Senior Cybersecurity Engineer for Threat Detection

6 days ago


Reston, Virginia, United States Booz Allen Hamilton Full time
Role Summary

We are seeking a highly skilled Cyber Network Infrastructure and Operations Engineer to join our team at Booz Allen Hamilton. As a key member of our cybersecurity team, you will be responsible for designing, building, and maintaining IDS/IPS capabilities that enable cyber hunt activities for enterprise teams.

Key Responsibilities:
  • Support the development of threat analysis tools and techniques, including statistical analysis and model development.
  • Maintain responsibility for architecting, engineering, and operating capabilities to support Cyber Hunt analysts.
  • Convert tools, techniques, and processes into automated capabilities and collect customer Cyber Operations requirements.
  • Provide Cyber SME support and system training to end users.
Requirements:
  • 5+ years of experience with Linux System Architecture, Engineering, Design, and Support (RHEL, CentOS, Oracle Linux).
  • 2+ years of experience with Suricata, Snort, Zeek, FireEye HX, Endgame, or Corelight.
  • Experience architecting, Engineering, Deploying, or Sustaining Network Traffic Analysis tools leveraging both Open Source and Commercial Off the Shelf Capabilities.
  • Experience with implementing STIG, NIST, or OSCAP frameworks on Linux Operating Systems and with reading and interpreting signatures (SNORT, SIGMA, Yara, YML, XML).
  • Experience with data flow and tooling configurations for connections in SIEMs (Splunk, Q-Radar, ArcSight, ELK).
  • Knowledge of network traffic analysis methods (TCP-DUMP, Wireshark, Bro/Zeek) and core networking fundamentals (TCP-IP or OSI Model).
  • Active TS/SCI clearance; willingness to take a polygraph exam.
  • HS diploma or GED and 12+ years of experience supporting IT projects and activities.
  • DoD 8570.01-M Information Assurance Technician (IAT) Level II certification (Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, CND).
  • Ability to obtain DoD 8570.01-M Cybersecurity Service Provider (CSSP) - Infrastructure Support (IS) certification within 60 days of hire.
Additional Requirements:
  • Experience collecting data from various cyber defense resources (CVE, OSINT).
  • Experience in various query languages (SQL, Lucene, JEXL, KQL).
  • Experience with dashboarding and visualizations (Power-Bi, Superset, Kibana).
  • Experience with SOARs (Sentinel, CORTEX, X-SOAR).
  • Experience with cloud providers and environments (Azure, AWS, Google Cloud Platform).
  • Experience developing and deploying threat detection signatures and detecting host and network-based intrusions.
  • Experience recognizing and categorizing types of vulnerabilities and associated attacks.
  • Experience scripting in PowerShell and BASH command line interfaces or in Python or Perl scripting languages.
  • Experience designing, building, deploying, and maintaining infrastructure in cloud environments with tools (GitLab CI, Ansible Tower, JIRA, Jenkins, Satellite).
  • Experience with VMware, ESXi, and vSphere.
Compensation:

The projected compensation range for this position is $75,600.00 to $172,000.00 (annualized USD), making it an attractive opportunity for experienced professionals in the field.

At Booz Allen Hamilton, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our benefits package includes health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care.



  • Reston, Virginia, United States Sparks Group Full time

    As a Threat Intelligence and Countermeasures Specialist at Sparks Group, you will be responsible for analyzing complex data sets to identify and prioritize potential threats to the organization.Responsibilities:Conduct in-depth threat assessments and develop comprehensive threat profiles.Utilize advanced analytical tools and methodologies to identify and...


  • Reston, Virginia, United States ECS Full time

    ECS Cyber Security Analyst Job DescriptionJob Summary: We are seeking a highly skilled Cyber Security Analyst to join our team at ECS. As a Cyber Security Analyst, you will play a critical role in protecting our customers and corporate environment from cyber threats.Key Responsibilities:Use network and host based data to drive detection, monitoring, and...


  • Reston, Virginia, United States Sparks Group Full time

    We are seeking a seasoned Cybersecurity Threat Analyst with a strong background in counterintelligence and insider threat analysis to join our team at Sparks Group. This role requires a high level of discretion, judgment, and the ability to handle sensitive information.Key Responsibilities:Conduct in-depth threat assessments and develop comprehensive threat...


  • Reston, Virginia, United States SeKON Full time

    Cybersecurity Expert - Threat Intelligence and Incident ResponseSeKON is seeking an experienced Cybersecurity Expert to join our Information Security team. In this role, you will lead the planning, implementation, and monitoring of security measures to protect the organization's computer networks and sensitive information.Responsibilities:Security Strategy...


  • Reston, Virginia, United States ENS Solutions Full time

    Job Title: Cybersecurity Engineer - Enterprise Network DefenseOverview:Cybersecurity Engineers play a critical role in safeguarding organizations against cyber threats. At ENS Solutions, LLC, we are seeking experienced professionals to join our team as Cybersecurity Engineers responsible for designing, developing, and implementing enterprise network defense...


  • Reston, Virginia, United States Sekon Full time

    Job OverviewSekon is a forward-thinking organization seeking an experienced Cybersecurity Strategist to spearhead the development and implementation of advanced security measures. This critical role requires a seasoned professional with a deep understanding of cybersecurity practices, tools, and protocols.Key Responsibilities:Strategic Planning and...


  • Reston, Virginia, United States ECS Full time

    About the RoleECS is seeking a highly skilled Cyber Threat Analyst 3 to join our team in Fairfax, VA. As a Cyber Threat Analyst, you will be responsible for investigating threats targeting ECS' internal network and commercial customers.Key ResponsibilitiesLead incident response efforts, including forensic triage and detailed technical reporting.Mentor and...


  • Reston, Virginia, United States Sekon Full time

    Job OverviewWe are seeking a highly skilled Cybersecurity Specialist to protect our digital assets and ensure the security of our critical systems.ResponsibilitiesSafeguarding Digital Assets: Develop and execute security strategies to safeguard our networks, systems, and data from unauthorized access, breaches, and other threats.System Monitoring and...


  • Reston, Virginia, United States Cornerstone Defense Full time

    Cornerstone Defense is seeking a highly skilled Cybersecurity Engineer to join our team. Located in Reston, Virginia, this position offers a competitive salary range of $145,000 - $185,000.Job DescriptionThis is an exciting opportunity for a dedicated professional with a strong background in cybersecurity to play a pivotal role in safeguarding our...


  • Reston, Virginia, United States MetroStar Systems Full time

    Job SummaryWe are seeking a highly skilled Senior Cybersecurity Operations Specialist to join our team at MetroStar Systems. In this role, you will play a critical part in designing and implementing secure software development and deployment pipelines.About MetroStar SystemsMetroStar Systems is a leading provider of innovative solutions for the government...


  • Reston, Virginia, United States Leidos Full time

    Job SummaryCybersecurity Engineer (SME) at Leidos.The Cybersecurity Engineer (SME) is responsible for protecting the customer's information systems and networks from potential cyber-attacks. This role requires an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS), IDS/IPS, Web-Proxy,...


  • Reston, Virginia, United States Cornerstone Defense Full time

    Job ResponsibilitiesGuide government clients through the complex process of obtaining and maintaining Authority to Operate certifications for their information systems.Leverage expertise in government cybersecurity standards and regulations to monitor, analyze, and respond to potential security incidents and threats.Ensure government clients' systems meet...


  • Reston, Virginia, United States AIG Full time

    Job OverviewAIG is a global leader in commercial and personal insurance solutions, with a network of property casualty operations across the world. As a Senior Endpoint Security Engineer, you will play a crucial role in helping customers manage risk and respond to uncertainty.About the RoleThis is an exciting opportunity for a talented individual to join our...


  • Reston, Virginia, United States Agile Business Concepts, LLC Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Talent Acquisition Specialist to join our team at Agile Business Concepts, LLC. This role will be responsible for managing the full recruiting lifecycle across various open roles in Cyber Security, Cloud Computing, Data Analytics, Network Engineering, and Program Management.About UsAgile Business...


  • Reston, Virginia, United States NuWave Solutions Full time

    About the RoleWe are seeking an experienced Senior Android Software Engineer to join our team at NuWave Solutions. As a key member of our mobile cybersecurity team, you will design and develop advanced applications for the Android platform.


  • Reston, Virginia, United States Joint Enterprise Technologies Full time

    Job Title: GREM Certified Cyber Malware Reverse EngineerAbout the Opportunity:Join Joint Enterprise Technologies in defending and protecting Government assets from external cyber attacks and insider threats.As a GREM-certified Cyber Malware Reverse Engineer, you will strengthen the defensive posture and cyber defense operational readiness of an IT...


  • Reston, Virginia, United States The One 23 Group Full time

    Job OverviewThe One 23 Group, a leading government services provider, is seeking a highly skilled Cyber Threat Intelligence Analyst to join our team in the Washington, D.C. metropolitan area.Key ResponsibilitiesConduct proactive and continuous monitoring of internal and external landscapes to identify relevant events, risks, and threats related to malicious...


  • Reston, Virginia, United States SeKON Full time

    About Us: At SeKON, we specialize in providing large-scale health IT programs in support of federal government customers including the Centers for Disease Control (CDC), Centers for Medicare and Medicaid (CMS), Defense Health Agency (DHA), and National Institutes of Health (NIH). Our vision is to be a premier management and technology consulting firm...


  • Reston, Virginia, United States Eviden Full time

    Eviden is looking for a highly skilled Malware Detection and Response Expert to join our team. In this role, you will be responsible for monitoring for threats, analyzing data, and notifying customers of potential security risks.Responsibilities:Monitor for threats, analyze, and notify customerSecurity Log analysis to detect attack origin, attack spread,...


  • Reston, Virginia, United States eSolutionsFirst Full time

    Job DescriptionWe are seeking a highly skilled Cybersecurity Strategist to join our team at eSolutionsFirst. The ideal candidate will have extensive experience in designing, implementing, and managing secure cybersecurity architectures.Key Responsibilities:Develop and maintain the security framework, aligning with industry standards to ensure the...