Detection Engineer- Secret Cleared

4 weeks ago


Ashburn, United States Federal Staffing Solutions Inc. Full time
Job DescriptionJob Description

We connect our employees with some of the best opportunities around.

Time and time again, our employees tell us that the most important thing we offer is respect. Federal Staffing Solutions puts people to work in all types of jobs. When you work with us, you build a relationship with a team of employment professionals in your community who have, in turn, built personal relationships with the businesses that are hiring.

We are looking for a Threat Detection Engineer to work onsite in Ashburn, VA supporting our client.


The Threat Detection Engineer shall have the following qualifications:

  • In-depth knowledge of Firewalls/Proxies/Intrusion Detection Systems/ Domain Name Servers/DHCP/VPN and other network technologies and tools
  • Experience updating, maintaining, and creating IDS variables within a complex enterprise network
  • Expert in creating, modifying, tuning IDS signatures/SIEM Correlation Searches/yara rules and/or other detection signatures
  • Familiarity with disk based forensic methodologies, Windows, and Linux forensic artifacts
  • Experience with Endpoint Detection and Response (EDR) tools such as Carbon Black, Tanium, Crowdstrike, etc
  • Able to create, modify, update, and maintain Python and Powershell scripts that enhance endpoint detection capabilities
  • In-depth knowledge of attacker tactics, techniques, and procedures
  • Author, test, and maintain automation scripts within SOAR platform
  • The candidate must currently possess a Secret Clearance.

Additional Qualifications:

In addition to clearance requirement, all personnel must have a current or be able to favorably pass a 5 year background investigation (BI).

  • BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience.
  • Should have 5 years of experience serving as a digital media analyst or as a computer forensic analyst.
  • Ability to work independently with minimal direction; self-starter/self-motivated
  • Must have one of the following:
    • CCFP – Certified Cyber Forensics Professional
    • CHFI – Computer Hacking Forensic Investigator
    • CISSP – Certified Information Systems Security
    • ECSA – EC-Council Certified Security Analyst
    • EnCE GCFA – Forensic Analyst
    • GCFE – Forensic Examiner
    • GCIH – Incident Handler
    • GISF – Security Fundamentals
    • GREM – Reverse Engineering Malware
    • GXPN – Exploit Researcher and Advanced Penetration Tester
    • LPT – Licensed Penetration Tester
    • OSCE (Certified Expert)
    • OSCP (Certified Professional)
    • OSEE (Exploitation Expert)
    • OSWP (Wireless Professional)
    • CIRC
    • FIWE
    • WFE-E-CI
    • FTK-WFE-FTK

Preferred Qualifications:

  • One of the following certifications:
    • SANS Global Information Assurance Certification (GIAC)
    • Certified Intrusion Analyst (GCIA) SANS
    • Global Information Assurance Certification (GIAC)
    • Certified Forensic Analyst (GCFA) SANS
    • Global Information Assurance Certification (GIAC)
    • Certified Network Forensic Analyst (GNFA)
    • Certified Information System Security Professional (CISSP)

Essential Requirements:

  • US Citizenship is required.
  • Active secret clearance.

Job Duties:

  • Identify gaps in malicious activity detection capabilities
  • Create new signatures / rules to improve detection of malicious activity
  • Test and tune existing signatures / rules to ensure low rate of false positives
  • Assist in playbook development for alert triage and Incident Response
  • Define and implement alert and threat detection metrics, statistics, and analytics
  • Recommend new tools/technologies to improve network visibility
  • Support Incident Response and Forensic operations as required to include static/dynamic malware analysis and reverse engineering
  • Author and maintain scripts for threat detection and automation


Equal Opportunity Employer






  • Ashburn, United States CareerBuilder Full time

    BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media Primary Responsibilities Identify gaps in malicious activity detection capabilities Create new...


  • Ashburn, United States Agile Defense Full time

    Agile Defense We are in the business of innovation through information technology and cybersecurity, delivered exceptionally. View company page Agile Defense provides leading-edge Digital Transformation solutions to support and advance our customers' mission. We deliver innovative and high-quality services to our customers worldwide through an empowered and...

  • Penetration Tester

    4 days ago


    Ashburn, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is looking for a Penetration Tester to support Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) which is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security...


  • Ashburn, United States Base One Technologies Full time

    The Engineer will be leading critical SOC engineering projects including projects such as launching applications into the AWS Cloud, Splunk logging, and SIEM implementation, etc. The Project Engineer will need to work with the customer to prioritize operational issues, engineering activities, and development efforts, and drive the schedule to completion....


  • Ashburn, United States Gray Tier Technologies LLC Full time

    Department of Homeland Security (DHS), Enterprise Security Operations Center (ESOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents...


  • Ashburn, United States Gray Tier Technologies Full time

    Department of Homeland Security (DHS), Enterprise Security Operations Center (ESOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise.  The DHS SOC has primary responsibility for monitoring and responding to security events and incidents...


  • Ashburn, United States Gray Tier Technologies LLC Full time

    Department of Homeland Security (DHS), Enterprise Security Operations Center (ESOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. The DHS SOC has primary responsibility for monitoring and responding to security events and incidents...


  • Ashburn, United States Shuvel Digital Full time

    Job Description: Our client is looking for a Senior Operations and Maintenance Systems Engineer with strong systems and software experience to support a complex DHS effort. Primary Responsibilities: Troubleshoot application production problems and provide solutions promptly. Manage logs and produce scripts to automate log reporting and analysis. Supporting...


  • Ashburn, United States Shuvel Digital Full time

    Job Description: Our client is looking for a Senior Operations and Maintenance Systems Engineer with strong systems and software experience to support a complex DHS effort. Primary Responsibilities: Troubleshoot application production problems and provide solutions promptly. Manage logs and produce scripts to automate log reporting and analysis. Supporting...


  • Ashburn, United States SAIC Full time

    Job ID: 2406774-ASHBURN-VA **Location**:ASHBURN, VA, US **Date Posted**:2024-05-14 **Category**:Engineering and Sciences **Subcategory**:Systems Engineer **Schedule**:Full-time **Shift**:Day Job **Travel**:No **Minimum Clearance Required**:Top Secret **Clearance Level Must Be Able to Obtain**:TS/SCI **Potential for Remote...


  • Ashburn, United States Anonymous Employer Full time

    Primary Responsibilities • Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies. • Perform web app pentests • Perform vulnerability risk assessment • Perform physical pentests and social engineering • Perform cyber incident response as needed for programs Basic Qualifications Bachelors'...


  • Ashburn, United States Shuvel Digital Full time

    Location: Ashburn VA Work Schedule: 100% Remote Clearance: DoD TS or CBP BI Client: DHS/CBP Must have Skills: 2+ years of experience designing, modifying, developing, writing, and implementing software programming applications 2+ years of software development experience with basic programming languages, technologies, tools, or web development stacks...


  • Ashburn, United States Shuvel Digital Full time

    Location: Ashburn VA Work Schedule: 100% Remote Clearance: DoD TS or CBP BI Client: DHS/CBP Must have Skills: 2+ years of experience designing, modifying, developing, writing, and implementing software programming applications 2+ years of software development experience with basic programming languages, technologies, tools, or web development stacks...

  • Process Engineer

    5 days ago


    Ashburn, United States Cubic Full time

    Business Unit:Cubic DefenseCompany Details:When you join DTECH, you become part of a company that creates and delivers technology solutions in defense to help promote mission success and safety for those who serve their nation. Led by our talented teams headquartered in Ashburn VA, DTECH is committed to solving global issues through innovation and service to...

  • Process Engineer

    2 hours ago


    Ashburn, United States Cubic Full time

    Business Unit: Cubic Defense Company Details: When you join DTECH, you become part of a company that creates and delivers technology solutions in defense to help promote mission success and safety for those who serve their nation. Led by our talented teams headquartered in Ashburn VA, DTECH is committed to solving global issues through innovation and service...

  • Software Engineer

    3 days ago


    Ashburn, United States Cubic Full time

    Business Unit Cubic Defense Company Details When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people’s lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our talented teams...


  • Ashburn, United States Cubic Full time

    Business Unit:Cubic Integrated Supply ChainCompany Details:When you join Cubic, you become part of a company that creates and delivers technology solutions in transportation to make people's lives easier by simplifying their daily journeys, and defense capabilities to help promote mission success and safety for those who serve their nation. Led by our...


  • Ashburn, United States HRUCKUS LLC Full time

    Veteran-Owned Firm Seeking a QA/Change Control Coordinator for a Role in Ashburn, VA My name is Stephen Hrutka, and I lead a veteran-owned management consulting firm in Washington, DC, focused on Technical/ Cleared Recruiting for the DoD and IC. HRUCKUS helps other Veteran-Owned businesses recruit for positions across the VA, SBA, HHS, DARPA, and other...


  • Ashburn, United States HRUCKUS Full time

    Veteran-Owned Firm Seeking a QA/Change Control Coordinator for a Role in Ashburn, VAMy name is Stephen Hrutka, and I lead a veteran-owned management consulting firm in Washington, DC, focused on Technical/ Cleared Recruiting for the DoD and IC.HRUCKUS helps other Veteran-Owned businesses recruit for positions across the VA, SBA, HHS, DARPA, and other...


  • Ashburn, United States HRUCKUS Full time

    Veteran-Owned Firm Seeking a QA/Change Control Coordinator for a Role in Ashburn, VAMy name is Stephen Hrutka, and I lead a veteran-owned management consulting firm in Washington, DC, focused on Technical/ Cleared Recruiting for the DoD and IC.HRUCKUS helps other Veteran-Owned businesses recruit for positions across the VA, SBA, HHS, DARPA, and other...