Threat Hunter & Detection Engineer – Hybrid SIEM & Analytics

ECS

Arlington (VA)

Hybrid

USD 170,000 - 190,000

Full time

34 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

ECS Federal LLC is seeking a Detection Engineer / Threat Hunter in Arlington, VA (Hybrid) to proactively identify and mitigate advanced cyber threats. The role combines threat hunting, detection engineering, and security analytics to improve proactive defense across enterprise environments.

Responsibilities include developing detection content for SIEM/EDR/Cloud, leveraging MITRE ATT&CK, and supporting incident response with actionable insights and persistent improvements across security

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field.
  • 7+ years of cybersecurity experience with Threat Hunting, Detection Engineering, SOC, or Incident Response.
  • Strong understanding of attacker TTPs and threat frameworks (MITRE ATT&CK).

Responsibilities

  • Conduct proactive threat hunting to identify malicious activity across networks, endpoints, cloud, and apps.
  • Design, test, and maintain detection content for SIEM, EDR/XDR, NDR, and cloud platforms.
  • Develop Sigma rules, YARA signatures, SIEM queries, and detection playbooks.
  • Tune detections and define true-positive criteria to reduce noise.
  • Analyze large security telemetry and correlate threat intelligence with internal data.
  • Support Incident Response and post-incident detection enhancements.

Skills

Threat hunting
Detection engineering
Security analytics
Incident response
MITRE ATT&CK knowledge

Education

Bachelor's degree in Cybersecurity/CS/IT or related field

Tools

SIEM platforms
Threat intelligence tools

Job description

ECS Federal LLC is seeking a Detection Engineer / Threat Hunter in Arlington, VA (Hybrid) to proactively identify and mitigate advanced cyber threats. The role combines threat hunting, detection engineering, and security analytics to improve proactive defense across enterprise environments.

Responsibilities include developing detection content for SIEM/EDR/Cloud, leveraging MITRE ATT&CK, and supporting incident response with actionable insights and persistent improvements across security

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Threat Hunter & Detection Engineer (Hybrid)
Senior Threat Hunter & Detection Engineer (Hybrid)

Everforth ECS • Arlington (VA)

Hybrid
USD 120,000 - 170,000
Detection Engineer - Threat Hunter with Security Clearance - ECS
Detection Engineer - Threat Hunter with Security Clearance - ECS

OpenTalent • West Virginia

Hybrid
USD 100,000 - 130,000
Detection Engineer – Threat Hunter
Detection Engineer – Threat Hunter

Everforth ECS • Arlington (VA)

Hybrid
USD 120,000 - 170,000
Senior Threat Detection Engineer — Hybrid Role
Senior Threat Detection Engineer — Hybrid Role

3M HEALTHCARE • Scottsdale (AZ)

Hybrid
USD 132,000 - 165,000
Discretionary incentive plan
Benefits
Threat Detection Engineer - Hybrid (Public Trust)
Threat Detection Engineer - Hybrid (Public Trust)

cFocus Software Incorporated • Washington

Hybrid
USD 110,000 - 140,000
Detection & Response Engineer — Threat Hunting & SIEM Pro
Detection & Response Engineer — Threat Hunting & SIEM Pro

Coalfire • United States

Hybrid
USD 120,000 - 150,000
Flexible work model
Certification reimbursement
Comprehensive insurance options
+1
Detection Engineer – Threat Hunter
Detection Engineer – Threat Hunter

ECS • Arlington (VA)

Hybrid
USD 170,000 - 190,000
Cyber Threat Hunter & Detection Engineer
Cyber Threat Hunter & Detection Engineer

Leidos • Washington

Hybrid
USD 107,000 - 196,000
Competitive compensation
Health and Wellness programs
Paid Leave and Retirement
Cybersecurity Detection Engineer: SIEM & Threat Intel
Cybersecurity Detection Engineer: SIEM & Threat Intel

Age Solutions • Columbus (OH)

On-site
USD 85,000 - 120,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+7
SOC Threat Hunter & Incident Response Engineer
SOC Threat Hunter & Incident Response Engineer

Cyberdata Technologies, Inc. • Herndon (VA)

On-site
USD 80,000 - 120,000