Detection Engineer- Secret Clearance

Vets Inc
Arlington, United States of America
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work
Languages
English
Experience level
Senior

Job location

Remote
Arlington, United States of America

Tech stack

JavaScript
Agile Methodologies
Azure
Cloud Engineering
Computer Security
Custom Software
Python
Machine Learning
Powershell
Security Information and Event Management
Data Logging
Snort (Software)
Diagnostic Tools
Enterprise Software Applications
Mitre Att&ck
SC Clearance
Splunk
Security Orchestration, Automation & Response
Programming Languages

Requirements

  • Bachelor's degree and minimum of 9 years of relevant experience; 7 years with Masters degree; 4 years with PhD. An additional 4 years of relevant experience will be substituted in lieu of the degree requirement.

Benefits & conditions

  • Perform advanced custom development and implementation of cybersecurity alerts \n
  • Develop, configure, and tune cyber security tools, alerts, and response capabilities \n
  • Integrate security alerts and process workflows into SOAR and SIEM systems \n
  • Automate and optimize security alert workflows to enhance threat response capabilities and enhance efficiency throughout the Incident Response lifecycle \n
  • Analyze systems and environments to determine necessary logging and alerting to optimize cyber security monitoring in an ever-changing cyber threat landscape \n
  • Provide technical expertise for Splunk, Python, JavaScript, PowerShell, and similar coding languages \n
  • Support the security operations center through security development \n
  • Support cross team collaboration efforts to enhance the customer's defense against advanced cyber adversaries \n
  • Implement cyber monitoring, analysis, and response capabilities within our SIEM, SOAR, and detection tools. \n
  • Develop and enhance threat detections and advanced analysis capabilities. \n
  • Provide tuning of threat detections. \n
  • On-board and integrate cyber monitoring tools from the analyst's perspective. \n
  • Coordinate with engineers to assist in building and maintaining platforms. \n
  • Coordinate with cyber threat experts to implement the latest signatures. \n
  • Create and maintain various security dashboards, alerts, and reports. \n
  • Write Zeek (Bro), Suricata and Snort signatures. \n
  • Maintain Python and JavaScript based detections and automation capabilities within our tools. \n, * To be considered for this position, candidate must either currently hold one of the professional certifications listed below or obtain one prior to their start date. Continued certification is required as a condition of employment:\n \n
  • CASP+ CE, CCNA Cyber Ops, CCNA-Security, CCNP Security, CEH, CFR, CISA, CISSP (or Associate), Cloud+, CySA+, GCED, GCIA, GCIH, GICSP, SCYBER, VCA DCV, PPDA, Agile IC, SNOW App Dev \n \n
  • U.S. citizenship required.\n
  • Active Secret security clearance. \n \n
  • Ability to obtain final Top Secret clearance.\n \n

\n \nPreferred Qualifications:\n \n \n

  • A solid understanding of the MITRE ATT&CK Framework \n
  • A solid understanding of Splunk Enterprise Security \n
  • A solid understanding of Cybersecurity Incident Response \n
  • A solid understanding of Cloud Development with Microsoft Azure/MDE. \n
  • A solid understanding of Machine Learning and User and Entity Behavior Analytics. \n

\n \nEEO Statement\n \n Staffing Pros a division of VETS-inc is an Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities.\n \n The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.\n \n PI284838647", "hiringOrganization": {"@type": "Organization", "name": "Veterans Enterprise Technology Solutions Inc"}, "jobLocation": {"address": {"addressCountry": "United States", "streetAddress": "Not specified", "@type": "PostalAddress", "postalCode": "23927", "addressLocality": "Clarksville", "addressRegion": "Virginia - VA"}, "@type": "Place"}, "industry": "", "identifier": {"@type": "PropertyValue", "name": "Veterans Enterprise Technology Solutions Inc", "value": "284838647"}, "baseSalary": {"@type": "MonetaryAmount", "currency": "USD", "value": {"@type": "QuantitativeValue", "value": "Competitive", "unitText"

Apply for this position