Senior Security Detection Engineer

2 days ago


Reston, Virginia, United States ECS Full time
Job Title: Senior Security Detection Engineer

At ECS, we're driven by a commitment to excellence and innovation in solving complex challenges. Our mission is to secure and optimize the most critical commercial, government, defense, and intelligence projects across the country.

We're seeking a Senior Detection Engineer to serve as a pivotal contributor within our Security Operations Center (SOC). This role demands a strategic thinker and an expert in detection engineering, dedicated to enhancing our cybersecurity posture through advanced threat detection, proactive threat hunting, and automation.

Responsibilities:

* Design, develop, and implement advanced detection strategies across a variety of security platforms, including but not limited to SIEMs, EDR, NDR, and SOAR tools.
* Create and maintain custom detection content (e.g., correlation rules, signatures, alerts) to identify and mitigate emerging threats.
* Collaborate with Threat Intelligence and Incident Response teams to refine detection logic and ensure security alerts are relevant, actionable, and aligned with the latest threats and overall security strategy.
* Continuously optimize and tune detection content to reduce false positives and improve detection accuracy.
* Provide mentorship and technical guidance to junior engineers and analysts, fostering a culture of continuous learning and improvement.
* Document detection logic, use cases, and operational procedures to ensure consistency and knowledge sharing across teams.
* Conduct regular tuning of detection content to adapt to evolving threats and changes in the operational environment.
* Contribute to the development and tracking of key performance indicators (KPIs) related to detection efficacy and response times.
* Engage with cross-functional teams to ensure seamless integration of detection content within broader security operations.
* Document and maintain detection methodologies, operational procedures, and best practices to ensure consistency, scalability, and knowledge sharing across teams.

Requirements:

* Bachelor's degree; preferably in Computer Science, Information Security, or a related field. Will consider experience in lieu of a degree.
* Minimum of 10 years of experience in cybersecurity, with a strong focus on detection engineering, threat detection, or SOC operations.
* Proficiency in developing detection content for SIEM platforms such as Splunk, ArcSight, Qradar, Logrhythm, or Securonix.
* Experience with endpoint detection and response (EDR) tools such as CrowdStrike, SentinelOne, or Carbon Black.
* Expertise in analyzing and interpreting threats from a wide range of data sources, including IDS/IPS, AV, HIDS/HIPS, WAFs, firewalls, web applications, and web proxies, with the ability to identify and mitigate advanced threats.
* Experience in utilizing technologies such as ElasticSearch, Zeek, SIGMA, Suricata, and YARA for developing and optimizing detection rules, threat hunting, and incident response.
* Proficiency in leveraging Detection as Code (DaC) practices to automate and standardize detection logic, enabling rapid deployment and consistent threat detection across multiple environments.
* Comprehensive knowledge of cyber threat tactics, techniques, and procedures (TTPs), with a proven ability to develop and implement effective alerting, countermeasures, and proactive threat-hunting techniques.
* Proficiency with the MITRE ATT&CK framework and its application in detection strategies.
* Deep understanding of network security, intrusion detection/prevention systems (IDS/IPS), and malware analysis.

Desired Skills:

* Certifications such as GCIA/GCIH/GCFA/GNFA/GREM or OSCP.
* Excellent analytical and problem-solving skills, with the ability to handle complex security challenges and think like an adversary.
* Experience with cloud security platforms (AWS, Azure, GCP) and integrating native security tools.
* Experience with scripting languages such as Python, PowerShell, or Bash to support automation and custom detection development.
* Proven track record of performing threat hunting and incident detection in large-scale enterprise environments.
* Experience leading security projects that have significantly enhanced detection capabilities or reduced incident response times.
* Strong communication skills, with the ability to articulate complex technical concepts to both technical and non-technical audiences.

ECS is an equal opportunity employer and does not discriminate or allow discrimination on the basis of race, color, religion, sex, age, sexual orientation, gender identity or expression, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, status as a crime victim, disability, protected veteran status, or any other characteristic protected by law.

ECS promotes affirmative action for minorities, women, disabled persons, and veterans.

ECS is a leading mid-sized provider of technology services to the United States Federal Government. We are focused on people, values, and purpose.

Every day, our 3800 employees focus on providing their technical talent to support the Federal Agencies and Departments of the US Government to serve, protect, and defend the American People.

  • Reston, Virginia, United States Iceberg Cyber Security Full time

    Senior Security EngineerWe are seeking a highly skilled Senior Security Engineer to join our team at Iceberg Cyber Security. As a key member of our security operations team, you will play a critical role in designing, implementing, and managing our security infrastructure.Key Responsibilities:Develop and implement vulnerability management strategies to...


  • Reston, Virginia, United States GuidePoint Security Full time

    Job DescriptionGuidePoint Security is seeking a highly skilled Splunk Security Engineer to join our team. As a Splunk Security Engineer, you will be responsible for driving complex security-focused deployments of Splunk or ArcSight while working side by side with customers to solve their unique problems across a variety of use cases.Key...


  • Reston, Virginia, United States Populus Financial Group Full time

    Job Title: Senior Security EngineerPopulus Financial Group is seeking a highly motivated and experienced Senior Security Engineer to join our Security Team. As a key member of our team, you will be responsible for securing our environment using new and existing technology to monitor, assess, and mitigate internal and external risks to our network...


  • Reston, Virginia, United States Kyber Security Full time

    Job Title: Senior Network Services EngineerKyber Security is a leading provider of enterprise-grade cybersecurity solutions to small and medium-sized businesses in the Northeastern US. We are seeking a highly skilled Senior Network Services Engineer to join our team.Job Summary:The successful candidate will be responsible for designing, implementing, and...


  • Reston, Virginia, United States Brooksource Full time

    Senior IT Security EngineerJob SummaryWe are seeking a highly skilled Senior IT Security Engineer to join our team. As a key member of our security team, you will be responsible for providing senior-level support to security administration and working closely with the team to develop and maintain comprehensive engineering programs.Key ResponsibilitiesDevelop...


  • Reston, Virginia, United States Gardner Resources Consulting, LLC Full time

    Job Title: Senior Security AnalystWe are seeking a highly skilled Senior Security Analyst to join our team at Gardner Resources Consulting, LLC. As a Senior Security Analyst, you will be responsible for identifying and tracking potential security incidents across our clients' enterprises.Key Responsibilities:Perform thorough investigative analysis of...


  • Reston, Virginia, United States MSCCN Full time

    Job Title: Senior Security Technical Program ManagerAt MSCCN, we're committed to making the world a safer place for all. Our Security organization is at the forefront of this mission, and we're looking for a Senior Security Technical Program Manager to join our team.About the RoleWe're seeking a highly skilled and experienced Security Technical Program...

  • Senior IT Engineer

    3 weeks ago


    Reston, Virginia, United States Gotion Inc. Full time

    Job Title: Senior Information Technology EngineerJob Summary:Gotion Inc. is seeking a highly skilled Senior Information Technology Engineer to join our team. As a key member of our IT department, you will be responsible for designing, implementing, and maintaining our company's network infrastructure, ensuring the security and integrity of our systems.Key...


  • Reston, Virginia, United States Booz Allen Hamilton Full time

    Job Summary:Booz Allen Hamilton is seeking a Senior Network Engineer to join our team. As a Senior Network Engineer, you will be responsible for designing, developing, and implementing innovative network security solutions to support our country and protect our nation. You will oversee the development and implementation of Gigamon and network security...


  • Reston, Virginia, United States Leidos Full time

    Job SummaryLeidos is seeking a Senior Network and Security Operations Center Systems Engineer to support the Advanced Battle Management System's (ABMS) Digital Infrastructure (DI) Network Manager program. The successful candidate will be responsible for preventing, detecting, evaluating, analyzing, and mitigating system performance issues to maintain access...


  • Reston, Virginia, United States Deutsche Bank Full time

    Job Title: Senior Network Security EngineerJob Overview:Deutsche Bank is seeking a highly skilled Senior Network Security Engineer to join our Chief Security Office (CSO) team in Cary, North Carolina. As a key member of our global security team, you will be responsible for designing and engineering network security solutions that protect our organization's...


  • Reston, Virginia, United States Verisign Full time

    About the RoleWe are seeking a highly skilled Senior Cybersecurity Engineer to join our team at Verisign. As a key member of our Security Engineering team, you will be responsible for implementing, managing, and supporting diverse cyber tools and infrastructure systems.Key ResponsibilitiesLead the implementation and administration of cybersecurity tools and...


  • Reston, Virginia, United States Microsoft Full time

    Job DescriptionMicrosoft is seeking a highly skilled and experienced Senior Security Operations Manager to join our team. As a key member of our Security Operations team, you will be responsible for leading a team of security engineers, investigators, and responders to identify and respond to security threats in our cloud services.Key Responsibilities:Manage...


  • Reston, Virginia, United States MSCCN Full time

    Job SummaryMicrosoft is seeking a highly skilled Senior Security Technical Program Manager to join our team. As a key member of our security organization, you will be responsible for leading the development and implementation of security programs and initiatives that protect our customers' data and systems.Key Responsibilities:Analyze potential security...


  • Reston, Virginia, United States Microsoft Corporation Full time

    Job Title: Security Operations Engineering ManagerMicrosoft Corporation is seeking a highly skilled Security Operations Engineering Manager to join our team. As a key member of our security organization, you will be responsible for leading a team of security engineers, investigators, and responders in detecting, investigating, and responding to security...


  • Reston, Virginia, United States Ambient Security Full time

    Ambient Security is a pioneering startup that aims to revolutionize cybersecurity for large enterprises. Our founder and CEO is a seasoned entrepreneur with a proven track record of successful exits.We are seeking talented software engineers to lead the design and implementation of innovative security technologies. Our ideal candidate will have a passion for...


  • Reston, Virginia, United States VeriSign Full time

    Job Title: Senior Application Security EngineerVeriSign is seeking a highly skilled Senior Application Security Engineer to join our team. As a key member of our security team, you will be responsible for enhancing the security posture of our applications throughout their lifecycle.Key Responsibilities:Lead and participate in the design and implementation of...


  • Reston, Virginia, United States Iceberg Cyber Security Full time

    Join Our Team as a Cyber Fraud Data EngineerWe are seeking a highly skilled Cyber Fraud Data Engineer to join our team at Iceberg Cyber Security. As a key member of our team, you will play a critical role in bridging the gap between cybersecurity and data to fight financial crime and fraud.About the RoleThe successful candidate will have experience in...

  • Senior Data Engineer

    8 hours ago


    Reston, Virginia, United States Sparks Group Full time

    Job Summary: Sparks Group is seeking a highly skilled Data Engineer to design and implement data engineering solutions that protect sensitive data. The ideal candidate will have a strong background in cybersecurity and threat detection management.Responsibilities: Develop and maintain data pipelines, ELT/ETL processes, and APIs to facilitate data flow and...


  • Reston, Virginia, United States No Limit Technology, Inc. Full time

    Job Title: Senior Network EngineerWe are seeking a highly skilled Senior Network Engineer to join our team at No Limit Technology, Inc. The ideal candidate will have a strong background in networking fundamentals, cyber security, and experience with Zscaler for SASE.Key Responsibilities:Design and implement secure network architecturesConfigure and manage...