Senior Systems Test Engineer (Cloud) Ogden, Utah

BuddoBot Inc.

Ogden (UT)

On-site

USD 90,000 - 145,000

Full time

8 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Dark Wolf Solutions is seeking a Defensive Cyber Operations Analyst to monitor systems continuously, detect malicious activity, and support containment and remediation across on-prem ELK and AWS GovCloud (Splunk). The role emphasizes AI-assisted threat analysis and rapid incident response, operating on-site at Hill AFB in Ogden, Utah.

Applicants should bring 4+ years of cybersecurity experience, hands-on exposure to Splunk/ELK, DoD policy familiarity, and a DoD CSSP certification.

Qualifications

  • 4+ years of relevant cybersecurity experience including direct SOC / vSOC / CSSP incident response.
  • 2+ years using Splunk Enterprise and ELK Stack for correlation and threat detection.
  • Direct experience monitoring AWS GovCloud (CloudTrail, VPC Flow Logs, GuardDuty).
  • Hands-on GitLab usage for CI/CD pipelines or DevSecOps workflows.
  • 2+ years applying DoD cybersecurity requirements and assessment/authorization activities.
  • DoD 8140/8570 CSSP Certification (CEH, Security+, GCIH, CySA+ or equivalent) required.
  • Bachelor's degree in Computer Science, Information Technology, or related field.

Responsibilities

  • Active monitoring, detection, and analysis across on-prem (ELK) and AWS GovCloud (Splunk).
  • Use AI-assisted analysis and data correlation to triage security events and reduce response times.
  • Perform vulnerability management actions and implement mitigations.
  • Conduct intrusion analysis and suggest improvements for detection and mitigation.
  • Participate in Root Cause Analysis and document mitigation efforts.
  • Develop DCO tactics, techniques, and procedures (TTPs) and supporting docs.
  • Identify security discrepancies and respond to incidents.
  • Draft documentation for briefings, reports, and analyses.
  • Participate in customer exercises; may require after-hours involvement.
  • Adhere to policies, master plans, and schedules; complete training as required.

Skills

SOC incident response
Threat detection
AI/ML security tools
Cloud security
ELK Splunk
GitLab / DevSecOps

Education

Bachelor's degree in Computer Science/IT

Tools

Splunk Enterprise
ELK Stack
AWS GovCloud
GitLab
SPL / Kibana QL

Job description

Dark Wolf Solutions is looking for a Defensive Cyber Operations Analyst who will perform continuous system monitoring to identify malicious cyber-attacks while supporting the containment and remediation of IT threats. This role will function as an operator responsible for hands‑on incident response, correlation, and threat detection both on-premise using ELK and across AWS GovCloud environments using Splunk Enterprise. Additionally, this position will leverage Artificial Intelligence (AI) and Machine Learning capabilities to enhance threat detection, streamline incident analysis, and accelerate response actions across monitored networks and applications. This role will be fully on-site at Hill AFB in Ogden, Utah.


Key Responsibilities:

  • Active monitoring, detection, and analysis across on-prem (ELK) and cloud-hosted AWS GovCloud (Splunk Enterprise) environments.
  • Utilize AI-assisted analysis, automation, and correlation of data from various log sources to triage security events, detect anomalies, and reduce response times for complex threats.
  • Vulnerability Management actions to include providing recommendations and implement mitigations.
  • Conduct intrusion analysis and correlation of unauthorized activities; provide and implement recommendations to improve detection and customer mitigation processes.
  • Participate in the Root Cause Analysis process and documentation capturing efforts taken to mitigate unauthorized actions.
  • Participate in the development of DCO tactics, techniques, and procedures (TTPs) and supporting documentation.
  • Identify security discrepancies and report and respond to security incidents.
  • Provide research and analysis in support of expanding programs and areas of responsibility.
  • Draft documentation for briefings, reports, and informational analyses.
  • Participate in customer exercises (after duty hours may be required).
  • Adhere to defined policies, master plans and schedules.
  • Complete all initial and annual training requirements and disclosures as outlined by BSTG.
  • Perform all other duties as required, consistent with the goals, objectives, and responsibilities of the department.

Required Qualifications:

  • 4+ years of relevant cybersecurity experience, including direct SOC / vSOC / CSSP incident response experience.
  • 2+ years of hands‑on experience using Splunk Enterprise and ELK Stack (Elasticsearch, Logstash, Kibana) for event correlation and threat detection.
  • Direct experience monitoring, ingesting, and analyzing security telemetry within AWS GovCloud environments (e.g., CloudTrail, VPC Flow Logs, AWS GuardDuty).
  • Hands‑on experience utilizing GitLab (e.g., source control, CI/CD pipelines, issue tracking, or DevSecOps workflows).
  • 2+ years of experience with employment of DoD cybersecurity requirements, policies, and procedures to include assessment and authorization activities.
  • Department of Defense Directive (DoDD) 8140 / 8570 IAT CSSP Certification must be obtained prior to hire (CEH, Security+, GCIH, CySA+ or Equivalent).
  • Bachelor's degree in Computer Science, Information Technology, or a related field.
  • US Citizenship and an active Top Secret/SCI security clearance required.

Desired Qualifications:

  • Experience with AI/ML security tools (e.g., generative AI for query generation, automated threat intelligence, or AI-driven behavioral analytics).
  • AWS Certified Security - Specialty certification.
  • Splunk Core Certified Power User / Admin or Elastic Certified Analyst certifications.
  • Experience writing search queries using SPL (Splunk Processing Language) and KQL/Lucene (Kibana Query Language).
  • Experience with SentinelOne (or similar EDR platforms) for endpoint detection, threat hunting, and automated remediation.
  • Familiarity with Infrastructure-as-Code (IaC) tools such as Terraform or Ansible within a DevSecOps environment.
  • Experience performing cybersecurity activities in support of software and system requirements, design, development, testing, and sustainment.
  • Experience with HBSS, ACAS, SCAP Compliance Checker (SCC), DISA STIGs.
  • Working knowledge of NIST 800-53 Security and Privacy Controls.
  • Experience with various operation systems such as RHEL and Windows.
  • Experience in performing post-incident computer forensics without destruction of critical data.
  • Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff.

The estimated salary range for this role is $90,000.00 - $145,000.00, commensurate on experience and technical skillset.


We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.


In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.


We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.


Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Systems Test Engineer (Cloud)
Senior Systems Test Engineer (Cloud)

darkwolfsolutions • Ogden (UT)

On-site
USD 90,000 - 145,000
EEO/AA employer
Defensive Cyber Operations (DCO) Analyst
Defensive Cyber Operations (DCO) Analyst

Dark Wolf Solutions, LLC • Ogden (UT)

On-site
USD 90,000 - 145,000
Threat Detection Engineer (Cloud Security)Ogden, UT
Threat Detection Engineer (Cloud Security)Ogden, UT

BuddoBot Inc. • Ogden (UT)

On-site
USD 100,000 - 160,000
Threat Detection Engineer (Cloud Security)
Threat Detection Engineer (Cloud Security)

Dark Wolf Solutions, LLC • Ogden (UT)

On-site
USD 100,000 - 160,000
Threat Detection Engineer (Cloud Security)
Threat Detection Engineer (Cloud Security)

Darkwolfsolutions • Ogden (UT)

On-site
USD 100,000 - 160,000
Senior Systems Test Engineer (Cloud) Ogden, UT
Senior Systems Test Engineer (Cloud) Ogden, UT

BuddoBot Inc. • Ogden (UT)

On-site
USD 120,000 - 170,000
Senior Cloud Cyber Defense Analyst
Senior Cloud Cyber Defense Analyst

darkwolfsolutions • Ogden (UT)

On-site
USD 90,000 - 145,000
EEO/AA employer
Senior Defensive Cyber Operations Engineer
Senior Defensive Cyber Operations Engineer

BuddoBot Inc. • Ogden (UT)

On-site
USD 90,000 - 145,000
Senior Systems Test Engineer (Cloud)
Senior Systems Test Engineer (Cloud)

Dark Wolf Solutions, LLC • Ogden (UT)

On-site
USD 120,000 - 170,000
Penetration Tester (RELOCATION BONUS AVAILABLE) - Ogden,UT
Penetration Tester (RELOCATION BONUS AVAILABLE) - Ogden,UT

Dark Wolf Solutions • Town of Ogden (NY)

Hybrid
USD 110,000 - 160,000
Relocation assistance
Sign-on bonus up to $25,000
Hybrid work model