Cyber Security Detections Engineer at McIntire Solutions Springfield, VA

McIntire Solutions

Springfield (VA)

On-site

USD 80,000 - 110,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

McIntire Solutions is seeking a Cyber Security Detections Engineer in Springfield, VA. The role involves supporting Cyber Operations activities, analyzing malware, and formulating custom detection signatures.

Candidates should have a Bachelor’s Degree or equivalent cyber experience and 5+ years in a cyber role, with required DoD certifications. This is a dynamic position focusing on incident response and threat analysis.

Qualifications

  • Bachelor’s Degree or 4+ years of cyber experience in lieu of degree.
  • 5+ years of experience in a cyber role.
  • DoD 8570 certification meeting IAT Level II required.

Responsibilities

  • Support Cyber Operations Squadron activities for cybersecurity tool signatures.
  • Analyze malware and identify critical information for mitigation.
  • Perform incident trend analysis and reporting.

Skills

Reverse malware engineering
Analysis of network traffic
Creation of detection signatures
Incident response
Security Information and Event Management (SIEM)

Education

Bachelor’s Degree in Cybersecurity or relevant field

Tools

Windows
UNIX
Security Information and Event Management (SIEM)

Job description

Overview

Cyber Security Detections Engineer job at McIntire Solutions in Springfield, VA.

Seeking a motivated, career- and customer-oriented Cyber Security Engineer, Senior, to join our team in Springfield, VA area.

Responsibilities
  • Support Cyber Operations Squadron (COS) activities to publish up-to-date cybersecurity tool signatures (e.g. anti-virus and host-based security systems)
  • Provide focused analysis, including reverse malware engineering, against intrusion, anomalies, malware, and viruses to identify critical information about source, intended target, affected systems or hosts, recommended mitigation measures, and risk to mission
  • Formulate custom Security Information and Event Management (SIEM) tool content and IDS/IPS signatures to address threats
  • Perform security event and incident correlation using information gathered from a variety of sources within the enterprise
  • Analyze and assess damage to the data/infrastructure as a result of cyber incidents
  • Perform cyber incident trend analysis and reporting
  • Characterize and perform analysis of network traffic and system data to identify anomalous activity and potential threats to resources
  • Provide detection, identification, and reporting of possible cyber-attacks/intrusions, anomalous activities, and misuse activities
  • Create and deploy threat-based signatures for operational intrusion detection capabilities
  • Create and implement detection rules from intelligence reporting
Basic Qualifications
  • Bachelor’s Degree or 4+ years of additional cyber experience in lieu of degree
  • 5+ years of experience in a cyber role
  • Experience with modern Windows, UNIX, network operating systems, databases, and virtual computing
  • DoD 8570 certification meeting IAT Level II (GSEC, Security+, SSCP, or CCNASecurity) required
  • CNDSP-A (GCIA, GCIH, or CEH) or CNDSP-IR (GCIH, CSIH, or CEH) certification required
Demonstrated Technical Experience
  • Experience performing analysis of network traffic and correlating diverse security logs to make recommendations for signature development
  • Knowledge of implementation of counter-measures or mitigating controls
  • Ability to support incident response and forensic operations, including static/dynamic malware analysis and reverse engineering
  • Experience with enterprise security tools, including Security Information and Event Management (SIEM), Threat Intelligence Platforms (TIPs), or network monitoring tools
  • Experience in creating, modifying, tuning IDS signatures/SIEM correlation searches and other detection signatures
Preferred Qualifications
  • Proficient in Linux operating systems
  • Advanced skills in Linux/Unix (command line user - proficient and used in last 6 months)
  • Working knowledge of current COTS Cybersecurity technologies
  • Familiar with MITRE ATT&CK Framework
Security Clearance Requirements
  • TS/SCI w/Poly
Physical Requirements
  • Must be able to remain in a stationary position 50%
  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine, and computer printer
  • The person in this position frequently communicates with co-workers, management, and customers, which may involve delivering presentations
  • Must be able to exchange accurate information in these situations
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Cyber Security Analyst
Senior Cyber Security Analyst

MANTECH • Springfield (VA)

On-site
USD 110,000 - 160,000
Cyber Detections Engineer — SIEM & Malware Analysis
Cyber Detections Engineer — SIEM & Malware Analysis

McIntire Solutions • Springfield (VA)

On-site
USD 80,000 - 110,000
Cyber Incident Response Analyst
Cyber Incident Response Analyst

MANTECH • McLean (VA)

On-site
USD 90,000 - 130,000
Shift differential for 2nd shift
4-day work week
Cyber Security Specialist 4 - Springfield, VA
Cyber Security Specialist 4 - Springfield, VA

M.C. Dean, Inc • Springfield (VA)

On-site
USD 120,000 - 160,000
Competitive salary
Medical, dental, vision, life, and dis
401k Retirement Plan
+5
Senior Cybersecurity Defense Analyst III
Senior Cybersecurity Defense Analyst III

Invictus International • Alexandria (VA)

On-site
USD 130,000 - 190,000
Cyber Security Anlst Adv (TS/SCI with Poly Required)
Cyber Security Anlst Adv (TS/SCI with Poly Required)

GCI • North Dakota

On-site
USD 145,000 - 189,000
CYBERSECURITY ENGINEER
CYBERSECURITY ENGINEER

Y-Tech, LLC • Fort Belvoir (VA)

On-site
USD 80,000 - 110,000
Cyber Security Specialist 4 - Springfield, VA
Cyber Security Specialist 4 - Springfield, VA

M.C. Dean, Inc. • Springfield (VA)

On-site
USD 125,000 - 172,000
Medical, dental, vision insurance
401k Retirement Plan
Paid time off
+3
Cyber Security Engineer at ManTech McLean, VA
Cyber Security Engineer at ManTech McLean, VA

ManTech • McLean (VA)

On-site
USD 100,000 - 140,000
Cyber Defense Analyst Suitland, MD Top Secret/SCI R-00190180
Cyber Defense Analyst Suitland, MD Top Secret/SCI R-00190180

ESR Healthcare • Suitland (MD)

On-site
USD 120,000 - 160,000
Referral bonus $2,000