- Company Name
- TekSynap
- Job Title
- Cybersecurity Engineer
- Job Description
-
Job title: Cybersecurity Engineer
Role Summary: Focus on Information Assurance (IA) and cybersecurity engineering, applying systematic approaches to enhance system security and workflow. Support system lifecycle stages, analyze threat intelligence, and collaborate on Splunk integration for threat detection.
Expectations:
- Minimum 7 years IT experience in cybersecurity engineering and security operations.
- Demonstrated experience creating Splunk dashboards using threat data.
- Proven integration of Splunk Core and Splunk Enterprise Security (ES) in enterprise environments.
- Must possess Secret clearance with eligibility for IT-I (Tier 5/SSBI) Critical-Sensitive clearance.
Key Responsibilities:
- Analyze security requirements and apply systematic methods to improve workflow.
- Provide engineering support throughout system lifecycle stages (design, testing, integration).
- Analyze threat intelligence and security event data from logs, IDS, reports, and vendor sources to mitigate risks.
- Develop Splunk ES dashboards to highlight high-priority threats for incident response teams.
- Administer Splunk ES infrastructure, perform upgrades, maintenance, and daily operations.
- Optimize ES rules, reports, and use cases for threat detection and situational awareness.
- Provide expert analysis aligned with CERT Incident Handler (IH) and Information Assurance Manager (IAM) roles.
- Manage Splunk Enterprise Log Management (ELM) components (install, configure, troubleshoot).
- Collaborate with cybersecurity and engineering teams to ensure Splunk Core/ES integration and performance.
Required Skills:
Splunk Enterprise Security (ES), threat detection and mitigation, Linux +, Splunk administration, IT security frameworks, incident analysis, system lifecycle management, threat intelligence analysis, data visualization, log management (ELM).
Required Education & Certifications:
DoD 8570/8140 CND-IS certification (e.g., CEH, CFR, GCIA, GCIH), DoD-approved Category IAT Level III certification, Linux +, Splunk Administrator certification, CompTIA CASP+ CE, GIAC certifications (GCED, GCIH), CISSP/Associate, CISA, CCNP Security, CCSP.