Why This Role Stands Out
As a Cyber Detections Engineer with a Security Clearance at Dexian Signature Federal, you'll leverage your expertise in signature creation and rule management within a hybrid environment, contributing to critical national security missions. This role offers significant growth potential by allowing you to innovate creative solutions, develop logical use cases, and collaborate with inter-agency partners, making it ideal for experienced cybersecurity professionals seeking impactful work and continuous skill development.
Quick Overview
Job Description
Cyber Detection Engineer Position Description
Subject matter expertise in the creation, editing, and management of signatures, rules and filters for specialized network defense systems including but not limited to:
- Network and host-based IDS, IPS, NDR, EDR, firewall, web application firewalls
- Proxy
- Splunk Enterprise Security
- Manages and administers the tuning of rules, signatures, and custom content for specialized CND applications and systems
- Identifies potential conflicts with implementation of any CND tools within the enterprise and develop recommendations to remediate these conflicts
- Manages inter-agency relationships with partner organizations to facilitate mission execution
- Innovates creative solutions to challenging problems
- Provides logical use case development
- Provides and tracks requirements to engineering partners
- Identifies gaps in visibility or coverage of cyber defense systems
- Prepare and brief management and partner organizations on current state/proposed solutions
- Prepare data analytics and reporting Required Experience/Skills:
- Excellent interpersonal, organizational, writing, communications, and briefing skills
- Strong analytical and problem solving skills
- Demonstrated expertise utilizing SIEM tools for use case development and application
- Minimum of five years of progressively responsible experience in Cyber Security, InfoSec, Security Engineering, Network Engineering with emphasis in cyber security issues and operations, computer incident response, systems architecture, data management Familiarity with the following classes of enterprise cyber defense technologies:
- Incident Response analysis
- Splunk Enterprise Security
- Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
- Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
- Security Orchestration Automation and Response (SOAR)
- Endpoint and Network Detection and Response (EDR/NDR)
- User Behavior Analytics (UBA)
- Network and Host malware detection and prevention
- Network and Host forensic applications
- Web/Email gateway security technologies Demonstrated experience in the following preferred:
- Splunk ES
- Python
- Mitre ATT&CK
- Jira
- Tanium
- Carbon Black
- McAfee ePO/NSM
- Palo Alto Networks Required Certifications:
BS (bachelor's degree in electrical engineering, computer engineering, computer science, or other closely related IT discipline)
Similar jobs
- KT
Network Security Analyst II
NewKforce Technology Staffing
Newport Beach, CA🇺🇸Hybrid22 hours agoStakeholder ManagementTechnology - SC
Senior Azure Network/Security Engineer
NewSaicon Consultants Inc.
Livingston, NJ🇺🇸Hybrid22 hours agoLoad BalancingAnsibleAzure+2Technology - FA
Staff Security Engineer
FanDuel
New York, NY🇺🇸$184k - $241.5k/yrHybrid1 month agoAWSFlutterLinear+6Technology - NG
Principal Cybersecurity Analyst with Security Clearance
NewNorthrop Grumman
Los Angeles, CA🇺🇸$114k - $171k/yrOn-site22 hours agoSplunkHTTPTechnology - NG
Cyber Systems Engineer (Engineer or Principal Engineer Level) with Security Clearance
NewNorthrop Grumman
Melbourne, FL🇺🇸$79.3k - $118.9k/yrHybrid22 hours agoEmbedded SystemsAgileHTTPTechnology - ST
IT Security Analyst
NewSolGenie Technologies, INC
San Jose, CA🇺🇸Hybrid22 hours agoStakeholder ManagementTechnology