Skip to content

Open nowPosted 12 days ago

Cybersecurity Engineer 3

Workable (global search)108,016 open roles

Where
Richmond, VA, United States
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowCybersecurity Engineer 3Workable (global search) · Richmond, VA, United States
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 12 days ago

Workable (global search) median: 7 days open

The posting

Job Title: Cybersecurity Engineer 3 Work Type: Onsite Location: Richmond, VA 23219 Salary/Rate: Up to $104.77/hr Start Date: 09/28/2026 End Date: 06/30/2027 Industry Category: Information Technology / Cybersecurity Employment Type: Contract Requisition ID: 811203

Overview:

The Virginia Department of Transportation (VDOT) is seeking a highly analytical and technically proficient Cybersecurity Engineer 3 to support cybersecurity operations and Splunk SIEM capabilities.

The position will develop and implement advanced cyber defense solutions, protect agency infrastructure, monitor and analyze security events, investigate threats, and support secure system deployment.

Application:

Candidates should have extensive hands-on experience with cybersecurity operations, Splunk SIEM, SPL, threat detection, log analysis, incident investigation, and threat hunting.

Strong knowledge of networking, firewalls, EDR, cloud platforms, security frameworks, and compliance standards is also required.

Job Description:

The Cybersecurity Engineer will leverage Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The role will focus on improving detection capabilities, investigating potential security incidents, developing security use cases, maintaining SIEM data sources, and supporting cybersecurity compliance requirements.

Responsibilities:

  • Monitor network traffic, endpoint logs, and cloud security events for anomalous activity and potential security incidents.
  • Use Splunk Enterprise Security to monitor, detect, analyze, and respond to security events.
  • Create, maintain, and tune Splunk correlation searches, alerts, and dashboards.
  • Develop and optimize SPL queries for security monitoring, threat detection, and investigation.
  • Investigate potential security incidents and analyze forensic evidence.
  • Conduct threat hunting to identify malicious activity and indicators of compromise.
  • Collaborate with IT, network, infrastructure, and security teams to contain and remediate threats.
  • Develop and refine security detection and response use cases.
  • Create detection and response playbooks using threat intelligence and security frameworks such as MITRE ATT&CK.
  • Work with infrastructure teams to onboard new log and security data sources.
  • Ensure log integrity, parsing, and normalization across the SIEM platform.
  • Support SIEM data integrations and troubleshooting.
  • Collect SIEM control evidence for security audits.
  • Generate compliance and security reports aligned with organizational policies and standards.
  • Manage multiple security tickets and investigations while maintaining effective communication with stakeholders.

Requirements

Minimum Qualifications:

  • 8+ years of hands-on cybersecurity experience, specifically operating, building, and investigating threats within a SIEM or Splunk environment.
  • 8+ years of experience writing SPL (Splunk Processing Language).
  • 8+ years of experience demonstrating critical thinking, problem-solving, and communication skills.
  • Ability to operate calmly under pressure and manage multiple security tickets.
  • 8+ years of experience with networking and firewalls.
  • 8+ years of experience with EDR technologies.
  • 8+ years of experience with cloud platforms, including AWS, Azure, and/or GCP.
  • 8+ years of experience with security frameworks such as MITRE ATT&CK.
  • 8+ years of experience with security compliance standards such as NIST, HIPAA, and/or SOC 2.
  • Strong experience with log analysis, threat hunting, security monitoring, and incident investigation.
  • Strong understanding of SIEM technologies and security event management.
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.

Preferred Qualifications:

  • Splunk Core Certified User certification.
  • Splunk Core Certified Advanced Power User certification.
  • Additional Splunk or cybersecurity certifications.
  • Experience developing Splunk Enterprise Security dashboards, correlation searches, and alerts.
  • Experience developing security detection and response playbooks.
  • Experience applying threat intelligence and MITRE ATT&CK-based detection strategies.

Benefits

Compensation:

Pay Rate: $104.77/hr

Schedule:

Onsite

Work Location:

Richmond, VA 23219

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.