Remote Detection Engineer: SIEM & Threat Hunting

OpenTalent

Rockville (MD)

On-site

USD 70,000 - 90,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Blu Omega is seeking a Detection Engineer for a fully remote position supporting a federal program focused on protecting critical health systems and data. You will develop detections, write SPL queries, and maintain dashboards within Splunk while collaborating with SOC and incident response teams.

The role requires 2+ years in security monitoring, experience with Splunk, and familiarity with phishing analysis and threat hunting. NIH Public Trust clearance is a plus.

Qualifications

  • 2+ years of cybersecurity experience including security monitoring, SOC operations, SIEM, threat hunting, incident response, or detection engineering.
  • Experience with Splunk or a comparable SIEM platform and SPL queries.
  • Understanding of common cybersecurity threats and attacker techniques.

Responsibilities

  • Develop and maintain security alerts and detection rules within Splunk
  • Write and modify SPL queries to identify suspicious or potentially malicious activity
  • Create and maintain Splunk dashboards, reports, and security analytics
  • Review and tune existing detections to improve accuracy and reduce false positives
  • Support phishing detection and analysis using Cofense Triage or similar tools
  • Assist with the development and maintenance of YARA rules
  • Use SnapAttack and other security tools to support detection development and analysis
  • Leverage built-in security analytics and detections across cybersecurity tools
  • Support threat hunting and investigation of suspicious activity
  • Apply MITRE ATT&CK concepts to understand attacker behaviors and detection coverage
  • Work with SOC analysts, incident responders, and other cybersecurity team members to improve monitoring and detection capabilities
  • Document detection rules, queries, dashboards, and investigative procedures

Skills

SOC operations
Threat hunting
Incident response
Analytical skills
Communication

Tools

Splunk
SPL
Cofense Triage
YARA
SnapAttack
MITRE ATT&CK

Job description

Blu Omega is seeking a Detection Engineer for a fully remote position supporting a federal program focused on protecting critical health systems and data. You will develop detections, write SPL queries, and maintain dashboards within Splunk while collaborating with SOC and incident response teams.

The role requires 2+ years in security monitoring, experience with Splunk, and familiarity with phishing analysis and threat hunting. NIH Public Trust clearance is a plus.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Detection Engineer: Splunk & Threat Hunting
Remote Detection Engineer: Splunk & Threat Hunting

Blu Omega LLC • Rockville (MD)

Remote
USD 70,000 - 90,000
Remote Detection Engineer — Security Cleared
Remote Detection Engineer — Security Cleared

OpenTalent • Derwood (MD)

On-site
USD 120,000 - 150,000
Detection Engineer
Detection Engineer

Blu Omega LLC • Rockville (MD)

Remote
USD 70,000 - 90,000
Remote Cybersecurity Analyst: SIEM & Cloud Security
Remote Cybersecurity Analyst: SIEM & Cloud Security

Blu Omega LLC • Maryland

On-site
USD 75,000 - 95,000
Medical, Dental, and Vision coverage
401(k) with company match
Life and AD&D insurance
+10
Remote Splunk Detection Engineer - SIEM & Threat Detection
Remote Splunk Detection Engineer - SIEM & Threat Detection

Delan Associates, Inc • Lemont (IL)

Remote
USD 90,000 - 120,000
Remote work options
Government-furnished laptop
Flexible scheduling
SIEM Detection & Threat Hunting Engineer (Splunk)
SIEM Detection & Threat Hunting Engineer (Splunk)

Coalfire Systems • Chicago (IL)

Hybrid
USD 80,000 - 134,000
Remote Splunk Detection Engineer - Advanced SIEM
Remote Splunk Detection Engineer - Advanced SIEM

DivIHN Integration Inc • United States

Remote
USD 100,000 - 130,000
Remote SIEM Engineer: Detection & Analytics Lead
Remote SIEM Engineer: Detection & Analytics Lead

PowerToFly • Washington

On-site
USD 89,000 - 163,000
Senior SOC Engineer - Detection, Threat Hunting & SIEM
Senior SOC Engineer - Detection, Threat Hunting & SIEM

IT Data Consulting, LLC • Reston (VA)

On-site
Remote Threat Detection Engineer (SIEM & Threat Hunting)
Remote Threat Detection Engineer (SIEM & Threat Hunting)

Beacon Hill Staffing Group, LLC • Oklahoma City (OK)

On-site
USD 90,000 - 140,000