Haystack
← Back to Jobs
Technology

Sr. SIEM/Splunk Security Engineer

Masterapp LabsRichmond, VA🇺🇸United StatesPosted 4 Aug 2026

Quick Overview

Work Type
On Site
Level
Mid Senior

Job Description

Title: Sr. SIEM/Splunk Security Engineer
Location: Richmond, VA (Onsite)
Position Type: Contract
Interview Mode: In-person

Key Responsibilities

  • Threat Detection & Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.
  • Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.
  • Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.
  • Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.
  • Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
  • Compliance & Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards
Required/Desired Skills
Skill
Required /Desired
Amount
Actual Years of Experience
Minimum of 8+ years of hands-on experience in cybersecurity, specifically operating, building, and investigating threats within a SIEM or Splunk.
Required
8
 
Excellent critical thinking, problem-solving, and communication skills. Ability to operate calmly under pressure and manage multiple security tickets
Required
8
 
Proficiency in writing SPL (Splunk Processing Language)
Required
8
 
Strong understanding of networking, firewalls, EDR, and cloud platforms (AWS, Azure, or Google Cloud Platform).
Required
8
 
Knowledge of security frameworks (e.g., MITRE ATT&CK) and security compliance standards (e.g., NIST, HIPAA, or SOC 2).
Required
8
 
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
Required
 
 
Relevant certifications such as Splunk Core Certified User, Splunk Core Certified Advanced Power User, are highly preferred.
Highly desired
8
 

Skills

AWS
SOC 2
Splunk
Azure
Google Cloud
HIPAA

Similar jobs