T logo

Cybersecurity Engineer 3

TOMORROW HIRERichmond, VA

$105+ / hour

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Career level
Senior-level
Remote
On-site
Compensation
$105+/hour

Job Description

Job Title: Cybersecurity Engineer 3Work Type: OnsiteLocation: Richmond, VA 23219Salary/Rate: Up to $104.77/hrStart Date: 09/28/2026End Date: 06/30/2027Industry Category: Information Technology / CybersecurityEmployment Type: ContractRequisition ID: 811203

Overview:

The Virginia Department of Transportation (VDOT) is seeking a highly analytical and technically proficient Cybersecurity Engineer 3 to support cybersecurity operations and Splunk SIEM capabilities.

The position will develop and implement advanced cyber defense solutions, protect agency infrastructure, monitor and analyze security events, investigate threats, and support secure system deployment.

Application:

Candidates should have extensive hands-on experience with cybersecurity operations, Splunk SIEM, SPL, threat detection, log analysis, incident investigation, and threat hunting.

Strong knowledge of networking, firewalls, EDR, cloud platforms, security frameworks, and compliance standards is also required.

Job Description:

The Cybersecurity Engineer will leverage Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The role will focus on improving detection capabilities, investigating potential security incidents, developing security use cases, maintaining SIEM data sources, and supporting cybersecurity compliance requirements.

Responsibilities:

  • Monitor network traffic, endpoint logs, and cloud security events for anomalous activity and potential security incidents.
  • Use Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.
  • Create, maintain, and tune Splunk correlation searches, alerts, and dashboards.
  • Develop and optimize SPL queries for security monitoring, threat detection, and investigation.
  • Investigate potential security incidents and analyze forensic evidence.
  • Conduct threat hunting to identify malicious activity and indicators of compromise.
  • Collaborate with IT, network, infrastructure, and security teams to contain and remediate threats.
  • Develop and refine security detection and response use cases.
  • Create detection and response playbooks using threat intelligence and security frameworks such as MITRE ATT&CK.
  • Work with infrastructure teams to onboard new log and security data sources.
  • Ensure log integrity, parsing, and normalization across the SIEM platform.
  • Support SIEM data integrations and troubleshooting.
  • Collect SIEM control evidence for security audits.
  • Generate compliance and security reports aligned with organizational policies and standards.
  • Manage multiple security tickets and investigations while maintaining effective communication with stakeholders.

Requirements

Minimum Qualifications:

  • 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk environment.
  • 8+ years of experience writing SPL (Splunk Processing Language).
  • 8+ years of experience demonstrating critical thinking, problem-solving, and communication skills.
  • Ability to operate calmly under pressure and manage multiple security tickets.
  • 8+ years of experience with networking and firewalls.
  • 8+ years of experience with EDR technologies.
  • 8+ years of experience with cloud platforms, including AWS, Azure, and/or GCP.
  • 8+ years of experience with security frameworks such as MITRE ATT&CK.
  • 8+ years of experience with security compliance standards such as NIST, HIPAA, and/or SOC 2.
  • Strong experience with log analysis, threat hunting, security monitoring, and incident investigation.
  • Strong understanding of SIEM technologies and security event management.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.

Preferred Qualifications:

  • Splunk Core Certified User certification.
  • Splunk Core Certified Advanced Power User certification.
  • Additional Splunk or cybersecurity certifications.
  • Experience developing Splunk Enterprise Security dashboards, correlation searches, and alerts.
  • Experience developing security detection and response playbooks.
  • Experience applying threat intelligence and MITRE ATT&CK-based detection strategies.

Benefits

Compensation:

Pay Rate: $104.77/hr

Schedule:

Onsite

Work Location:

Richmond, VA 23219

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Cybersecurity Engineer 3 Jobs at TOMORROW HIRE

What is the work location for this position at TOMORROW HIRE?
This job at TOMORROW HIRE is located in Richmond, VA, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at TOMORROW HIRE?
Candidates can expect a pay range of $104.77 (per hour).
What employment applies to this position at TOMORROW HIRE?
The employer has not provided this information. This may be discussed during the hiring process.
What experience level is required for this role at TOMORROW HIRE?
TOMORROW HIRE is looking for a candidate with "Senior-level" experience level.
What is the process to apply for this position at TOMORROW HIRE?
You can apply for this role at TOMORROW HIRE either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.