Cyber Systems Engineering, Lead Associate

Peraton

Wiesbaden

Vor Ort

EUR 90.000 - 144.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Eine komplette Bewerbung in einer Minute — maßgeschneiderter Lebenslauf und Anschreiben, versandbereit.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Peraton is hiring a Content Developer (Data Scientist) for its Regional Cyber Center-Europe program, onsite in Wiesbaden, Germany. The role focuses on SIEM content, data analytics pipelines, ML models, and dashboard creation to support threat detection and operational metrics.

Responsibilities include translating intelligence into SIEM queries and automated playbooks, with potential 2nd/3rd shifts. Requires DoD credentials, US citizenship, and relevant certifications.

Qualifikationen

  • Bachelor's degree in a STEM field or Business Administration; 11 years may substitute for degree.
  • Active DoD TS/SCI clearance required; U.S. citizenship required.
  • DoD 8140 - Cybersecurity (Cyber Defense Analyst) - Intermediate; certifications listed in the ad.

Aufgaben

  • Develop, tune, and maintain SIEM content in Elastic and/or Splunk.
  • Design automated data analytics pipelines for large security telemetry.
  • Create ML models for anomaly detection in DoD networks.
  • Build dashboards in Kibana, Splunk, or similar platforms for analysts and leadership.
  • Measure CSSP operational performance and produce regular reports.
  • Translate intelligence products into SIEM queries and automated playbooks.

Kenntnisse

Python
Elastic Stack
Splunk
Data Analytics
Machine Learning

Ausbildung

Bachelor's degree in STEM or Business Administration

Tools

Elastic
Splunk
Kibana
Grafana
MISP/OpenCTI

Jobbeschreibung

Responsibilities

Peraton is hiring a Content Developer (Data Scientist) for its' Regional Cyber Center-Europe program.

Location: On-site, Wiesbaden, Germany
Potentially 2nd/3rd Shift work
Responsibilities:
  • Develop, tune, and maintain SIEM detection content including correlation rules, alerts, and watch-lists in Elastic and/or Splunk to improve threat detection fidelity across CSSP monitoring systems
  • Design and build automated data analytics pipelines that ingest, normalize, and process large volumes of security telemetry to support real-time and historical threat analysis
  • Create custom algorithms and machine learning models for anomaly detection, behavioral base-lining, and advanced threat identification within DoD network environments
  • Develop interactive dashboards and data visualizations in Kibana, Splunk, or similar platforms that provide actionable situational awareness for analysts and leadership
  • Conduct metrics analysis to measure CSSP operational performance, detection coverage, and response effectiveness, producing regular reports for program management and government stakeholders
  • Support threat intelligence content development by translating finished intelligence products into actionable SIEM queries, detection signatures, and automated response playbooks
Qualifications
Required:
  • 5 years of data science, analytics, or SIEM content development experience with a Bachelor's degree in a STEM field or Business Administration; 11 years of relevant experience may substitute for degree.
  • Must meet TESA Qualifications.
  • DoD 8140 - Cybersecurity (Cyber Defense Analyst) - Intermediate
  • Certifications - must hold active certifications (one of the following):
    • GDAT (GIAC Defending Advanced Threats); OR
    • GDSA (GIAC Defensible Security Architecture); OR
    • Elastic Certified Analyst or Engineer; OR
    • ArcSight Enterprise Security Manager Advanced Analyst Certified Expert; OR
    • Microsoft Certified: Cybersecurity Architect Expert; OR
    • Azure DevOps Engineer Expert; OR
    • TCM Security PNPT
  • U.S. citizenship required
  • Active DoD TS/SCI clearance
Preferred:
  • Deep expertise with Elastic Stack (Elasticsearch, Logstash, Kibana, Beats) for SIEM content development and data pipeline management
  • Proficiency with Splunk SPL for advanced search, correlation rule development, and dashboard creation
  • Strong Python skills for data processing, algorithm development, and automation scripting
  • Familiarity with machine learning frameworks (e.g., scikit-learn, TensorFlow) for anomaly detection use cases
  • Experience with Kibana or Grafana for building operational security dashboards and visualizations
  • Knowledge of KQL (Kusto Query Language) for Microsoft Sentinel or Azure Log Analytics environments
  • Familiarity with ArcSight ESM for content development and event correlation in enterprise environments
  • Experience with threat intelligence platforms (e.g., MISP, OpenCTI) for converting intelligence into detection content
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Cyber Systems Engineering, Lead Associate
Cyber Systems Engineering, Lead Associate

Peraton • Deutschland

Vor Ort
EUR 90.000 - 143.000
Cyber Software Engineering, Lead Associate
Cyber Software Engineering, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 75.000 - 120.000
Senior Cyber Threat Analyst / Active TS/SCI
Senior Cyber Threat Analyst / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 144.000
Senior Cyber Response Analyst / Active TS/SCI
Senior Cyber Response Analyst / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 144.000
External Job Posting Title Cyber Software Engineering, Lead Associate
External Job Posting Title Cyber Software Engineering, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 74.000 - 119.000
Cyber Threat Analyst / Active TS/SCI
Cyber Threat Analyst / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 144.000
Cyber Response Analyst / Active TS/SCI
Cyber Response Analyst / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 144.000
External Job Posting Title Senior Cyber Response Analyst / Active TS/SCI
External Job Posting Title Senior Cyber Response Analyst / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 143.000
Senior Cyber Threat Analyst - Assessment / Active TS/SCI
Senior Cyber Threat Analyst - Assessment / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 144.000
Information Assurance and Security, Lead Associate
Information Assurance and Security, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 75.000 - 120.000