Cyber Systems Engineering, Lead Associate

Peraton

Erbenheim

Vor Ort

EUR 88.616 - 141.445

Vollzeit

14 Tage+

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Peraton is seeking a Content Developer (Data Scientist) for its Regional Cyber Center-Europe program in Wiesbaden, Germany. This on-site role involves developing SIEM detection content and automated data analytics pipelines while applying your deep expertise in the Elastic Stack and Splunk. Candidates must have a Bachelor's degree, with five years of relevant experience, and must be U.S. citizens with an active DoD TS/SCI clearance. A comprehensive understanding of cybersecurity and data science is essential for this position.

Qualifikationen

  • 5 years of relevant experience in data science, analytics, or SIEM content development.
  • Must meet TESA Qualifications.
  • U.S. citizenship and active DoD TS/SCI clearance required.

Aufgaben

  • Develop and maintain SIEM detection content to improve threat detection fidelity.
  • Design automated data analytics pipelines for security telemetry.
  • Create custom algorithms and machine learning models for anomaly detection.

Kenntnisse

Data science
Analytics
SIEM content development
Python
Elastic Stack
Splunk SPL
Machine learning frameworks

Ausbildung

Bachelor's degree in a STEM field or Business Administration

Tools

Elastic Stack
Splunk
Kibana
Azure DevOps

Jobbeschreibung

Responsibilities

Peraton is hiring a Content Developer (Data Scientist) for its Regional Cyber Center-Europe program.

Location: On-site, Wiesbaden, Germany

Potentially 2nd/3rd Shift work

Responsibilities:
  • Develop, tune, and maintain SIEM detection content including correlation rules, alerts, and watch-lists in Elastic and/or Splunk to improve threat detection fidelity across CSSP monitoring systems
  • Design and build automated data analytics pipelines that ingest, normalize, and process large volumes of security telemetry to support real-time and historical threat analysis
  • Create custom algorithms and machine learning models for anomaly detection, behavioral base-lining, and advanced threat identification within DoD network environments
  • Develop interactive dashboards and data visualizations in Kibana, Splunk, or similar platforms that provide actionable situational awareness for analysts and leadership
  • Conduct metrics analysis to measure CSSP operational performance, detection coverage, and response effectiveness, producing regular reports for program management and government stakeholders
  • Support threat intelligence content development by translating finished intelligence products into actionable SIEM queries, detection signatures, and automated response playbooks
Qualifications

Required:

  • 5 years of data science, analytics, or SIEM content development experience with a Bachelor's degree in a STEM field or Business Administration; 11 years of relevant experience may substitute for degree.
  • Must meet TESA Qualifications.
  • DoD 8140 - Cybersecurity (Cyber Defense Analyst) - Intermediate
  • Certifications – must hold active certifications (one of the following):
    • GDAT (GIAC Defending Advanced Threats)
    • GDSA (GIAC Defensible Security Architecture)
    • Elastic Certified Analyst or Engineer
    • ArcSight Enterprise Security Manager Advanced Analyst Certified Expert
    • Microsoft Certified: Cybersecurity Architect Expert
    • Azure DevOps Engineer Expert
    • TCM Security PNPT
  • U.S. citizenship required
  • Active DoD TS/SCI clearance

Preferred:

  • Deep expertise with Elastic Stack (Elasticsearch, Logstash, Kibana, Beats) for SIEM content development and data pipeline management
  • Proficiency with Splunk SPL for advanced search, correlation rule development, and dashboard creation
  • Strong Python skills for data processing, algorithm development, and automation scripting
  • Familiarity with machine learning frameworks (e.g., scikit-learn, TensorFlow) for anomaly detection use cases
  • Experience with Kibana or Grafana for building operational security dashboards and visualizations
  • Knowledge of KQL (Kusto Query Language) for Microsoft Sentinel or Azure Log Analytics environments
  • Familiarity with ArcSight ESM for content development and event correlation in enterprise environments
  • Experience with threat intelligence platforms (e.g., MISP, OpenCTI) for converting intelligence into detection content

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Cyber Systems Engineering, Lead Associate
Cyber Systems Engineering, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 60.000 - 85.000
Senior Cyber Response Analyst / Active TS/SCI
Senior Cyber Response Analyst / Active TS/SCI

Peraton • Erbenheim

Vor Ort
EUR 88.000 - 142.000
Cyber Response Analyst / Active TS/SCI
Cyber Response Analyst / Active TS/SCI

Peraton • Erbenheim

Vor Ort
EUR 88.000 - 142.000
Cyber Incident Handling Analyst / Active TS/SCI
Cyber Incident Handling Analyst / Active TS/SCI

Peraton • Erbenheim

Vor Ort
EUR 88.000 - 142.000
Cyber Software Engineering, Lead Associate
Cyber Software Engineering, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 60.000 - 80.000
Senior Cyber Incident Handling Analyst / Active TS/SCI
Senior Cyber Incident Handling Analyst / Active TS/SCI

Peraton • Erbenheim

Vor Ort
EUR 88.000 - 142.000
Information Assurance and Security, Lead Associate
Information Assurance and Security, Lead Associate

Peraton • Deutschland

Vor Ort
EUR 74.000 - 120.000
Senior Systems Administration Support (UNIX/Linux OS) / Active Secret
Senior Systems Administration Support (UNIX/Linux OS) / Active Secret

Peraton • Erbenheim

Vor Ort
EUR 95.000 - 153.000
Cyber Threat Analyst - Assessment / Active TS/SCI
Cyber Threat Analyst - Assessment / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 68.000 - 110.000
Medical insurance
401(k)
Paid time off (PTO)
Senior Cyber Threat Analyst - Assessment / Active TS/SCI
Senior Cyber Threat Analyst - Assessment / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 88.000 - 142.000
Medical, dental, and vision insurance
401(k) plan
Paid time off