22 threat detection engineer jobs at 18 companies in Carney, MD
2w
Save
Mark Applied
Hide
2w
Manager, Threat Detection Engineer
Washington, District of Columbia, United States
$160k-$180k/yrHybridFull Time
The Carlyle GroupNasdaq: CG: Global investment firm managing assets across multiple strategies.
5+ YOEBachelor's required,5+ years cybersecurity experience,4+ years detection engineering and threat intelligence,hands-on detection development and tuning,automation and API integration experience,experience with SIEM/EDR/SOAR and detection languages.
Evans & Chambers Technology: Develops technology solutions and software for national defense missions.
5+ YOEBachelor's in cybersecurity or related, 5+ years cybersecurity experience (threat hunting/detection/IR), DoD 8570/8140 IAT Level III, advanced cert (GCTI/GCFA/OSCP/CISSP), SIEM/SOAR and scripting proficiency.
ICFNASDAQ: ICFI: Provides strategic consulting and technology services to global organizations.
10+ YOEActive high-level security clearance,10+ years cybersecurity/IT experience, expertise in threat detection, incident response, network analysis, big data technologies, dashboard development, and analytics.
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
3+ YOEActive Public Trust clearance, BS in CS/IT or related, 3+ years threat hunting/adversary emulation, experience querying large datasets, Python and PowerShell scripting, and detection development in SIEM (Splunk ES or Microsoft Sentinel).
Python, PowerShell, Splunk ES, Microsoft Sentinel, SIEM
Threat Detection Specialist, Trust and Safety - USDS
Washington, District of Columbia, United States
$99k-$179k/yrOnsiteFull Time
TikTok USDS Joint Venture: Operates and secures TikTok services for U.S. users.
3+ YOE3+ years in Trust & Safety/intelligence/content policy; experience using LLMs or AI/ML tools, collaborating with Product/Engineering, strong investigative and analytical skills.
SecurityScorecard: Provides continuous cybersecurity ratings and risk monitoring for organizations.
5+ YOE5+ years engineering experience in threat intelligence, detection, or security research; production engineering skills with Python/TypeScript/Node; experience with STIX/TAXII, YARA/Sigma, cloud (AWS), and building data/pipeline systems.
AccentureNYSE: ACN: Global professional services firm providing consulting and technology solutions.
10+ YOE5+ Mgmt10+ years in cyber threat intelligence, threat-informed defense, detection engineering, threat hunting, or security operations; 5+ years leading technical teams and using security stacks, MITRE ATT&CK, and threat data standards.
Threat Intelligence Platform (TIP), Security Information and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR), Endpoint Detection and Response (EDR), YARA, Sigma, MITRE ATT&CK, MITRE D3FEND, STIX/TAXII, NIS2, DORA
AccentureNYSE: ACN: Global provider of management consulting and technology services.
10+ YOE5+ Mgmt10+ years in cyber threat intelligence/threat-informed defense/detection engineering/threat hunting/SOAR/SIEM/EDR; 5+ years leading technical teams; Bachelor's degree or equivalent; familiarity with structured threat data and MITRE ATT&CK.
Principal Product Manager - Threat Detection Engine and Content (Hybrid)
Arlington or New York or Austin or Sunnyvale or Redmond
$160k-$250k/yrHybridFull Time
CrowdStrikeNASDAQ: CRWD: Provides cloud-native endpoint protection and cybersecurity services.
5+ YOE5+ years in product management for detection content, SIEM, XDR, cloud security; large-scale distributed systems; strong communication; willing to travel up to 20%; onsite 1-3 days/week; BA/BS, Master’s desirable.
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
5+ YOE5+ years identity security and Windows server engineering experience; hands-on Microsoft Entra ID, PIM, AD/ADFS/GPO, Zero Trust, and identity threat detection; scripting/automation and security documentation skills.
Microsoft Entra ID (Azure Active Directory), Privileged Identity Management (PIM), Microsoft Active Directory, Active Directory Federation Services, Group Policy Objects (GPOs), Microsoft Defender for Identity, Splunk, PowerShell, Bash, Python, Microsoft Azure, AWS IAM, SAML, OAuth 2.0, OpenID Connect, Kerberos, SIEM, Microsoft License Management
GDITNYSE: GD: Delivers IT and mission services to government agencies.
8+ YOE8+ years of related cyber security experience; TS/SCI with active polygraph clearance; Bachelor's degree in a related field; strong incident response, threat detection, forensics, and cloud security skills.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
Cybersecurity operations or security engineering experience, threat detection or incident response, vulnerability assessment, cross-functional collaboration, and a bachelor's degree. U.S. citizenship required.
CrowdStrike Falcon EDR/AV, Tenable Cloud Security Enterprise, BigID, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Python, PowerShell, AWS, Azure, Google Cloud, Risk Management Framework (RMF), NIST 800-53, Defense Federal Acquisition Regulation Supplement (DFARS)
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
Cybersecurity operations or security engineering experience, threat detection or incident response, vulnerability assessment support, a bachelor's degree, and U.S. citizenship; cloud and DoD security experience preferred.
CrowdStrike Falcon EDR/AV, Tenable Cloud Security Enterprise, BigID, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Python, PowerShell, AWS, Azure, Google Cloud, Risk Management Framework (RMF), NIST 800-53, Defense Federal Acquisition Regulation Supplement (DFARS)
Purple Team Manager (Defense Improvement Analysis)
McLean or Plano or Richmond
$179k-$225k/yrOnsiteFull Time
Capital OneNYSE: COF: A diversified financial services providing banking and credit products.
4+ YOERequires 4+ years in information security, 3+ years in threat hunting or detection engineering, and 2+ years analyzing EDR telemetry; high school diploma or GED required.
Health Resources and Services Administration: Administers federal programs providing healthcare to underserved populations.
1+ YOERequires one year of GS-13-equivalent specialized experience engineering enterprise security tools, developing threat detections, analyzing security metrics, and conducting incident response and digital forensics.
SIEM, SOAR, EDR, IDS/IPS, digital forensics, IaaS, PaaS, SaaS, Zero Trust, USA Hire, USAJOBS, Microsoft Excel
Cybersecurity Principal Specialist - Hunt Network #5302
Washington, District of Columbia, United States
$144k-$196k/yrOnsiteFull Time
United States Senate: The upper chamber of the United States federal legislature.
7+ YOE7–10 years cybersecurity experience with 5+ years in threat hunting/network forensics/IR, leadership of project teams, ability to obtain Secret clearance, scripting proficiency, and experience with network forensics and detection engineering.
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain FinancialNYSE: OMF: Provides personal loans and credit cards to nonprime consumers.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V