DataStaff, Inc. is seeking a Cybersecurity Engineer for a long-term contract opportunity with one of our direct clients in Richmond, VA.
*This position is onsite
Job Description: The Cybersecurity Engineer develops and implements advanced cyber defense solutions for the agency, safeguards the infrastructure, and assures that the system is built to specification and is deployed successfully.
We are seeking a highly analytical and technically proficient Cybersecurity Engineer supporting Splunk SIEM. You will play a critical role in defending our organization against cyber threats by leveraging Splunk Enterprise Security to monitor, detect, analyze, and respond to security events. The ideal candidate has strong expertise in log analysis, threat hunting, and writing Splunk queries to identify and contain malicious activity.
Responsibilities:
Threat Detection & Monitoring: Continuously monitor network traffic, endpoint logs, and cloud security events for anomalous behavior and potential security incidents.
Splunk Management: Create, maintain, and tune Splunk correlation searches, alerts, and dashboards to minimize false positives and improve detection capabilities.
Incident Response: Investigate potential security incidents, follow forensic evidence, and collaborate with IT and network teams to remediate threats.
Use Case Development: Develop and refine detection and response playbooks based on threat intelligence and frameworks like MITRE ATT&CK.
Log Integration: Work with infrastructure teams to onboard new data sources, ensuring log integrity, parsing, and normalization across the SIEM platform.
Compliance & Reporting: Support audit readiness by collecting SIEM control evidence and generating compliance reports aligned with internal policies and standards
Required Skills:
8 Years - Hands-on experience in cybersecurity, specifically operating, building, and investigating threats within a SIEM or Splunk.
8 Years - Excellent critical thinking, problem-solving, and communication skills. Ability to operate calmly under pressure and manage multiple security tickets.
8 Years - Proficiency in writing SPL (Splunk Processing Language).
8 Years - Strong understanding of networking, firewalls, EDR, and cloud platforms (AWS, Azure, or GCP).
8 Years - Knowledge of security frameworks (e.g., MITRE ATT&CK) and security compliance standards (e.g., NIST, HIPAA, or SOC 2).
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
Desired Skill:
8 Years - Relevant certifications such as Splunk Core Certified User, Splunk Core Certified Advanced Power User, are highly preferred.
This opportunity is available on a corp-to-corp basis or as a W2 position with a competitive benefits package. DataStaff, Inc. offers medical, dental, and vision coverage options as well as paid vacation, sick, and holiday leave. As many of our opportunities are long-term, we also have a 401k program available for employees after 6 months.
Senior Network Security Engineer
Location:Mechanicsville, Virginia
Remote:Hybrid
Type:Contract
Job#12420
DataStaff, Inc. is seeking a Senior Network Security Engineer for a long-term contract opportunity with one of our direct clients in the Richmond, VA area.
*This position is hybrid Job Description: Our client is seeking an experienced Sr Network Security Engineer (Sr NSE) to implement and support the agency’s IT network, cloud, and computing infrastructure. The Sr NSE performs day-to-day activities related to securing, documenting, performing research, analysis, design, and implementation of client’s network and computing related infrastructure. The Sr NSE will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of client’s network infrastructure. Key Responsibilities:
Ensures network security architecture aligns with operational security standards prior to and after deployment.
Lead investigation and containment of network security incidents.
Review firewall rule requests and ensure compliance with security standards.
Design and maintain secure hybrid network architecture across on-premises and Azure environments.
Monitor security events using SIEM technologies and coordinate incident response activities.
Perform network security assessments and recommend remediation strategies.
Develop and maintain network security standards, diagrams, and operational documentation.
Support penetration testing and remediation efforts.
Participate in on-call support during critical security incidents.
Responsible for conducting proactive threat hunting and anomaly detection.
Validates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).
Identifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment.
Identifies, prioritizes, and remediates network security vulnerabilities.
Must have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required.
Must have the ability to work independently on assigned projects.
Required Skills:
8 Years - Enterprise Networking
5 Years - Enterprise Security
3 Years - Azure Networking
3 Years - WAF/NGFW
Candidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitor
Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel).
Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable)
Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, Certificates.
Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principles.
Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACS.
Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IP.
Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outages
Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers
Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700)
Desired Skill:
3 Years - Supporting environments with 300+ Network Devices
This opportunity is available on a corp-to-corp basis or as a W2 position with a competitive benefits package. DataStaff, Inc. offers medical, dental, and vision coverage options as well as paid vacation, sick, and holiday leave. As many of our opportunities are long-term, we also have a 401k program available for employees after 6 months.
Inventory Specialist
Location:Raleigh, North Carolina
Type:Contract
Job#12416
DataStaff, Inc. is seeking an Inventory Specialist for a long-term contract opportunity with one of our direct clients in Raleigh, NC
*This position is onsite
Job Description: Our client is seeking an analyst with basic technical knowledge of Physical Security and IT systems that align together and the ability to create programs and procedures that are aligned with the Facilities Access Control System (FACS) programs/initiatives.
Responsibilities:
Support duties consistent with documenting and coordinating activities with respect to inventory management, operating and familiarity with the Genetec software and all system components deployed (FACS) for Physical Security.
Manage, process, and account for all equipment, devices, material, and parts associated with the implementation for buildings and facilities.
Work directly with the Distribution Center staff and keep them apprised of pending orders.
Perform semi-annual inventory assessments to ensure all devices, equipment, and material are properly accounted for.
Submit assessment report to Security Management for review.
Manage the safety stock requirements.
Scheduled reports (weekly/monthly, etc.) shall be generated and submitted to Security Management indicating the following:
Material received during report term (inbound)
Material picked up for surplus report term (outbound)
Material returned to manufacturer (RMA) report term (outbound)
Material returned to inventory from manufacturer (RMA) report term (inbound)
Material issued to security vendor for incidents or installation report terms (outbound)
Current inventory levels by part number
Material shall be invoiced upon arrival.
Manage the coordination and verification of scheduled PMs.
Identify which devices are coming to the end of life and arrange for replacement.
Manage the badging supplies and be responsible for restocking.
Manage the quotes and invoices that are related to inventory.
Responsible for the surplus process and shall adhere to the Surplus procedures.
Ensure all retired servers are discarded in accordance with the Information Security Office procedures.
Support the Security Operations Center (SOC) with basic system configurations.
Assist the SOC team and vendor partner with troubleshooting installation and operating issues.
Perform monthly device testing of selected buildings and facilities, documents, and secure them.
Assist in the creation of document(s) which detail the information and design of new building construction, new implementation, and requests for additional device(s).
Manage all situations when devices are scheduled for removal because of building alterations, replacement, temporary removal, factory recall, or other reasons. This position shall brief IT-EMS when these situations occur.
Must have the ability to submit incidents, request and track all in accordance with standards established by IT-EMS.
Required Skills:
3 Years - Equivalent experience or at least three years of holding a physical security background with knowledge of security systems.
3 Years - Experience with troubleshooting security devices, including an understanding of the Security Genetec platform and associated software.
3 Years - Experience with installation and service of video surveillance equipment, IP cameras and card readers.
3 Years - Ability to create and maintain required documentation. This includes documenting the arrival of new devices and equipment and placing them in their proper location.
3 Years - Working knowledge of office applications (i.e., MS Excel, MS Word, MS Outlook, Visio, and PowerPoint)
3 Years - Working knowledge of the ServiceNow platform and associated software.
3 Years - Written and verbal communications are clear, concise, and able to achieve intended objectives.
3 Years - Problem-solving skills with the ability to determine root/cause, for late deliveries, unaccounted-for devices and equipment.
3 Years - Able to construct new policies and procedures as it relates to assigned duties and responsibilities.
This opportunity is available as a W2 position with a competitive benefits package. DataStaff, Inc. offers medical, dental, and vision coverage options as well as paid vacation, sick, and holiday leave. As many of our opportunities are long-term, we also have a 401k program available for employees after 6 months.