Cybersecurity Threat Detection Specialist
4 weeks ago
Job Overview
We are seeking a skilled Cybersecurity Threat Detection Specialist to join our team at Leidos. As a key member of our security team, you will play a crucial role in identifying and mitigating potential threats to our systems and data.
About the Role
The Cybersecurity Threat Detection Specialist will be responsible for proactively searching for threats, inspecting traffic for anomalies, and developing custom content within our Splunk SIEM to detect threats and attacks. This includes creating correlation rules using advanced SPL language and data models, as well as implementing network security tools such as SNORT and YARA.
Main Responsibilities
- Capture use cases from subscribers or other team members and develop correlation rules to identify potential threats.
- Utilize knowledge of latest threats and attack vectors to develop Splunk correlation rules for continuous monitoring.
- Develop, manage, and maintain Splunk data models to accelerate threat detection.
- Review logs to determine if relevant data is present to work with existing use cases.
- Develop custom regex to create custom knowledge objects and improve threat detection capabilities.
- Develop custom SPL using macros, lookups, etc., and network security signatures such as SNORT and YARA.
- Develop custom dashboards and reports for customer stakeholders to enhance situational awareness.
- Train and mentor junior staff to ensure continuity and knowledge transfer within the team.
Requirements
- Bachelor's Degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field and 12+ years of experience or MS Degree and 10 years of experience.
- Extensive experience working with various security methodologies and processes.
- Advanced knowledge of TCP/IP protocols, experience configuring and implementing various technical security solutions, and extensive experience providing analysis and trending of security log data from a large number of heterogeneous security devices.
- Expert knowledge in two or more of the following areas related to cybersecurity: Vulnerability Assessment, Intrusion Prevention and Detection, Access Control and Authorization, Policy Enforcement, Application Security, Protocol Analysis, Firewall Management, Incident Response, Web-filtering, Advanced Threat Protection.
Preferred Qualifications
- Experience with cloud (e.g. o365, Azure, AWS, etc) security monitoring and familiar with cloud threat landscape.
- Completed Splunk Advance Searching and Reporting training.
- Experience developing custom scripts using python.
- Splunk certifications.
- TS/SCI Clearance preferred.
Compensation
We offer a highly competitive salary range of $126,100.00 - $227,950.00, commensurate with experience. Additionally, we provide opportunities for professional growth and development, as well as a comprehensive benefits package.
-
Cybersecurity Threat Detection Specialist
2 weeks ago
Ashburn, Virginia, United States Leidos Full timeJob OverviewWe are seeking a highly skilled Cybersecurity Threat Detection Specialist to join our team at Leidos.
-
Advanced Threat Detection Specialist
2 weeks ago
Ashburn, Virginia, United States Leidos Full timeLeidos is currently seeking an Advanced Threat Detection Specialist to join our NOSC Cyber Team. As a key member of our team, you will play a critical role in identifying and mitigating cyber threats to DHS networks through monitoring, intrusion detection, and protective security services. Your expertise in incident detection and response, malware analysis,...
-
Advanced Threat Detection Analyst
3 weeks ago
Ashburn, Virginia, United States Leidos Full timeCyber Threat Hunt Mission SpecialistAs a key member of our cybersecurity team, you will play a critical role in identifying and mitigating potential security risks in our enterprise networks. This includes planning and executing threat hunt missions, analyzing network and host-based logs, and developing scripts to support cyber threat...
-
Cyber Security Specialist
4 weeks ago
Ashburn, Virginia, United States Leidos Full timeAbout the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team in defending against cyber threats. As a key member of our team, you will play a crucial role in protecting our customers' systems, networks, and assets.Key ResponsibilitiesImplementing enterprise-wide countermeasures across a wide spectrum of endpoint, network, and...
-
Cybersecurity Threat Analyst Position
3 weeks ago
Ashburn, Virginia, United States Leidos Full timeAbout the Opportunity: Leidos is seeking a skilled Cyber Threat Hunt Analyst to enhance our Cyber Threat Hunt team supporting U.S. Customs and Border Protection (CBP). This role will involve performing thorough technical analysis of network and endpoint logs and activities, conducting various threat hunts across agency assets, escalating findings as needed,...
-
Cybersecurity Threat Intelligence Professional
3 weeks ago
Ashburn, Virginia, United States Top Secret Clearance Jobs Full timeAbout the CompanyAt Top Secret Clearance Jobs, we specialize in helping individuals with top secret clearance find their next career opportunity. Our team has extensive experience in cybersecurity and can offer valuable insights into the industry.Job SummaryWe are seeking a skilled Cyber Threat Intelligence Analyst to join our team. The successful candidate...
-
Cybersecurity Threat Hunter
3 weeks ago
Ashburn, Virginia, United States Manpower Group Inc. Full timeAt Manpower Group Inc., we're seeking a Cybersecurity Threat Hunter to join our team in Ashburn, VA. The estimated salary for this role is $80,000 - $110,000 per year.We're looking for an expert who can conduct near real-time security monitoring in a 24x7 environment, utilizing proprietary SIEM and cybersecurity tools to identify Indicators of Compromise...
-
Cyber Threat Hunt Operations Specialist
2 weeks ago
Ashburn, Virginia, United States Leidos Full timeAbout the JobLeidos is seeking a highly skilled Cyber Threat Hunt Operations Specialist to join our team. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our networks from cyber threats.Job SummaryWe are looking for a talented individual with 8-12 years of experience in cybersecurity to fill this role. The...
-
Cyber Threat Hunt Specialist
3 weeks ago
Ashburn, Virginia, United States Leidos Full timeJob Description:The Leidos Cyber Threat Hunt team is seeking an experienced professional to support U.S. Customs and Border Protection (CBP). As a member of this highly technical team, you will be responsible for in-depth analysis of network and endpoint logs & activity, executing various types of cyber threat hunts on agency assets, escalating findings as...
-
Cyber Threat Operations Specialist
2 weeks ago
Ashburn, Virginia, United States Gray Tier Technologies LLC Full timeCyber Threat Operations SpecialistAt Gray Tier Technologies LLC, we are seeking a highly skilled Cyber Threat Operations Specialist to join our team. This role requires expertise in threat hunting, incident response, and security operations.The estimated salary for this position is $120,000 - $180,000 per year.Job Description:We are looking for an...
-
Cyber Threat Hunt Specialist
2 weeks ago
Ashburn, Virginia, United States Leidos Full time**About the Role**We are seeking a highly skilled Cyber Threat Hunt Specialist to join our team at Leidos. As a key member of our cybersecurity team, you will play a critical role in protecting our organization's IT assets from advanced threats.The successful candidate will have a strong background in host-based and network-based security monitoring using...
-
Threat Intelligence Expert
3 weeks ago
Ashburn, Virginia, United States Leidos Full timeCybersecurity Threat HunterWe are seeking a highly skilled Cybersecurity Threat Hunter to join our team at Leidos. As a key member of our cybersecurity team, you will be responsible for detecting and analyzing advanced cyber threats in our enterprise networks.Job ResponsibilitiesIdentify and analyze advanced cyber threats in our enterprise networks.Develop...
-
Cybersecurity Threat Response Expert
3 weeks ago
Ashburn, Virginia, United States Leidos Full timeAbout the RoleWe are seeking a highly skilled Cybersecurity Threat Response Expert to join our team at Leidos. This is a critical position that requires expertise in incident response, threat hunting, and cybersecurity analysis.Key Responsibilities:Develop and implement effective incident response strategies to mitigate cyber threats.Analyze complex security...
-
Cybersecurity Innovation Director
3 weeks ago
Ashburn, Virginia, United States Loginsoft Full timeCybersecurity Innovation DirectorWe are seeking a highly motivated and experienced Cybersecurity Innovation Director to spearhead the growth and widespread adoption of our cutting-edge cybersecurity engineering services.This role involves leading and leveraging expertise in threat intelligence, vulnerability management, cloud security, threat hunting, and...
-
Ashburn, Virginia, United States Leidos Full timeJob DescriptionWe are seeking an experienced Enterprise Cyber Threat Countermeasures Specialist to join our team at Leidos. This individual will play a crucial role in defending against cyber threats and perform in-depth technical analysis of network and endpoint logs & activity.About the Role:This position is responsible for directing, tracking, and...
-
Ashburn, Virginia, United States Leidos Full timeAbout LeidosLeidos is a leading provider of innovative technology, engineering, and cyber solutions to the U.S. Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC). Our team is dedicated to preventing, identifying, containing, and eradicating cyber threats to CBP networks.Job SummaryWe are seeking an...
-
Cybersecurity Specialist
2 weeks ago
Ashburn, Virginia, United States Leidos Full timeJob OverviewLeidos is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our security operations center, you will be responsible for designing, implementing, and maintaining the overall security posture of our network infrastructure.About the RoleThis position requires a strong background in computer systems engineering,...
-
Chief Cybersecurity Analyst
3 weeks ago
Ashburn, Virginia, United States Leidos Full timeCompany OverviewLeidos is a leading provider of advanced technology, engineering, and cybersecurity solutions for the US government and private sector. With a strong focus on innovation and customer satisfaction, we strive to deliver high-quality services that meet the evolving needs of our clients.Job SummaryWe are seeking an experienced Senior Threat...
-
Cybersecurity Threat Intelligence Analyst
2 weeks ago
Ashburn, Virginia, United States Leidos Full time**About the Position:**We are seeking a Cybersecurity Threat Intelligence Analyst to join our team at Leidos. As a key member of our cybersecurity team, you will play a critical role in identifying and mitigating advanced threats to our organization's IT assets.The successful candidate will have a strong background in threat intelligence and will be...
-
Chief Cybersecurity Architect Officer
3 weeks ago
Ashburn, Virginia, United States Loginsoft Full timeChief Cybersecurity Architect OfficerWe are seeking a highly skilled and experienced Chief Cybersecurity Architect Officer to drive the growth and adoption of our cybersecurity engineering services.This role involves leading and leveraging expertise in threat intelligence, vulnerability management, cloud security, threat hunting, and threat detection. The...