Detection Engineer

Edgewater Federal Solutions

Bethesda (MD)

On-site

USD 120,000 - 140,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Edgewater Federal Solutions seeks a Detection Engineer in Bethesda, MD to join the Cyber Security Ops team. The role focuses on Splunk monitoring, threat hunting, incident response, and security automation for a federal healthcare client.

The candidate will develop dashboards, alerts, KO objects, and run analyst trainings while collaborating with leadership and stakeholders to strengthen security posture.

Qualifications

  • U.S. Citizenship is required per contract to obtain and maintain a U.S. security clearance.
  • At least 5 years of strong problem-solving capabilities and the ability to effectively communicate solutions.
  • One or more certifications in information security (such as GCIA, GCIH, CEH, CISSP, SSCP, Sec+, etc)
  • Strong understanding of Adversary TTPs, Network & Host Security
  • At least 5 years of Splunk and SIEM experience
  • At least 3 years of Endpoint/host forensics experience
  • Excellent verbal, written, and interpersonal skills (command of English language)
  • Strong written and verbal skills to effectively communicate at all levels in government and industry.

Responsibilities

  • Maintain and operate Splunk application monitoring tool as part of the client Cybersecurity network and application audit and monitoring program within the TMIR team.
  • Apply strategic, operational, and tactical cyber intelligence to improve security operations.
  • Lead and/or support efforts to prepare for, monitor, detect, analyze/confirm, contain, remediate, and recover from security incidents
  • Develop & Implement Actionable Alerts and Workflow for Splunk as a CISO Monitoring tool
  • Develop and Implement Apps & Knowledge Objects (KO) like Dashboards, Reports, Data Models
  • Provide Analyst training and workshops on using Splunk
  • Develop and implement automation and efficiencies with Splunk
  • Communicate with customer stakeholders to include leadership, support teams, and system administrators.

Skills

Problem solving
Strong communication
Analytical thinking
Collaboration
Attention to detail
Customer service focus
Self-motivation
Organizational skills

Tools

Splunk
Microsoft Office

Job description

Detection Engineer

Edgewater is seeking a Detection Engineer. As a Splunk User and Entity Behavior (UBA) Engineer, you'll join a Cyber Security Ops organization that supports a leading federal healthcare client.

Job Details
  • ID: 2026-4749
  • Category: Information Technology
  • Type: Full Time
  • Job Locations: US-MD-Bethesda
Responsibilities
  • Maintain and operate Splunk application monitoring tool as part of the client Cybersecurity network and application audit and monitoring program within the Threat Monitoring and Incident Response (TMIR) team.
  • Apply strategic, operational, and tactical cyber intelligence to improve security operations.
  • Lead and/or support efforts to prepare for, monitor, detect, analyze/confirm, contain, remediate, and recover from security incidents
  • Develop & Implement Actionable Alerts and Workflow for Splunk as a CISO Monitoring tool
  • Develop and Implement Apps & Knowledge Objects (KO) like Dashboards, Reports, Data Models
  • Provide Analyst training and workshops on using Splunk
  • Develop and implement automation and efficiencies with Splunk
  • Communicate with customer stakeholders to include leadership, support teams, and system administrators.
  • Conduct deep analysis and hunting operations.
  • Configure incident response and remediation workflows for ES
  • Perform TMIR technical writing and creation of formal documentation such as reports, training material, and architecture diagrams.
  • Develop and build excellent relationships with prospects, clients, and internal team members.
  • Co-lead client calls and communications including the development of presentations, status reports, and requirements documents.
  • Ability to take direction and achieve quality results, independently strive for personal excellence when completing tasks.
Qualifications
  • U.S. Citizenship is required per contract to obtain and maintain a U.S. security clearance.
  • Experience in a rapid paced, time sensitive, high-quality environment.
  • At least 5 years of strong problem-solving capabilities and the ability to effectively communicate solutions.
  • One or more certifications in information security (such as GCIA, GCIH, CEH, CISSP, SSCP, Sec+, etc)
  • Sound cyber security knowledge foundation, to include understanding of:
  • Strong understanding of Adversary TTPs, Network & Host Security
  • At least 5 years of Splunk and SIEM experience
  • At least 3 years of Trend spotting, identifying intelligence knowledge gaps, and performing analysis on threat data.
  • High technical ability/aptitude, demonstrated through prior technical experience and accomplishment
  • At least 3 years of Endpoint/host forensics experience
  • Excellent verbal, written, and interpersonal skills (command of English language)
  • Strong written and verbal skills to effectively communicate at all levels in government and industry.
  • Exceptionally self-motivated, directed, and detail oriented.
  • Must be able to learn, understand and apply new technologies.
  • Excellent organizational, analytical and problem-solving abilities.
  • Working knowledge of Microsoft Office (Outlook, Word, Excel, PowerPoint, Project, and SharePoint).
  • At least 3 years of Experience in a rapid paced, time sensitive, high-quality environment.
  • History of ethical performance.
  • Exhibit considerable client delivery, business development, and proposal development experience.
  • Strong management, teamwork, and interpersonal skills against difficult due dates and timelines. Strong customer service focus to meet the needs of internal and external customers.
  • Professional, pleasant, and polished demeanor.
  • Ability to work collaboratively with others.
  • Ability to maintain confidentiality of sensitive information within and external to EdgeWater, using own judgment.
  • Strong eye for small details that make a difference.
Desired
  • Ten or more years of cyber security work experience in Threat Hunting, Splunk Content Development, and Incident Response.
  • Active Public Trust clearance
  • Experience and effective participation in hunt, computer network defense, real-time analysis and incident response activities, to include ability to reconstruct events from network, endpoint, and log data
  • Experience and understanding of host-based/endpoint protection systems

Salary: $120,000 - $140,000

About Us

Edgewater Federal Solutions is a privately held government contracting firm located in Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services and timely delivery. Edgewater Federal Solutions is ISO 9001, 20000-1, 270001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies since 2018.

It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other statuses protected by applicable law.status protected by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Splunk & UBA Detection Engineer
Senior Splunk & UBA Detection Engineer

Edgewater Federal Solutions • Bethesda (MD)

On-site
USD 120,000 - 140,000
Cyber Security Engineer
Cyber Security Engineer

Edgewater Federal Solutions, Inc. • Washington

Hybrid
USD 110,000 - 125,000
Detection and Response Engineer
Detection and Response Engineer

United States Digital Space LLC • United States

Hybrid
USD 120,000 - 180,000
Paid parental leave
Certification reimbursement
Digital mental health support
+1
Cyber Security Engineer
Cyber Security Engineer

Edgewater Federal Solutions • Washington

Hybrid
USD 110,000 - 125,000
Sr Splunk Detection Engineer
Sr Splunk Detection Engineer

Cherokee Federal • Almont (CO)

On-site
USD 150,000 - 160,000
Medical
Dental
Vision
+1
Detection Engineer / Splunk Content Developer
Detection Engineer / Splunk Content Developer

TopClearedRecruiting • McLean (VA)

On-site
USD 100,000 - 130,000
Full Medical Coverage
Quarterly Performance Bonuses
Education Reimbursement
+3
Information Assurance Specialist
Information Assurance Specialist

Edgewater Federal Solutions, Inc. • Washington

On-site
USD 100,000 - 140,000
Recruiting Sourcer
Recruiting Sourcer

Edgewater Federal Solutions • Juan Tabo Hills (NM)

On-site
USD 52,000 - 76,000
Splunk Detection Engineer
Splunk Detection Engineer

Boston Government Services • Los Alamos (NM)

Hybrid
USD 120,000 - 180,000
Health Insurance
401K
Paid Vacation
+4
Detection Engineer
Detection Engineer

Deepwatch • Tampa (FL)

Hybrid
USD 94,000 - 119,000
Medical, dental, vision, and disability insurance
Flexible Time Off (FTO)
401(K) retirement program