Detection Engineer / Splunk Content Developer

TopClearedRecruiting

McLean (VA)

On-site

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Full Medical Coverage
Quarterly Performance Bonuses
Education Reimbursement
Paid Time Off (PTO)
Team Building Events
Pet Insurance

Job summary

A government contracting company is seeking a Senior Detection Engineer/Splunk Content Developer to enhance cyber security efforts. The role requires at least 5 years of experience in cyber security and a Bachelor’s degree or equivalent. Responsibilities include managing network defense systems and identifying gaps in coverage. This position offers a comprehensive benefits package, including full medical coverage, 401k with matching, and generous paid time off policies.

Qualifications

  • Minimum of 5 years of experience in Cyber Security.
  • Demonstrated experience with Mitre ATT&CK required.
  • Excellent background with Splunk is necessary.

Responsibilities

  • Manage signatures, rules, and filters for network defense systems.
  • Identify gaps in visibility of cyber defense systems.
  • Track requirements to engineering partners.

Skills

Cyber Security experience
Splunk expertise
Information Security knowledge
Network Engineering skills
Mitre ATT&CK familiarity
Interpersonal skills
Analytical skills

Education

Bachelor's Degree or equivalent experience
DOD 8570 IAT Level I or CSSP-IR

Tools

SIEM tools
Splunk Processing Language

Job description

Detection Engineer / Splunk Content Developer
About the job Detection Engineer / Splunk Content Developer

Our client is looking for a Senior Detection Engineer to support an agency level contract defending the largest target in the world using your expertise in Host Based IDS, IPS and specialized network defense. This position will utilize the latest cyber tools available and assist in creating new ones and allow you to advance the nation's information security posture.

Responsibilities include, but are not limited to

  • Creation, editing, and management of signatures, rules and filters for specialized network defense systems including but not limited to:
  • Network and host based EDR/NDR, IDS, IPS, firewall, web application firewall
  • SOAR, Proxy, SIEM systems
  • Manages and administers the tuning of rules, signatures, and custom content for specialized CND applications and systems
  • Identifies potential conflicts with implementation of any CND tools within the enterprise and develop recommendations to remediate these conflicts
  • Participates in inter-agency relationships with partner organizations to facilitate mission execution
  • Provides and tracks requirements to engineering partners
  • Identifies gaps in visibility or coverage of cyber defense systems

Required Degrees &Certifications:

  • Security Clearance Requirements: TS/SCI + FS poly
  • DOD 8570 IAT Level I or CSSP-IR
  • Bachelors Degree and 4 years of related experience or 4 additional of years in lieu of degree

Required Skills

  • Minimum of 5 years of experience in Cyber Security, InfoSec, Security Engineering, Network Engineering with emphasis in cyber security issues and operations, computer incident response, systems architecture, data management
  • Demonstrated experience with Mitre ATT&CK
  • Excellent background with Splunk, Splunk ES, Splunk Processing Language
  • Experience analyzing cyber-attacks utilizing various log data sources
  • Excellent interpersonal, organizational, writing, communications, and briefing skills
  • Demonstrated expertise utilizing SIEM tools for use case development and application

Compensation and Financial Benefits

  • Full Medical Coverage: We cover 100% of the medical insurance premiums for you and your family.
  • Hourly Pay: Get paid for every hour you work (e.g., work 50 hours, get paid for 50).
  • Retirement Savings: Enjoy a robust 401k plan with a generous company match and profit-sharing opportunities.
  • Quarterly Performance Bonuses: Earn additional income based on your performance every quarter.
  • Recruiting Bonus: Receive up to $20,000 for successful referrals that lead to hires.

Work-Life Balance

  • Paid Time Off (PTO): Earn PTO at a rate of 10% of your billable hours, along with paid federal holidays and your birthday.
  • Government Shutdown Protection: In the event of a government shutdown due to weather or political reasons, you won’t have to use PTO for up to 5 calendar days per year.

Professional Development

  • Education Reimbursement: Generous reimbursement for formal education, certifications, and conferences, including paid time off for training.

Culture and Community

  • Team Building Events: Participate in monthly team-building events to strengthen relationships and enhance collaboration.
  • Employee Donations Matching: We match your donations to a variety of organizations, including veterans' groups, children’s charities, and human relations organizations.
  • Epic Company Events: Experience our legendary company holiday parties and summer events. Check out our 2024 Summer Event, 2023 Family Day, and Holiday Party!
  • Pet Insurance: Coverage for your furry family members.
  • Identity Protection: Safeguard your personal information with our identity protection benefits.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

TS/SCI Splunk Engineer — Mission-Critical Analytics
TS/SCI Splunk Engineer — Mission-Critical Analytics

Peraton • Riverdale Park (MD)

On-site
USD 112,000 - 179,000
Heavily subsidized employee benefits
25 days of PTO annually
Attractive bonus plan
Detection and Response Engineer
Detection and Response Engineer

United States Digital Space LLC • United States

Hybrid
USD 120,000 - 180,000
Paid parental leave
Certification reimbursement
Digital mental health support
+1
Lead Cyber Defense Incident ResponderOn-site - TS/SCI
Lead Cyber Defense Incident ResponderOn-site - TS/SCI

S2i2, Inc • Arlington (VA)

On-site
USD 175,000 - 180,000
Certification support
Accessible leadership
Regular company updates
+3
Lead Cyber Defense Incident Responder On-site - TS/SCI
Lead Cyber Defense Incident Responder On-site - TS/SCI

S2i2, Inc • Arlington (VA)

On-site
USD 175,000 - 180,000
Professional certifications support
Leadership development
Regular company updates
+3
Computer Network Defense Analyst
Computer Network Defense Analyst

Age Solutions • Columbus (OH)

On-site
USD 85,000 - 98,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+2
External Job Posting Title Cyber Monitoring Signature Analyst
External Job Posting Title Cyber Monitoring Signature Analyst

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
Cyber Monitoring Signature Analyst
Cyber Monitoring Signature Analyst

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • Washington

On-site
USD 120,000 - 180,000
Free Platinum-Level Medical/Dental/VIs
401k from Day 1
PTO + 11 federal holidays
+4
Splunk Engineer - Active TS/SCI Required
Splunk Engineer - Active TS/SCI Required

ENS Solutions, LLC • Chesapeake (VA)

On-site
USD 110,000 - 160,000
Free Platinum-Level Medical/Dental/Vis
401k Contribution from Day 1
PTO + 11 Paid Federal Holidays
+4
Splunk Detection Engineer
Splunk Detection Engineer

Delan Associates, Inc • Lemont (IL)

Remote
USD 90,000 - 120,000
Remote work options
Government-furnished laptop
Flexible scheduling