Enable job alerts via email!

Security Detection Engineer

Unisys

Rockville (MD)

On-site

USD 90,000 - 155,000

Full time

9 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as a Security Detection Engineer, where your expertise in threat detection and incident response will play a vital role in safeguarding the organization. This position involves designing advanced security systems, collaborating with various teams, and continuously improving security measures. You will be at the forefront of identifying and mitigating threats in a dynamic environment, making your contributions essential to the company's security posture. If you're passionate about cybersecurity and eager to make an impact, this role offers an exciting opportunity to grow and innovate.

Benefits

Medical insurance
Vision insurance
401(k)

Qualifications

  • Experience in designing and developing security monitoring solutions.
  • Ability to analyze logs and network traffic to identify threats.

Responsibilities

  • Design and maintain advanced threat detection systems.
  • Collaborate with Incident Response team for security incidents.
  • Document security threats and response actions clearly.

Skills

Detection Engineering
SOC
Splunk (SOAR)
Python

Education

Basic understanding of network protocols and operating systems
Certifications such as CompTIA Security+ or GIAC

Tools

SIEM (e.g., Splunk, ArcSight)
IDS/IPS
Endpoint protection tools

Job description

Direct message the job poster from Unisys

Detection engineering focus. Incident response, Splunk(SOAR), EDR tools, SOC

Must have’s:

  • Detection Engineering specialty
  • SOC
  • Splunk (especially Splunk SOAR)ßwe will be doing automation with SOAR

Nice to have

  • Python

JD: We are seeking a skilled and proactive Security Detection Engineer to join our Security Operations team. This role is pivotal in identifying, analyzing, and mitigating security threats and vulnerabilities in our environment. The ideal candidate will have a deep understanding of security systems, threat detection techniques, and a strong ability to design and develop security monitoring solutions.

Key Responsibilities:

• Threat Detection and Monitoring:

o Design, implement, and maintain advanced threat detection systems, including intrusion detection/prevention systems (IDS/IPS), Security Information and Event Management (SIEM), and endpoint detection.

o Continuously monitor security alerts and logs to identify signs of malicious activity or vulnerabilities within the network.

o Develop and tune detection rules, signatures, and patterns to identify threats in real-time.

o Collaborate with the Incident Response team to analyze security incidents, identify the root cause, and work on mitigation strategies.

o Conduct forensic investigations to understand the scope and impact of security incidents.

• Security Intelligence and Automation:

o Research emerging security threats/vulnerabilities and integrate intelligence feeds into detection systems.

o Implement automation strategies for faster threat detection and response times.

• Collaboration with Other Teams:

o Work closely with IT, DevOps, and Security teams to ensure all systems are secure by design and actively monitored.

o Provide security expertise for the design and implementation of secure architecture for internal and external services.

• Reporting and Documentation:

o Document security threats, incidents, and response actions in a clear and concise manner.

o Provide regular reporting on security detection activities, including metrics on threats detected, false positives, and incidents mitigated.

o Perform regular tuning and optimization of detection rules to minimize false positives and maximize detection effectiveness.

o Stay up to date on security trends, tools, and methodologies, and apply them to enhance the security posture of the organization.

Required Qualifications:

• Basic understanding of network protocols, operating systems, and cybersecurity principles.

• Experience with common security tools such as SIEM (e.g., Splunk, ArcSight), IDS/IPS, firewalls, endpoint protection, and antivirus solutions.

• Understanding of common attack vectors (e.g., phishing, malware, DDoS) and defense mechanisms.

• Ability to analyze logs, network traffic, and system activity to identify potential threats.

Preferred Qualifications:

• Knowledge of security frameworks such as NIST, CIS, or ISO 27001.

• Certifications such as CompTIA Security+, GIAC Certified Detection Analyst (GCDA), GIAC Certified Incident Handler (GCIH), Cisco CCNA Security, or other cybersecurity-related certifications are a plus.

• Strong analytical and problem-solving skills, with attention to detail.

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    IT Services and IT Consulting

Referrals increase your chances of interviewing at Unisys by 2x

Inferred from the description for this job

Medical insurance

Vision insurance

401(k)

Get notified when a new job is posted.

Sign in to set job alerts for “Security Engineer” roles.

Washington, DC $110,000.00-$165,000.00 4 months ago

Security Engineer with Cloud Operations - 100% Remote

Gaithersburg, MD $127,000.00-$145,000.00 3 months ago

Security Engineer (SIEM/SOAR/SOC Optimization) - Mid-Atlantic region (Remote in NC, VA, WV, MD, DC, DE, NJ, or PA)
Cloud Security - Information Security Engineer- Remote

Reston, VA $110,000.00-$130,000.00 3 months ago

District of Columbia, United States 2 weeks ago

Rockville, MD $90,000.00-$155,000.00 5 months ago

Cybersecurity Engineer (SOAR) [JOB ID 20250501]
Cybersecurity Engineer (SOAR) [JOB ID 20250501]

Arlington, VA $90,000.00-$105,000.00 1 month ago

Information Systems Security Engineer (COMSEC)

Washington, DC $90,000.00-$145,000.00 5 months ago

Cleared Information Systems Security Engineer

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cyber Security Detection Engineer - (Fulltime)100% Remote

The Dignify Solutions, LLC

Jersey City

Remote

USD 90,000 - 150,000

2 days ago
Be an early applicant

Security Detection Engineer

Experis

Rockville

On-site

USD 70,000 - 110,000

2 days ago
Be an early applicant

Offensive Security Engineer

Employers Holdings

Remote

USD 80,000 - 115,000

Yesterday
Be an early applicant

Offensive Security Engineer

Plurilock

Remote

USD 90,000 - 110,000

2 days ago
Be an early applicant

Security DevSecOps Specialist

Akkodis

Remote

USD 90,000 - 110,000

Today
Be an early applicant

Senior Cybersecurity Analyst

Covington & Burling LLP

New York

Remote

USD 117,000 - 166,000

10 days ago

Application Security Engineer

Pennylane

Remote

USD 125,000 - 259,000

11 days ago

Security Endpoint Engineer / Administrator

The DNA Group

Washington

On-site

USD 110,000 - 177,000

3 days ago
Be an early applicant

Senior Information Security Engineer – Cloud - Remote

Caris Life Sciences

Remote

USD 125,000 - 180,000

Today
Be an early applicant