ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
6+ YOEActive Top Secret clearance with SCI eligibility, 6+ years SIEM/cybersecurity engineering experience, expertise with Splunk/Elastic/QRadar, log ingestion, detection development, incident response, and strong documentation and communication skills.
ASRC Federal: Provides engineering and IT services to federal government agencies.
5+ YOE5+ years Elastic engineering experience, active Secret clearance, Bachelor's in information security or equivalent, DoD 8140/8570-compliant cert (e.g., Security+, CISSP), AWS experience preferred, Python/Bash scripting, Elastic Stack and SIEM expertise.
Empower AI: Providing AI-enabled technology solutions for federal government agencies.
5+ YOERequires 5+ years of experience, a bachelor's degree in IT or related field, Security+, Splunk or SIEM certification, Secret clearance, and ITIL 4 Foundation preferred.
Splunk, Security Information and Event Management (SIEM), Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs)
Infinitive: Consultancy for modernizing and monetizing enterprise data through AI.
3+ YOE3+ years in security/data/devsecops roles; Logstash expertise, Regex, Splunk, Amazon SQS/SNS, GitHub, Jenkins, and SQL; strong analytical and troubleshooting skills; experience with CI/CD and cloud-native event-driven systems.
General Dynamics Information TechnologyNYSE: GD: Provides mission-critical IT services to government and defense organizations.
6+ YOEUS citizen with active/obtainable TS/SCI clearance and polygraph, 6+ years SIEM experience, DoD 8570 IAT Level II/CSSP Infrastructure Support, Linux (RHEL) expertise, ArcSight/ElasticSearch/Kibana/Splunk experience, SIEM content and playbook development.
ArcSight SIEM, ElasticSearch, Kibana, Splunk, Event Broker, User Behavioral Analysis (UBA), Linux (RHEL)
GDITNYSE: GD: Delivers IT and mission services to government agencies.
6+ YOEUS citizen with active TS/SCI and ability to obtain TS/SCI + Polygraph; 6+ years SIEM experience (ArcSight, ElasticSearch, Splunk, Kibana); RHEL Linux admin; DoD 8570 IAT Level II and CSSP Infrastructure Support; SIEM content/playbook development.
ArcSight, ElasticSearch, Kibana, Splunk, Event Broker, User Behavioral Analysis (UBA), Linux (RHEL), Enterprise Audit, Joint Incident Management System
Deloitte: Global provider of audit, consulting, tax, and advisory services.
3+ YOERequires 3–5 years experience, scripting with Python and PowerShell, experience with SIEM (Splunk or ArcSight), system administration (Windows/Linux), Splunk Admin certification, and development/maintenance of SOC/SIEM content and processes.
Python, PowerShell, Splunk, ArcSight, Windows, Linux, Active Directory, Routers/Switches management, Firewall Management, SANS/NAS, Web servers, IAM/AAA, IDS/HDS, System vulnerability scanning tools, application/database vulnerability scanning tools, mobile device analysis, Secure coding, Service Now, SIEM
Municipal Securities Rulemaking Board: Regulates the municipal securities market to ensure market integrity.
7+ YOE7+ years in information security; strong incident response, detection engineering, IAM, networking, cloud/app security; experience with SIEM and security tooling.
New York or San Francisco or Washington or United States
$150k-$185k/yrHybridFull Time
Rocket MoneyNYSE: RKT: Personal finance app for managing subscriptions, bills, and budgets.
6+ YOE6+ years in cloud engineering with production cloud security; Terraform; AWS/GCP; IAM; network design; vulnerability management; SIEM; on-call; collaboration.
ASM ResearchNYSE: ACN: Provides IT and healthcare services to government agencies.
5+ YOE5+ years in security operations/incident response, TS/SCI clearance and U.S. citizenship required; experience with SIEM, forensics, log analysis, and incident handling.
CGINYSE: GIB: Provides information technology and business consulting services.
7+ YOE7+ years in threat intelligence or related roles, bachelor's degree or CISSP/CISM, experience with PIR/CIR, SIEM/TIP, strong analytical and communication skills.
GEICO: Provides vehicle and property insurance services to consumers.
3+ YOE3+ years cybersecurity/endpoint engineering experience, degree or equivalent, EDR administration, scripting (PowerShell/Python/Bash), SIEM familiarity, troubleshooting and communication skills.
Endpoint Detection and Response (EDR/XDR), PowerShell, Python, Bash, SIEM, Ansible, SCCM, Intune, Jamf, Puppet, Azure, AWS, Google Cloud, Active Directory, Entra ID, API
Ad Hoc: Builds user-centered digital services and platforms for government agencies.
Expertise with Palo Alto/PAN-OS/Panorama, proxy engineering, packet-level troubleshooting, SIEM/log correlation, secure network design and compliance with federal standards.
Cyber Threat Analyst (I&W) with Splunk and Analyst1 / Active Top Secret
Arlington, Virginia, United States
$104k-$166k/yrOnsiteFull Time
Peraton: Provides advanced technology and mission support for government agencies.
9+ YOEBachelor’s degree and 9 years of relevant experience; security certs required; Splunk SIEM and Analyst1 experience; strong threat intel and MITRE ATT&CK knowledge.
ID.me: Provides secure digital identity verification and authentication services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
UnitedHealth GroupNYSE: UNH: Provides health insurance and technology-enabled health care services.
3+ YOE3+ years in threat intelligence, security engineering, IR or malware analysis; strong software engineering and cybersecurity integration experience; experience with TIPs, SIEM, SOAR, and automation.
Splunk, Microsoft Sentinel, IBM QRadar, Elastic, Python, Java, JavaScript/Node.js, Go, REST APIs, JSON, STIX/TAXII, Bash, PowerShell, Git, CI/CD, Linux, Ubuntu, CentOS, RHEL, Kali, AWS, Docker, Windows Server, Active Directory, Mac OS X, LLM, MCP, RAG, SIEM, SOAR, EDR, NDR, MISP, OpenCTI, ThreatConnect, Anomali, ThreatQuotient, Cortex XSOAR, Splunk SOAR, Swimlane, Tines, Kafka, Spark, Elasticsearch