Cybersecurity Threat Detection Specialist

4 weeks ago


Ashburn, Virginia, United States Leidos Full time

Job Overview

We are seeking a skilled Cybersecurity Threat Detection Specialist to join our team at Leidos. As a key member of our security team, you will play a crucial role in identifying and mitigating potential threats to our systems and data.

About the Role

The Cybersecurity Threat Detection Specialist will be responsible for proactively searching for threats, inspecting traffic for anomalies, and developing custom content within our Splunk SIEM to detect threats and attacks. This includes creating correlation rules using advanced SPL language and data models, as well as implementing network security tools such as SNORT and YARA.

Main Responsibilities

  • Capture use cases from subscribers or other team members and develop correlation rules to identify potential threats.
  • Utilize knowledge of latest threats and attack vectors to develop Splunk correlation rules for continuous monitoring.
  • Develop, manage, and maintain Splunk data models to accelerate threat detection.
  • Review logs to determine if relevant data is present to work with existing use cases.
  • Develop custom regex to create custom knowledge objects and improve threat detection capabilities.
  • Develop custom SPL using macros, lookups, etc., and network security signatures such as SNORT and YARA.
  • Develop custom dashboards and reports for customer stakeholders to enhance situational awareness.
  • Train and mentor junior staff to ensure continuity and knowledge transfer within the team.

Requirements

  • Bachelor's Degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field and 12+ years of experience or MS Degree and 10 years of experience.
  • Extensive experience working with various security methodologies and processes.
  • Advanced knowledge of TCP/IP protocols, experience configuring and implementing various technical security solutions, and extensive experience providing analysis and trending of security log data from a large number of heterogeneous security devices.
  • Expert knowledge in two or more of the following areas related to cybersecurity: Vulnerability Assessment, Intrusion Prevention and Detection, Access Control and Authorization, Policy Enforcement, Application Security, Protocol Analysis, Firewall Management, Incident Response, Web-filtering, Advanced Threat Protection.

Preferred Qualifications

  • Experience with cloud (e.g. o365, Azure, AWS, etc) security monitoring and familiar with cloud threat landscape.
  • Completed Splunk Advance Searching and Reporting training.
  • Experience developing custom scripts using python.
  • Splunk certifications.
  • TS/SCI Clearance preferred.

Compensation

We offer a highly competitive salary range of $126,100.00 - $227,950.00, commensurate with experience. Additionally, we provide opportunities for professional growth and development, as well as a comprehensive benefits package.



  • Ashburn, Virginia, United States Leidos Full time

    Job OverviewWe are seeking a highly skilled Cybersecurity Threat Detection Specialist to join our team at Leidos.


  • Ashburn, Virginia, United States Leidos Full time

    Leidos is currently seeking an Advanced Threat Detection Specialist to join our NOSC Cyber Team. As a key member of our team, you will play a critical role in identifying and mitigating cyber threats to DHS networks through monitoring, intrusion detection, and protective security services. Your expertise in incident detection and response, malware analysis,...


  • Ashburn, Virginia, United States Leidos Full time

    Cyber Threat Hunt Mission SpecialistAs a key member of our cybersecurity team, you will play a critical role in identifying and mitigating potential security risks in our enterprise networks. This includes planning and executing threat hunt missions, analyzing network and host-based logs, and developing scripts to support cyber threat...


  • Ashburn, Virginia, United States Leidos Full time

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team in defending against cyber threats. As a key member of our team, you will play a crucial role in protecting our customers' systems, networks, and assets.Key ResponsibilitiesImplementing enterprise-wide countermeasures across a wide spectrum of endpoint, network, and...


  • Ashburn, Virginia, United States Leidos Full time

    About the Opportunity: Leidos is seeking a skilled Cyber Threat Hunt Analyst to enhance our Cyber Threat Hunt team supporting U.S. Customs and Border Protection (CBP). This role will involve performing thorough technical analysis of network and endpoint logs and activities, conducting various threat hunts across agency assets, escalating findings as needed,...


  • Ashburn, Virginia, United States Top Secret Clearance Jobs Full time

    About the CompanyAt Top Secret Clearance Jobs, we specialize in helping individuals with top secret clearance find their next career opportunity. Our team has extensive experience in cybersecurity and can offer valuable insights into the industry.Job SummaryWe are seeking a skilled Cyber Threat Intelligence Analyst to join our team. The successful candidate...


  • Ashburn, Virginia, United States Manpower Group Inc. Full time

    At Manpower Group Inc., we're seeking a Cybersecurity Threat Hunter to join our team in Ashburn, VA. The estimated salary for this role is $80,000 - $110,000 per year.We're looking for an expert who can conduct near real-time security monitoring in a 24x7 environment, utilizing proprietary SIEM and cybersecurity tools to identify Indicators of Compromise...


  • Ashburn, Virginia, United States Leidos Full time

    About the JobLeidos is seeking a highly skilled Cyber Threat Hunt Operations Specialist to join our team. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our networks from cyber threats.Job SummaryWe are looking for a talented individual with 8-12 years of experience in cybersecurity to fill this role. The...


  • Ashburn, Virginia, United States Leidos Full time

    Job Description:The Leidos Cyber Threat Hunt team is seeking an experienced professional to support U.S. Customs and Border Protection (CBP). As a member of this highly technical team, you will be responsible for in-depth analysis of network and endpoint logs & activity, executing various types of cyber threat hunts on agency assets, escalating findings as...


  • Ashburn, Virginia, United States Gray Tier Technologies LLC Full time

    Cyber Threat Operations SpecialistAt Gray Tier Technologies LLC, we are seeking a highly skilled Cyber Threat Operations Specialist to join our team. This role requires expertise in threat hunting, incident response, and security operations.The estimated salary for this position is $120,000 - $180,000 per year.Job Description:We are looking for an...


  • Ashburn, Virginia, United States Leidos Full time

    **About the Role**We are seeking a highly skilled Cyber Threat Hunt Specialist to join our team at Leidos. As a key member of our cybersecurity team, you will play a critical role in protecting our organization's IT assets from advanced threats.The successful candidate will have a strong background in host-based and network-based security monitoring using...


  • Ashburn, Virginia, United States Leidos Full time

    Cybersecurity Threat HunterWe are seeking a highly skilled Cybersecurity Threat Hunter to join our team at Leidos. As a key member of our cybersecurity team, you will be responsible for detecting and analyzing advanced cyber threats in our enterprise networks.Job ResponsibilitiesIdentify and analyze advanced cyber threats in our enterprise networks.Develop...


  • Ashburn, Virginia, United States Leidos Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Threat Response Expert to join our team at Leidos. This is a critical position that requires expertise in incident response, threat hunting, and cybersecurity analysis.Key Responsibilities:Develop and implement effective incident response strategies to mitigate cyber threats.Analyze complex security...


  • Ashburn, Virginia, United States Loginsoft Full time

    Cybersecurity Innovation DirectorWe are seeking a highly motivated and experienced Cybersecurity Innovation Director to spearhead the growth and widespread adoption of our cutting-edge cybersecurity engineering services.This role involves leading and leveraging expertise in threat intelligence, vulnerability management, cloud security, threat hunting, and...


  • Ashburn, Virginia, United States Leidos Full time

    Job DescriptionWe are seeking an experienced Enterprise Cyber Threat Countermeasures Specialist to join our team at Leidos. This individual will play a crucial role in defending against cyber threats and perform in-depth technical analysis of network and endpoint logs & activity.About the Role:This position is responsible for directing, tracking, and...


  • Ashburn, Virginia, United States Leidos Full time

    About LeidosLeidos is a leading provider of innovative technology, engineering, and cyber solutions to the U.S. Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC). Our team is dedicated to preventing, identifying, containing, and eradicating cyber threats to CBP networks.Job SummaryWe are seeking an...


  • Ashburn, Virginia, United States Leidos Full time

    Job OverviewLeidos is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our security operations center, you will be responsible for designing, implementing, and maintaining the overall security posture of our network infrastructure.About the RoleThis position requires a strong background in computer systems engineering,...


  • Ashburn, Virginia, United States Leidos Full time

    Company OverviewLeidos is a leading provider of advanced technology, engineering, and cybersecurity solutions for the US government and private sector. With a strong focus on innovation and customer satisfaction, we strive to deliver high-quality services that meet the evolving needs of our clients.Job SummaryWe are seeking an experienced Senior Threat...


  • Ashburn, Virginia, United States Leidos Full time

    **About the Position:**We are seeking a Cybersecurity Threat Intelligence Analyst to join our team at Leidos. As a key member of our cybersecurity team, you will play a critical role in identifying and mitigating advanced threats to our organization's IT assets.The successful candidate will have a strong background in threat intelligence and will be...


  • Ashburn, Virginia, United States Loginsoft Full time

    Chief Cybersecurity Architect OfficerWe are seeking a highly skilled and experienced Chief Cybersecurity Architect Officer to drive the growth and adoption of our cybersecurity engineering services.This role involves leading and leveraging expertise in threat intelligence, vulnerability management, cloud security, threat hunting, and threat detection. The...