Senior Cyber Threat Engineer

3 weeks ago


Rosslyn, United States Shift5 Full time

Our Values :

  • Embrace Truth and Integrity: Base decisions on data, foster open dialogue, and uphold unwavering integrity.
  • User-Centric Focus: Prioritize user needs to guide our actions and resource allocation.
  • Collaborative & Adaptable: Collaborate for excellence, learning from failures and driving iterative improvements, recognizing every decision's significance.

Shift5 is seeking an experienced and passionate Senior Cyber Threat Engineer to join our growing team. You will be working directly for Shift5 Labs, the vulnerability research team and threat experts of Shift5.  In this role your primary goal will be to understand exactly how cyber threat actors could attack operational technology (OT) systems (especially serial data networks and embedded OT devices) then work across Labs, Field, and Product teams to help us build cyber intrusion detection and prevention methodologies and rules. You will assess and emulate a wide variety of attackers - from casual script kiddies to nation states - and translate the techniques you used into technical signatures that can be built into Shift5 cybersecurity appliances. You will also work closely with our analysts to understand how malicious actors are operating today as well as predict future threats, then translate those threats into actionable technical specifics to support intrusion detection and prevention.

This position resides in our Research organization, whose purpose is to identify technical specifics of the current Operational Technology (OT) threat landscape. You will identify threats to serial and embedded systems and describe them in code. You’ll also work closely with our product developers, analysts, and customers to develop better defenses by helping to develop attack signatures and recommend product features. This position plays a crucial role in helping Shift5 defend critical national infrastructure, weapons platforms, and logistics by thinking like a malicious attacker.

We’re looking for someone with an insatiable appetite for learning who frequently explores ways to make the impossible possible. Someone who embraces uncertainty, thrives in the unknown, and views incomplete information as an opportunity. You should have a passion for breaking things, believe no system is impenetrable, and trust we can keep others safe by identifying and overcoming weaknesses in critical systems. You must own what you build and understand the responsibility that comes with building tools that could cause damage to real systems and people’s lives. If this sounds like you, drop us a line because we’d love to start a conversation.

Shift5 is a rapidly growing data and cybersecurity scale-up. We specialize in capturing and analyzing serial bus data in real time, providing anomaly detection and operational intelligence required to act. Our insights provide real-time alerting and historical trends to assure mission readiness and cyber survivability, and our innovative technology enables military systems to deter adversaries, protect warfighters, and maintain their competitive edge. We are a collaborative, passionate and driven cadre of cyber security experts. Our engineers are multidisciplinary, and our team is dynamic. We’re a growing company focused on helping our customer’s fleets run smarter and safer by capitalizing on mountains of data resting right about the wheels. Come join us.

In this role you will be expected to:

  • Work with hardware and software engineers from the point-of-view of a malicious attacker
  • Develop the rules, signatures, methods, and heuristics for Shift5 cybersecurity products designed to protect OT systems and serial networks.  Be prepared to dig into Python and C/C++ to write the code for the detection methods you develop.
  • Work with cross-functional teams to build out product features and capabilities related to Intrusion Detection and Prevention.  
  • Distinguish between malicious and benign traffic within large repositories of serial bus data.
  • Contribute to fundamental frameworks that describe types of threats to OT systems and provide a common language to share information about identified threats.
  • Effectively communicate technical information about cyber threats to both technical and non-technical audiences
  • Work directly with other Shift5 Labs members to produce cyber threat landscape reports and presentations
  • Collaborate with vulnerability researchers to develop detection methodologies for novel attacks against OT systems leveraging a wide range of exploitation techniques
  • Synthesize publicly available and proprietary threat information into meaningful technical details
  • Be ready to learn and be flexible. You’ll be engaged in a wide variety of work in support Shift5 priorities, which often change in a growing company
  • Work remotely, but be prepared to travel
  • Present findings to customers as needed

We're looking for someone who is/has:

  • BS or MS in Computer Science, Electrical Engineering, Computer Engineering, or equivalent
  • Experience in intrusion detection
  • Proficiency in software engineering principles using Python and C/C++
  • Familiarity with serial and embedded protocols such as MIL-STD-1553, ARINC 429, CAN, etc.
  • Experience with DevOps tools (git, gitlab runners, Conan C/C++ package managers, Linux operating systems, etc.)
  • Experience in embedded systems or serial networks
  • Experience in cyber security concepts or fields
  • Ability to efficiently multitask and accommodate change of priorities on demand
  • US Citizenship
  • Be able to obtain or hold a US Government Security Clearance
  • Protocol or firmware reverse engineering experience preferred, but not required
  • Penetration testing or red teaming experience preferred, but not required

Compensation & Benefits:

  • Competitive salary and stock options in a fast-growing startup
  • Employer-paid medical, dental and vision coverage
  • Health Savings Account with annual employer contributions
  • 401k with employer contributions
  • Life Insurance
  • Uncapped paid time off policy
  • Flexible work & remote work policy
  • Tax-deferred public transit benefits with Metro SmartBenefits (DC/MD/VA)

We are committed to building an inclusive culture of belonging that embraces the diversity of our people and represents the communities in which we work and the customers we serve. We know the happiest and highest performing teams include people with diverse perspectives and ways of solving problems. We strive to attract and retain talent from all backgrounds and create workplaces where everyone feels empowered to bring their full, authentic selves to work. 

Shift5 is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sexual orientation, gender identify, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class.

Privacy Policy and Notice for Shift5, Inc. Job Applicants, Employees & Contractors




  • Rosslyn, Virginia, United States Shift5 Full time

    Our Values :Embrace Truth and Integrity: Base decisions on data, foster open dialogue, and uphold unwavering integrity.User-Centric Focus: Prioritize user needs to guide our actions and resource allocation.Collaborative & Adaptable: Collaborate for excellence, learning from failures and driving iterative improvements, recognizing every decision's...

  • Senior Cyber Analyst

    1 month ago


    Rosslyn, United States Peraton Full time

    About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...

  • Cyber Intel Analyst

    1 week ago


    Rosslyn, United States Peraton Full time

    **About Peraton** **Responsibilities** Peraton is seeking a **Cyber Intelligence Analyst** to become part of Peratons' Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective, and secure business processes. **Location: Rosslyn, VA. Hybrid/Flexible...


  • Rosslyn, United States Peraton Full time

    **About Peraton** **Responsibilities** Peraton is looking for a **Mobile Forensic Analyst** in support of the Cyber Threat Analysis Division mission. **Location: Arlington, VA; Hybrid work schedule possible; **3 days per week on-site required after onboarding process is complete. The Cyber Threat Analysis Division (DS/CTI/CTAD) conducts digital evidence...

  • Data Analytics Lead

    2 weeks ago


    Rosslyn, United States Peraton Full time

    **About Peraton** **Responsibilities** Peraton is seeking a **Data Analytics Lead** who will become part of Peraton's Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective and secure business processes. Peraton's DSCM program encompasses...


  • Rosslyn, United States ALTA IT Services Full time

    Senior Network EngineerRosslyn, VA - onsiteTop Secret clearance is required$170-180K As Sr. Network Engineer, you’ll be experienced in supporting all areas of secure network technologies in a dynamic operational IT environment for our high-profile government customer, including maintenance, provisioning, and deployment functions. You will use network...


  • Rosslyn, United States Shift5 Full time

    Shift5 is a rapidly growing data and cybersecurity scale-up. We specialize in capturing and analyzing serial bus data in real time, providing anomaly detection and operational intelligence required to act. Our insights provide real-time alerting and historical trends to assure mission readiness and cyber survivability, and our innovative technology enables...


  • Rosslyn, United States All Native Group Full time

    Summary: The **Junior Identity Intelligence Specialist **shall provide analysis, research, assistance, training, and support for the vetting of local national employees and job applicants, as well as other individuals as needed, for Regional Security Offices at U.S. Embassies and Consulates worldwide. - Utilizes numerous databases, specialized tools, and...


  • Rosslyn, United States Quadrant Inc Full time

    Senior Network EngineerRosslyn, VAMUST:Active Top-Secret security clearance requiredExperienced Senior Network Engineer7+ years of experience with managing the provisioning, installation, and support of network communications, including LAN/WAN systems7+ years of hands-on experience doing Cisco network switches, routers, firewall technologiesUnderstanding of...


  • Rosslyn, Virginia, United States Quadrant Inc Full time

    Senior Network EngineerRosslyn, VAMUST:Active Top-Secret security clearance requiredExperienced Senior Network Engineer7+ years of experience with managing the provisioning, installation, and support of network communications, including LAN/WAN systems7+ years of hands-on experience doing Cisco network switches, routers, firewall technologiesUnderstanding of...

  • Field Engineer

    2 days ago


    Rosslyn, United States Shift5 Full time

    Shift5 is the observability platform for onboard operational technology (OT). We’re a rapidly growing scale-up that specializes in cybersecurity, predictive maintenance, and compliance for operational technology (OT) systems across Defense, aerospace, and rail. We are a collaborative, passionate, and driven cadre of dynamic, multidisciplinary experts and...

  • Field Engineer

    3 days ago


    Rosslyn, Virginia, United States Shift5 Full time

    Shift5 is the observability platform for onboard operational technology (OT). We're a rapidly growing scale-up that specializes in cybersecurity, predictive maintenance, and compliance for operational technology (OT) systems across Defense, aerospace, and rail. We are a collaborative, passionate, and driven cadre of dynamic, multidisciplinary experts and...


  • Rosslyn, United States All Native Group Full time

    Summary: The Identity Intelligence Analyst (Entry Level) shall assist with analysis, research, training, and support for the vetting of local national employees and job applicants, as well as other individuals as needed, for Regional Security Offices at U.S. Embassies and Consulates worldwide. - Assist with conducting analysis of biometric and biographic...


  • Rosslyn, United States Logically Full time

    **Rosslyn, VA** **Logically USA /** **Permanent /** **Hybrid** **About Logically** Founded in 2017, Logically combines artificial intelligence with expert analysts to tackle harmful and manipulative content at speed and scale. We work to reduce the individual, institutional, and societal damage caused by misleading and deceptive online discourse. In...


  • Rosslyn, United States Sekon Full time

    **SeK**ON** is looking for an **Information Systems Security Officer (ISSO)** to join our talented and innovative team supporting the **Defense Healthcare Management Systems Modernization (DHMSM)** and its program offices. This role is 100% remote. With over 25 years of experience, **SeK**ON** specializes in providing large-scale health IT programs in...

  • Senior Test Manager

    24 hours ago


    Rosslyn, United States Sekon Full time

    Job DescriptionJob DescriptionSalary: SeKON is looking for a Senior Test Manager to join our talented and innovative team supporting the Defense Health Agency (DHA) and its program offices. We are looking for a Senior Test Manager to help with overseeing and supporting the testing & evaluation (T&E) platform, including both program management and execution....

  • Service Desk

    7 days ago


    Rosslyn, United States ActioNet Full time

    ActioNet is looking for a Service Desk* First Shift* (6am - 3pm) with an **Active Secret Clearance** for a National Security Program, located in **Rosslyn, Virginia.** ActioNet is an IT service provider and solutions integrator headquartered in Vienna, VA that works with the Federal Government and Department of Defense.**Responsibilities* - Under general...


  • Rosslyn, United States Sekon Full time

    Job DescriptionJob DescriptionSalary: SeKON is looking for an Information Systems Security Officer (ISSO) to join our talented and innovative team supporting the Defense Healthcare Management Systems Modernization (DHMSM) and its program offices. This role is 100% remote.  With over 25 years of experience, SeKON specializes in providing large-scale health...


  • Rosslyn, VA, United States ActioNet Full time

    DescriptionActioNet is looking for a Sr. Network Engineer (with VOIP) eligible for a SECRET Clearance for a Program located in Rosslyn, VA (on-site).  Summary: You would be responsible for deploying a variety of network infrastructure equipment, working with telecommunications carriers, provisioning connectivity into client offices, and...


  • Rosslyn, United States ActioNet Full time

    ActioNet is looking for a **Server/ Desktop Administrator (Top Secret Clearance) **that is passionate about working in a sophisticated technology environment ensuring customer satisfaction in a fast paced and dynamic environment. If you want to join a company that values customer service in IT systems and are open to commuting to Rosslyn, VA we want you to...