threat data.
Experience in the integration and sustainment of Splunk Core and Splunk Enterprise Security (ES).
The actual base salary offered will be determined based on a variety of factors, including, but not limited to, the candidate’s relevant years and depth of experience, skills and qualifications, education, certifications, internal equity, and the specific requirements of the position. Candidates should not assume they will be offered the top of the posted range, as compensation is based on the individual qualifications and overall fit for the role.
Salary Range
$140,000 — $150,000 USD
Electrosoft is an Equal Opportunity Employer/Veterans/Disabled
Similar jobs
- Cybersecurity EngineerBah · Colorado Springs, COFirst seen today
- Cybersecurity Engineer II Cloud and IdentityAtlantic Health · Morristown, NJ, United StatesFirst seen today
- Cybersecurity Engineer - US FederalWorkday · USA.VA.RestonFirst seen today
- C-UAS Cybersecurity EngineerBah · Fort Belvoir, VAFirst seen today
- Charging and Energy Infrastructure Cybersecurity EngineerFord Global · United StatesFirst seen yesterdayremote
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job