Detection Engineer

3 weeks ago


Ashburn, United States Gray Tier Technologies Full time

Primary Responsibilities:

  • Identify gaps in malicious activity detection capabilities
  • Create new signatures / rules to improve detection of malicious activity
  • Test and tune existing signatures / rules to ensure low rate of false positives
  • Assist in playbook development for alert triage and Incident Response
  • Define and implement alert and threat detection metrics, statistics, and analytics
  • Recommend new tools/technologies to improve network visibility
  • Support Incident Response and Forensic operations as required to include static/dynamic malware analysis and reverse engineering
  • Author and maintain scripts for threat detection and automation

Basic Qualifications:

The Cyber Threat Detection Engineer SME shall have the following qualifications: 

  • In-depth knowledge of Firewalls/Proxies/Intrusion Detection Systems/ Domain Name Servers/DHCP/VPN and other network technologies and tools
  • Experience updating, maintaining, and creating IDS variables within a complex enterprise network
  • Expert in creating, modifying, tuning IDS signatures/SIEM Correlation Searches/yara rules  and/or other detection signatures
  • Familiarity with disk based forensic methodologies, Windows, and Linux forensic artifacts
  • Experience with Endpoint Detection and Response (EDR) tools such as Carbon Black, Tanium, Crowdstrike, etc
  • Able to create, modify, update, and maintain Python and Powershell scripts that enhance endpoint detection capabilities
  • In-depth knowledge of attacker tactics, techniques, and procedures
  • Author, test, and maintain automation scripts within SOAR platform

The candidate must currently possess a Secret Clearance.

BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience.

Should have 5 years of experience serving as a digital media analyst or as a computer forensic analyst.

Ability to work independently with minimal direction; self-starter/self-motivated

Preferred Qualifications:

One of the following certifications:
SANS Global Information Assurance Certification (GIAC) Certified Intrusion Analyst (GCIA)
SANS Global Information Assurance Certification (GIAC) Certified Forensic Analyst (GCFA)
SANS Global Information Assurance Certification (GIAC) Certified Network Forensic Analyst (GNFA)
Certified Information System Security Professional (CISSP)



  • Ashburn, United States Federal Staffing Solutions Inc. Full time

    Job DescriptionJob DescriptionWe connect our employees with some of the best opportunities around.Time and time again, our employees tell us that the most important thing we offer is respect. Federal Staffing Solutions puts people to work in all types of jobs. When you work with us, you build a relationship with a team of employment professionals in your...


  • Ashburn, United States Base One Technologies Full time

    BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media Primary Responsibilities Identify gaps in malicious activity detection capabilities Create new...


  • Ashburn, United States Cypher LLC Full time

    Job DescriptionJob Description *************MUST HAVE GOVERNMENT CLEARANCE LEVEL FULLSCOPE***************Department: Information Technology / Network OperationsOverviewWe are seeking a highly skilled and motivated Network Automation Engineer with a full-scope polygraph to join our Network Operations team. The ideal candidate will have a strong foundation in...


  • Ashburn, United States Cypher Corporation Full time

    *************MUST HAVE GOVERNMENT CLEARANCE LEVEL FULLSCOPE*************** Department: Information Technology / Network Operations Overview We are seeking a highly skilled and motivated Network Automation Engineer with a full-scope polygraph to join our Network Operations team. The ideal candidate will have a strong foundation in network engineering...


  • Ashburn, United States Cypher Corporation Full time

    *************MUST HAVE GOVERNMENT CLEARANCE LEVEL FULLSCOPE*************** Department: Information Technology / Network Operations Overview We are seeking a highly skilled and motivated Network Automation Engineer with a full-scope polygraph to join our Network Operations team. The ideal candidate will have a strong foundation in network engineering...


  • Ashburn, United States Cypher Corporation Full time

    *************MUST HAVE GOVERNMENT CLEARANCE LEVEL FULLSCOPE*************** Department: Information Technology / Network Operations Overview We are seeking a highly skilled and motivated Network Automation Engineer with a full-scope polygraph to join our Network Operations team. The ideal candidate will have a strong foundation in network engineering...


  • Ashburn, United States Armaments Research Company Full time

    Department: Engineering Employment Type: Permanent - Full Time Location: Hybrid Description You will be joining ARC at an exciting time and filling a key role in developing and maintaining essential machine learning solutions, handling and supporting data and data pipelines, and engaging in exploration to improve and expand ARC's data-driven capabilities....

  • Building Engineer

    3 weeks ago


    Ashburn, United States Pennant Solutions Group Full time

    Job DescriptionJob DescriptionPennant Solutions Group is in search of a building engineer in the Ashburn, VA area. Pay is $40/hr. As a Building Engineer, you will maintain basic operation and maintenance of all building equipment and systems by routinely reviewing operating conditions and established programs with Supervisor to understand and resolve any...

  • Building Engineer

    3 weeks ago


    Ashburn, United States Pennant Solutions Group Full time

    Job DescriptionJob DescriptionPennant Solutions Group is in search of a building engineer in the Ashburn, VA area. Pay is $40/hr. As a Building Engineer, you will maintain basic operation and maintenance of all building equipment and systems by routinely reviewing operating conditions and established programs with Supervisor to understand and resolve any...

  • Splunk Engineer

    2 weeks ago


    Ashburn, Virginia, United States OneZero Solutions Full time

    We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time...


  • Ashburn, Virginia, United States Excentium Full time

    Senior Cybersecurity Engineer Lead Excentium, Inc. is a Service-Disabled Veteran owned small business (SDVOSB) that provides Cyber Security Engineering, Information Assurance (IA), management, Certification and Accreditation (C&A), and other IT services to government and commercial organizations. We have an opportunity for a Senior Cybersecurity Engineer...

  • OpenShift Engineer

    1 week ago


    Ashburn, United States CACI International Inc Full time

    OpenShift EngineerJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: NoneEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: Local* * * We are seeking a skilled and experienced OpenShift Engineer to join our team. The successful candidate will be responsible for designing, implementing, and...


  • Ashburn, United States Syms Strategic Group, LLC (SSG) Full time

    Job DescriptionJob DescriptionSyms Strategic Group (SSG) is seeking a talented Senior Zero Trust EngineerDepartment: Veterans AffairsLocation: RemoteType: Full TimeMin. Experience: ExperiencedSecurity Clearance Level: Public Trust (MBI) Military Veterans are highly encouraged to apply! Essential Duties and ResponsibilitiesMust be Clearable to Receive...

  • Splunk Engineer

    3 weeks ago


    Ashburn, United States Agile Defense Full time

    Agile Defense We are in the business of innovation through information technology and cybersecurity, delivered exceptionally. View company page Agile Defense provides leading-edge Digital Transformation solutions to support and advance our customers' mission. We deliver innovative and high-quality services to our customers worldwide through an empowered and...


  • Ashburn, United States Agile Defense Full time

    Agile Defense We are in the business of innovation through information technology and cybersecurity, delivered exceptionally. View company page Agile Defense provides leading-edge Digital Transformation solutions to support and advance our customers' mission. We deliver innovative and high-quality services to our customers worldwide through an empowered and...

  • Site Engineer II

    4 weeks ago


    Ashburn, Virginia, United States Digital Realty - Multi-Lingual 2023 Full time

    We currently have multiple positions open for Site Engineer II and Site Engineer I in the following locations:IAD039 - LIAD040 - MIAD041 - PIAD042 - R Your roleThe Site Engineer II position is a contributing member to the site level Data Center Operations team assigned to one or more of our data center properties reporting directly to the Manager of Facility...

  • Site Engineer II

    1 month ago


    Ashburn, Virginia, United States Digital Realty - Multi-Lingual 2023 Full time

    We currently have multiple positions open for Site Engineer II and Site Engineer I in the following locations:IAD039 - LIAD040 - MIAD041 - PIAD042 - R Your roleThe Site Engineer II position is a contributing member to the site level Data Center Operations team assigned to one or more of our data center properties reporting directly to the Manager of Facility...

  • Site Engineer II

    2 weeks ago


    Ashburn, Virginia, United States Digital Realty Full time

    Job DescriptionYour role The Engineer II position is a contributing member to the site level Data Center Operations team assigned to one or more of our data center properties reporting directly to the Manager of Facility Engineering. The Engineer II will have experience in mission critical infrastructure, including Generators, UPS Systems, HVAC Systems,...

  • Financial Engineering

    3 weeks ago


    Ashburn, United States Zillion Technologies Inc Full time

    ***100% REMOTE. CANDIDATES FROM MCLEAN, VA OR PLANO, TX OR ATLANTA, GA OR NEW YORK CITY, NY ARE ENCOURAGED TO APPLY*** ***THIS ROLE IS NOT OPEN TO SPONSORED CANDIDATES AT THIS TIME!*** ***THIS ROLE IS FOR A DIRECT CLIENT*** Financial Engineering / Product Management Analyst Duration: Long term contract. Initial contract duration is for 6 months....

  • Site Engineer II

    4 weeks ago


    Ashburn, United States Digital Realty Full time

    Job Description We currently have multiple positions open for Site Engineer II and Site Engineer I in the following locations: IAD039 - L IAD040 - M IAD041 - P IAD042 - R Your role The Site Engineer II position is a contributing member to the site level Data Center Operations team assigned to one or more of our data center properties reporting directly to...