Senior Cyber Threat Engineer

1 month ago


Rosslyn, Virginia, United States Shift5 Full time

Our Values :

  • Embrace Truth and Integrity: Base decisions on data, foster open dialogue, and uphold unwavering integrity.
  • User-Centric Focus: Prioritize user needs to guide our actions and resource allocation.
  • Collaborative & Adaptable: Collaborate for excellence, learning from failures and driving iterative improvements, recognizing every decision's significance.

Shift5 is seeking an experienced and passionate Senior Cyber Threat Engineer to join our growing team. You will be working directly for Shift5 Labs, the vulnerability research team and threat experts of Shift5. In this role your primary goal will be to understand exactly how cyber threat actors could attack operational technology (OT) systems (especially serial data networks and embedded OT devices) then work across Labs, Field, and Product teams to help us build cyber intrusion detection and prevention methodologies and rules. You will assess and emulate a wide variety of attackers - from casual script kiddies to nation states - and translate the techniques you used into technical signatures that can be built into Shift5 cybersecurity appliances. You will also work closely with our analysts to understand how malicious actors are operating today as well as predict future threats, then translate those threats into actionable technical specifics to support intrusion detection and prevention.

This position resides in our Research organization, whose purpose is to identify technical specifics of the current Operational Technology (OT) threat landscape. You will identify threats to serial and embedded systems and describe them in code. You'll also work closely with our product developers, analysts, and customers to develop better defenses by helping to develop attack signatures and recommend product features. This position plays a crucial role in helping Shift5 defend critical national infrastructure, weapons platforms, and logistics by thinking like a malicious attacker.

We're looking for someone with an insatiable appetite for learning who frequently explores ways to make the impossible possible. Someone who embraces uncertainty, thrives in the unknown, and views incomplete information as an opportunity. You should have a passion for breaking things, believe no system is impenetrable, and trust we can keep others safe by identifying and overcoming weaknesses in critical systems. You must own what you build and understand the responsibility that comes with building tools that could cause damage to real systems and people's lives. If this sounds like you, drop us a line because we'd love to start a conversation.

Shift5 is a rapidly growing data and cybersecurity scale-up. We specialize in capturing and analyzing serial bus data in real time, providing anomaly detection and operational intelligence required to act. Our insights provide real-time alerting and historical trends to assure mission readiness and cyber survivability, and our innovative technology enables military systems to deter adversaries, protect warfighters, and maintain their competitive edge. We are a collaborative, passionate and driven cadre of cyber security experts. Our engineers are multidisciplinary, and our team is dynamic. We're a growing company focused on helping our customer's fleets run smarter and safer by capitalizing on mountains of data resting right about the wheels. Come join us.

In this role you will be expected to:

  • Work with hardware and software engineers from the point-of-view of a malicious attacker
  • Develop the rules, signatures, methods, and heuristics for Shift5 cybersecurity products designed to protect OT systems and serial networks. Be prepared to dig into Python and C/C++ to write the code for the detection methods you develop.
  • Work with cross-functional teams to build out product features and capabilities related to Intrusion Detection and Prevention.
  • Distinguish between malicious and benign traffic within large repositories of serial bus data.
  • Contribute to fundamental frameworks that describe types of threats to OT systems and provide a common language to share information about identified threats.
  • Effectively communicate technical information about cyber threats to both technical and non-technical audiences
  • Work directly with other Shift5 Labs members to produce cyber threat landscape reports and presentations
  • Collaborate with vulnerability researchers to develop detection methodologies for novel attacks against OT systems leveraging a wide range of exploitation techniques
  • Synthesize publicly available and proprietary threat information into meaningful technical details
  • Be ready to learn and be flexible. You'll be engaged in a wide variety of work in support Shift5 priorities, which often change in a growing company
  • Work remotely, but be prepared to travel
  • Present findings to customers as needed

We're looking for someone who is/has:

  • BS or MS in Computer Science, Electrical Engineering, Computer Engineering, or equivalent
  • Experience in intrusion detection
  • Proficiency in software engineering principles using Python and C/C++
  • Familiarity with serial and embedded protocols such as MIL-STD-1553, ARINC 429, CAN, etc.
  • Experience with DevOps tools (git, gitlab runners, Conan C/C++ package managers, Linux operating systems, etc.)
  • Experience in embedded systems or serial networks
  • Experience in cyber security concepts or fields
  • Ability to efficiently multitask and accommodate change of priorities on demand
  • US Citizenship
  • Be able to obtain or hold a US Government Security Clearance
  • Protocol or firmware reverse engineering experience preferred, but not required
  • Penetration testing or red teaming experience preferred, but not required

Compensation & Benefits:

  • Competitive salary and stock options in a fast-growing startup
  • Employer-paid medical, dental and vision coverage
  • Health Savings Account with annual employer contributions
  • 401k with employer contributions
  • Life Insurance
  • Uncapped paid time off policy
  • Flexible work & remote work policy
  • Tax-deferred public transit benefits with Metro SmartBenefits (DC/MD/VA)

We are committed to building an inclusive culture of belonging that embraces the diversity of our people and represents the communities in which we work and the customers we serve. We know the happiest and highest performing teams include people with diverse perspectives and ways of solving problems. We strive to attract and retain talent from all backgrounds and create workplaces where everyone feels empowered to bring their full, authentic selves to work.

Shift5 is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sexual orientation, gender identify, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class.


Privacy Policy and Notice for Shift5, Inc. Job Applicants, Employees & Contractors



  • Rosslyn, Virginia, United States Quadrant Inc Full time

    Senior Network EngineerRosslyn, VAMUST:Active Top-Secret security clearance requiredExperienced Senior Network Engineer7+ years of experience with managing the provisioning, installation, and support of network communications, including LAN/WAN systems7+ years of hands-on experience doing Cisco network switches, routers, firewall technologiesUnderstanding of...


  • Rosslyn, Virginia, United States Quadrant Inc Full time

    Senior Network EngineerRosslyn, VAMUST:Active Top-Secret security clearance requiredExperienced Senior Network Engineer7+ years of experience with managing the provisioning, installation, and support of network communications, including LAN/WAN systems7+ years of hands-on experience doing Cisco network switches, routers, firewall technologiesUnderstanding of...

  • Field Engineer

    1 week ago


    Rosslyn, Virginia, United States Shift5 Full time

    Shift5 is the observability platform for onboard operational technology (OT). We're a rapidly growing scale-up that specializes in cybersecurity, predictive maintenance, and compliance for operational technology (OT) systems across Defense, aerospace, and rail. We are a collaborative, passionate, and driven cadre of dynamic, multidisciplinary experts and...

  • Field Engineer

    2 days ago


    Rosslyn, Virginia, United States Shift5 Full time

    Shift5 is the observability platform for onboard operational technology (OT). We're a rapidly growing scale-up that specializes in cybersecurity, predictive maintenance, and compliance for operational technology (OT) systems across Defense, aerospace, and rail. We are a collaborative, passionate, and driven cadre of dynamic, multidisciplinary experts and...


  • Rosslyn, Virginia, United States tapwage Full time

    Position SummaryIn this age of disruption, organizations need to navigate the future with confidence by tapping into the power of data analytics, robotics, and cognitive technologies such as Artificial Intelligence (AI). Our Strategy & Analytics portfolio helps clients leverage rigorous analytical capabilities and a pragmatic mindset to solve the most...


  • Rosslyn, Virginia, United States tapwage Full time

    Position SummaryIn this age of disruption, organizations need to navigate the future with confidence by tapping into the power of data analytics, robotics, and cognitive technologies such as Artificial Intelligence (AI). Our Strategy & Analytics portfolio helps clients leverage rigorous analytical capabilities and a pragmatic mindset to solve the most...

  • Senior Cyber Analyst

    2 months ago


    Rosslyn, United States Peraton Full time

    About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our...

  • Cyber Intel Analyst

    2 weeks ago


    Rosslyn, United States Peraton Full time

    **About Peraton** **Responsibilities** Peraton is seeking a **Cyber Intelligence Analyst** to become part of Peratons' Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective, and secure business processes. **Location: Rosslyn, VA. Hybrid/Flexible...


  • Rosslyn, United States Shift5 Full time

    Our Values : Embrace Truth and Integrity: Base decisions on data, foster open dialogue, and uphold unwavering integrity. User-Centric Focus: Prioritize user needs to guide our actions and resource allocation. Collaborative & Adaptable: Collaborate for excellence, learning from failures and driving iterative improvements, recognizing every decision's...


  • Rosslyn, United States Shift5 Full time

    Our Values : Embrace Truth and Integrity: Base decisions on data, foster open dialogue, and uphold unwavering integrity. User-Centric Focus: Prioritize user needs to guide our actions and resource allocation. Collaborative & Adaptable: Collaborate for excellence, learning from failures and driving iterative improvements, recognizing every decision's...

  • Cti Team Lead

    1 day ago


    Rosslyn, United States Veterans Enterprise Technology Solutions Full time

    Overview: Staffing Pros, a division of VETS Inc., is recruiting for a full-time CTI Team Lead. This is a Hybrid position located in Rosslyn, VA rotating every other week - 3 days onsite and 2 days remote/2 days onsite and 3 days remote. Must work onsite for the first 90 days. An Active Top Secret Clearance is required for this role. **Responsibilities**: -...


  • Rosslyn, United States Peraton Full time

    **About Peraton** **Responsibilities** Peraton is looking for a **Mobile Forensic Analyst** in support of the Cyber Threat Analysis Division mission. **Location: Arlington, VA; Hybrid work schedule possible; **3 days per week on-site required after onboarding process is complete. The Cyber Threat Analysis Division (DS/CTI/CTAD) conducts digital evidence...

  • Data Analytics Lead

    2 weeks ago


    Rosslyn, United States Peraton Full time

    **About Peraton** **Responsibilities** Peraton is seeking a **Data Analytics Lead** who will become part of Peraton's Department of State (DoS) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective and secure business processes. Peraton's DSCM program encompasses...

  • CTI Analyst

    6 days ago


    Rosslyn, United States Experis Full time

    One of our premier clients is seeking a CTI Analyst for their growing team. This is a 100% REMOTE opportunity! Candidate MUST be a US Citizen per our client , also MUST have or be eligible to obtain a security clearance. Description: 6+ years of CTI Analyst experience Description: Maintain in-depth knowledge of current cyber threats, threat actors, and...


  • Rosslyn, United States ALTA IT Services Full time

    Senior Network EngineerRosslyn, VA - onsiteTop Secret clearance is required$170-180K As Sr. Network Engineer, you’ll be experienced in supporting all areas of secure network technologies in a dynamic operational IT environment for our high-profile government customer, including maintenance, provisioning, and deployment functions. You will use network...


  • Rosslyn, United States Shift5 Full time

    Shift5 is a rapidly growing data and cybersecurity scale-up. We specialize in capturing and analyzing serial bus data in real time, providing anomaly detection and operational intelligence required to act. Our insights provide real-time alerting and historical trends to assure mission readiness and cyber survivability, and our innovative technology enables...

  • AWS Cloud Engineer

    6 days ago


    Rosslyn, United States Experis Full time

    One of our premier clients is seeking a AWS Cloud Engineer for their growing team. This is a 100% REMOTE opportunity! Candidate MUST be a US Citizen per our client , also MUST have or be eligible to obtain a security clearance. Description: Utilize threat intelligence platforms and tools to proactively identify and assess potential risks. Required: 5+...


  • Rosslyn, United States Quadrant Inc Full time

    Senior Network EngineerRosslyn, VAMUST:Active Top-Secret security clearance requiredExperienced Senior Network Engineer7+ years of experience with managing the provisioning, installation, and support of network communications, including LAN/WAN systems7+ years of hands-on experience doing Cisco network switches, routers, firewall technologiesUnderstanding of...


  • Rosslyn, United States All Native Group Full time

    Summary: The **Junior Identity Intelligence Specialist **shall provide analysis, research, assistance, training, and support for the vetting of local national employees and job applicants, as well as other individuals as needed, for Regional Security Offices at U.S. Embassies and Consulates worldwide. - Utilizes numerous databases, specialized tools, and...

  • Field Engineer

    1 week ago


    Rosslyn, United States Shift5 Full time

    Shift5 is the observability platform for onboard operational technology (OT). We’re a rapidly growing scale-up that specializes in cybersecurity, predictive maintenance, and compliance for operational technology (OT) systems across Defense, aerospace, and rail. We are a collaborative, passionate, and driven cadre of dynamic, multidisciplinary experts and...

  • Field Engineer

    2 days ago


    Rosslyn, United States Shift5 Full time

    Shift5 is the observability platform for onboard operational technology (OT). We’re a rapidly growing scale-up that specializes in cybersecurity, predictive maintenance, and compliance for operational technology (OT) systems across Defense, aerospace, and rail. We are a collaborative, passionate, and driven cadre of dynamic, multidisciplinary experts and...


  • Rosslyn, United States All Native Group Full time

    Summary: The Identity Intelligence Analyst (Entry Level) shall assist with analysis, research, training, and support for the vetting of local national employees and job applicants, as well as other individuals as needed, for Regional Security Offices at U.S. Embassies and Consulates worldwide. - Assist with conducting analysis of biometric and biographic...


  • Rosslyn, United States Logically Full time

    **Rosslyn, VA** **Logically USA /** **Permanent /** **Hybrid** **About Logically** Founded in 2017, Logically combines artificial intelligence with expert analysts to tackle harmful and manipulative content at speed and scale. We work to reduce the individual, institutional, and societal damage caused by misleading and deceptive online discourse. In...


  • Rosslyn, United States Sekon Full time

    **SeK**ON** is looking for an **Information Systems Security Officer (ISSO)** to join our talented and innovative team supporting the **Defense Healthcare Management Systems Modernization (DHMSM)** and its program offices. This role is 100% remote. With over 25 years of experience, **SeK**ON** specializes in providing large-scale health IT programs in...

  • Senior Test Manager

    7 days ago


    Rosslyn, United States Sekon Full time

    Job DescriptionJob DescriptionSalary: SeKON is looking for a Senior Test Manager to join our talented and innovative team supporting the Defense Health Agency (DHA) and its program offices. We are looking for a Senior Test Manager to help with overseeing and supporting the testing & evaluation (T&E) platform, including both program management and execution....

  • Senior Test Manager

    23 hours ago


    Rosslyn, United States Sekon Full time

    Job DescriptionJob DescriptionSalary: SeKON is looking for a Senior Test Manager to join our talented and innovative team supporting the Defense Health Agency (DHA) and its program offices. We are looking for a Senior Test Manager to help with overseeing and supporting the testing & evaluation (T&E) platform, including both program management and execution....