Cyber Detection Engineer

Cyber Detection Engineer

ManTech

McLean, VA 22107

Posted 5 months ago

  • Job Type(s)

    Full Time
  • Industry

    Technology
  • Job Description

    Cyber Detection Engineer

    Secure our Nation, Ignite your Future

    Are you interested in defending the most coveted targets in the world? Is advancing today's technology for tomorrow's threats to national security constantly on your mind? Join ManTech and help protect our country against our adversaries while working on innovative projects that offer opportunities for advancement. We encourage our team members to share and grow their skills and expertise while creating robust and cutting-edge solutions.

    ManTech is seeking a Cyber Detection Engineer in McLean, VA. Join a team that protects and defends the largest target in the world using your expertise in Host Based IDS, IPS and specialized network defense. As a Detection Engineer on our team, you will utilize the latest cyber tools available and assist in creating new ones while allowing you to advance the nation's information security posture.

    Responsibilities include, but are not limited to:

    • Creation, editing, and management of signatures, custom rules and filters for specialized network defense systems including but not limited to:

      • Network and host-based IDS, IPS, firewall, web application firewall

      • SOAR

      • Proxy

      • SIEM systems

    • Manage and administer the tuning of rules, signatures, and custom content for specialized CND applications and systems

    • Identify potential conflicts with implementation of any CND tools within the enterprise and develop recommendations to remediate these conflicts

    • Participate in inter-agency relationships with partner organizations to facilitate mission execution

    • Provide innovation and creative solutions to challenging problems

    • Provide logical use case development

    • Provide and track requirements to engineering partners

    • Identify gaps in visibility or coverage of cyber defense systems

    • Prepare data analytics and reporting

    • Detection Assurance and rule validation

    Required Qualifications:

    • 2+ years of experience in Cyber Security, InfoSec, Security Engineering or Network Engineering with emphasis in cyber security issues and operations, computer incident response, systems architecture, data management

    • Experience with Mitre ATT&CK

    • Experience using computer programming language(s) such as Python, JavaScript, Yara or Snort

    • Familiarity with the following classes of enterprise cyber defense technologies:

      • Security Information and Event Management (SIEM) systems (Splunk and/or Splunk Enterprise Security)

      • SysMon

      • Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)

      • Host Intrusion Detection System/Intrusion Prevention Systems (EDR/IDS/IPS)

      • Network and Host malware detection and prevention (EDR/NDR)

      • Network and Host forensic applications

      • Web/Email gateway security technologies

      • SOAR

      • Azure

    • Ability to demonstrate expertise utilizing SIEM tools for use case development and application

    • DOD 8570 IAT Level I or CSSP-IR Certification (can be obtained after hire)

    • Active TS/SCI with polygraph clearance

    Preferred Qualifications:

    • Bachelors Degree in Electrical Engineering, Computer Engineering, Computer Science, or other closely related Information Technology field of study

    • Ability to demonstrate interpersonal, organizational, writing, communications, and briefing skills

    • Ability to effectively use analytical and problem-solving skills

    Clearance Requirement:

    • Active TS/SCI with Polygraph

    Physical Requirements:

    • Must be able to remain in a stationary position 50%

    • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer

    • The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

    #LI-MT1

    SKN.7.23

    For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license.The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.

    ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

    If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

    If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access http://www.mantech.com/careers/Pages/careers.aspx as a result of your disability. To request an accommodation please click [email protected] and provide your name and contact information.