Detection Engineer with Security Clearance

3 weeks ago


Sterling, United States Gray Tier LLC Full time

Primary Responsibilities
Identify gaps in malicious activity detection capabilities
Create new signatures / rules to improve detection of malicious activity
Test and tune existing signatures / rules to ensure low rate of false positives
Assist in playbook development for alert triage and Incident Response
Define and implement alert and threat detection metrics, statistics, and analytics
Recommend new tools/technologies to improve network visibility
Support Incident Response and Forensic operations as required to include static/dynamic malware analysis and reverse engineering
Author and maintain scripts for threat detection and automation Basic Qualifications
The Cyber Threat Detection Engineer SME shall have the following qualifications: In-depth knowledge of Firewalls/Proxies/Intrusion Detection Systems/ Domain Name Servers/DHCP/VPN and other network technologies and tools
Experience updating, maintaining, and creating IDS variables within a complex enterprise network
Expert in creating, modifying, tuning IDS signatures/SIEM Correlation Searches/yara rules and/or other detection signatures
Familiarity with disk based forensic methodologies, Windows, and Linux forensic artifacts
Experience with Endpoint Detection and Response (EDR) tools such as Carbon Black, Tanium, Crowdstrike, etc
Able to create, modify, update, and maintain Python and Powershell scripts that enhance endpoint detection capabilities
In-depth knowledge of attacker tactics, techniques, and procedures
Author, test, and maintain automation scripts within SOAR platform The candidate must currently possess a Secret Clearance. In addition to clearance requirement, must have a current or be able to favorably pass a 5 year background investigation (BI). BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media analyst or as a computer forensic analyst.
Ability to work independently with minimal direction; self-starter/self-motivated

by Jobble



  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Systems Engineer. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct...


  • Sterling, United States Base One Technologies Full time

    Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct vulnerability assessments of IT systems. This position location is Ashburn, Virginia Basic QualificationsNEW REQUIREMENT as of 6/27/2022: In addition to uploading...


  • Sterling, United States Avid Technology Professionals Full time

    The Sr Cyber Security Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Sr Cyber Security Engineer ensures system security needs are established and maintained for various objects/matters....


  • Sterling, United States Solutions³ LLC Full time

    Job DescriptionJob DescriptionCyber Engineer - Senior II - SCE04Solutions3 LLC is supporting a U.S. Government Prime Contractor and its customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats....


  • Sterling, United States Solutions , LLC Full time

    Cyber Engineer - Senior II - SCE04 Solutions3 LLC is supporting a U.S. Government Prime Contractor and its customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. Solutions3 is seeking a Sr Cyber...


  • Sterling, United States Solutions³ LLC Full time

    Job DescriptionJob DescriptionCyber Engineer - Senior II - SCE04Solutions3 LLC is supporting a U.S. Government Prime Contractor and its customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats....


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for Splunk Engineers. All Applicants must be US CITIZENS with active Secret /Top Secret Clearance. If you are qualified for these openings, please forward a copy of your updated resume in word format to Work location: Ashburn VA Must Have One of the Following J3 CertificationsCompTIA Advanced Security Practitioner...


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Senior Splunk Engineer. All applicants must be US CITIZENS with an active Secret or TS clearance. Must Have One of the Following J3 Certifications CompTIA Advanced Security Practitioner (CASP) GCIH - Incident Handler GCWN - Windows Security Administrator GISF - Security Fundamentals GISP - Security Professional...


  • Sterling, United States Anonymous Employer Full time

    The candidate should have experience deploying and configuring Universal Forwarders and possess demonstrable knowledge of data collection methods such as Syslog, JDBC, or API. This position requires solid experience developing Splunk search queries, and dashboards and reports. Nice to have skills include Unix administration, scripting, understanding of...


  • Sterling, United States Northwood Mortgage Ltd. Full time

    Career Opportunities with Novel Applications of Vital Information A great place to work. Careers At Novel Applications of Vital Information, Inc Share with friends or Subscribe! Join the Novel Applications Family: At Novel Application, we’re focused on finding and keeping top talent. We are looking for highly motivated and experienced personnel who are...


  • Sterling, United States Donatech Corporation Full time

    What you will do:• Develop and integrate ansible playbooks utilizing virtualization architecture to build and deploy training systems.• Collaborate with focused team to deliver virtualized solutions to our customer.• Solve complex problems using automation, containerization, and virtualization to produce sustainable and reliable products.• Work with...


  • Sterling, United States Novel Applications of Vital Information Full time

    Residency Status: ALL Candidates Must Be A U.S. CitizenClearance: Candidates Must have an Active Secret clearance and the ability to obtain a TS/SCI security clearance.Time Type: Full-Time, Daytime Schedule - HybridRelocation Fees: NoCompany Overview:NAOVI is a premier technology services company that provides solutions in the areas of Cyber Security,...


  • Sterling, United States Iamus Consulting, Inc. Full time

    Description We are looking for a talented Data Engineer to support the acquisition of mission critical and mission support data sets. The preferred candidate will have a background in supporting cyber and/or network related missions within the military spaces, as either a developer, analyst or engineer. Requirements Essential Job Responsibilities * The ideal...


  • Sterling, United States Maania Consultancy Services Full time

    Job DescriptionJob DescriptionRequired Skills:An active Secret security clearance is required with the eligibility to obtain a TS/SCI. TS/SCI is preferred.Must be able to obtain DHS suitability prior to starting employmentThis is a hybrid position8+ years of directly relevant experience.Must have hands-on experience with AWS and Linux in a production...


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for Lead Splunk Engineers. If you are qualified for this position, please email your updated resume in word format to Primary Responsibilities Provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment...


  • Sterling, United States Anonymous Employer Full time

    Primary ResponsibilitiesThe ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will: Create Threat Models to better understand the Agency IT Enterprise, identify defensive gaps, and prioritize mitigations Author, update, and...


  • Sterling, United States Kyrus Tech, Inc. Full time

    CNO Software Engineer Job Type: Full-timeLocation: Sterling, VA. (WFH occasional trips to the office)Clearance Requirements: S or TSYears of Experience: 5+ years Working with KyrusKyrus is committed to solving our customer’s hardest problems with eagerness, effectiveness, and efficiency. We reject the status quo and constantly look for new ways to push...


  • Sterling, United States PlanIT Group LLC Full time

    Desktop Client Engineer: As a Desktop Client Engineer supporting the Government, you will be trusted with engineering solutions to automate updating desktop builds and support thick and virtualized desktop clients. In this role, a typical day may include:· Researches, analyzes, designs and defines system architecture for new or existing computer systems and...


  • Sterling, United States PLANIT Group Full time

    Desktop Client Engineer: As a Desktop Client Engineer supporting the Government, you will be trusted with engineering solutions to automate updating desktop builds and support thick and virtualized desktop clients. In this role, a typical day may include: Researches, analyzes, designs and defines system architecture for new or existing computer systems and...


  • Sterling, United States Maania Consultancy Services Full time

    Job Title: Senior Cyber Security SME Location: Dulles, VA and Pensacola, FL Job Type: Full time Required Top Secret clearance Required Skills: Must be able to obtain DHS Suitability Hands-on experience in a SOC performing the detection, response, mitigation, and/or reporting of cyber threats affecting client networks and one or more of the following:...