24 threat detection engineer jobs at 20 companies in Poolesville, MD
1w
Save
Mark Applied
Hide
1w
Manager, Threat Detection Engineer
Washington, District of Columbia, United States
$160k-$180k/yrHybridFull Time
The Carlyle GroupNasdaq: CG: Global investment firm managing assets across multiple strategies.
5+ YOEBachelor's required,5+ years cybersecurity experience,4+ years detection engineering and threat intelligence,hands-on detection development and tuning,automation and API integration experience,experience with SIEM/EDR/SOAR and detection languages.
Evans & Chambers Technology: Develops technology solutions and software for national defense missions.
5+ YOEBachelor's in cybersecurity or related, 5+ years cybersecurity experience (threat hunting/detection/IR), DoD 8570/8140 IAT Level III, advanced cert (GCTI/GCFA/OSCP/CISSP), SIEM/SOAR and scripting proficiency.
ICFNASDAQ: ICFI: Provides strategic consulting and technology services to global organizations.
10+ YOEActive high-level security clearance,10+ years cybersecurity/IT experience, expertise in threat detection, incident response, network analysis, big data technologies, dashboard development, and analytics.
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
3+ YOEActive Public Trust clearance, BS in CS/IT or related, 3+ years threat hunting/adversary emulation, experience querying large datasets, Python and PowerShell scripting, and detection development in SIEM (Splunk ES or Microsoft Sentinel).
Python, PowerShell, Splunk ES, Microsoft Sentinel, SIEM
Threat Detection Specialist, Trust and Safety - USDS
Washington, District of Columbia, United States
$99k-$179k/yrOnsiteFull Time
TikTok USDS Joint Venture: Operates and secures TikTok services for U.S. users.
3+ YOE3+ years in Trust & Safety/intelligence/content policy; experience using LLMs or AI/ML tools, collaborating with Product/Engineering, strong investigative and analytical skills.
1+ YOE1+ year experience in security assessments or design reviews, 1+ year coding experience, experience with security engineering and protocols, and expertise in threat detection and analysis.
Google Cloud Platform (GCP), GKE, Cloud IAM, Vulnerability Reward Program (VRP)
SecurityScorecard: Provides continuous cybersecurity ratings and risk monitoring for organizations.
5+ YOE5+ years engineering experience in threat intelligence, detection, or security research; production engineering skills with Python/TypeScript/Node; experience with STIX/TAXII, YARA/Sigma, cloud (AWS), and building data/pipeline systems.
AccentureNYSE: ACN: Global provider of management consulting and technology services.
10+ YOE5+ Mgmt10+ years in cyber threat intelligence/threat-informed defense/detection engineering/threat hunting/SOAR/SIEM/EDR; 5+ years leading technical teams; Bachelor's degree or equivalent; familiarity with structured threat data and MITRE ATT&CK.
Principal Product Manager - Threat Detection Engine and Content (Hybrid)
Arlington or New York or Austin or Sunnyvale or Redmond
$160k-$250k/yrHybridFull Time
CrowdStrikeNASDAQ: CRWD: Provides cloud-native endpoint protection and cybersecurity services.
5+ YOE5+ years in product management for detection content, SIEM, XDR, cloud security; large-scale distributed systems; strong communication; willing to travel up to 20%; onsite 1-3 days/week; BA/BS, Master’s desirable.
WorkdayNASDAQ: WDAY: Provides cloud-based software for financial and human capital management.
8+ YOE8+ years in incident response, intelligence, vulnerability assessment, security engineering or operations; experience with AI-based offensive tools; proficiency in Python/Java/Kotlin/Scala/JavaScript; threat hunting, detection development, and incident response skills.
ECSNYSE: ASGN: Provides advanced technology and engineering services to government agencies.
5+ YOE5+ years identity security and Windows server engineering experience; hands-on Microsoft Entra ID, PIM, AD/ADFS/GPO, Zero Trust, and identity threat detection; scripting/automation and security documentation skills.
Microsoft Entra ID (Azure Active Directory), Privileged Identity Management (PIM), Microsoft Active Directory, Active Directory Federation Services, Group Policy Objects (GPOs), Microsoft Defender for Identity, Splunk, PowerShell, Bash, Python, Microsoft Azure, AWS IAM, SAML, OAuth 2.0, OpenID Connect, Kerberos, SIEM, Microsoft License Management
General Dynamics Information TechnologyNYSE: GD: Provides mission-critical IT services to government and defense organizations.
8+ YOE8+ years of related experience; TS/SCI with polygraph; Bachelor’s in a relevant field; strong incident response, threat detection, and cyber defense skills.
GDITNYSE: GD: Delivers IT and mission services to government agencies.
8+ YOE8+ years of related cyber security experience; TS/SCI with active polygraph clearance; Bachelor's degree in a related field; strong incident response, threat detection, forensics, and cloud security skills.
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
Cybersecurity operations or security engineering experience, threat detection or incident response, vulnerability assessment, cross-functional collaboration, and a bachelor's degree. U.S. citizenship required.
CrowdStrike Falcon EDR/AV, Tenable Cloud Security Enterprise, BigID, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Python, PowerShell, AWS, Azure, Google Cloud, Risk Management Framework (RMF), NIST 800-53, Defense Federal Acquisition Regulation Supplement (DFARS)
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
Cybersecurity operations or security engineering experience, threat detection or incident response, vulnerability assessment support, a bachelor's degree, and U.S. citizenship; cloud and DoD security experience preferred.
CrowdStrike Falcon EDR/AV, Tenable Cloud Security Enterprise, BigID, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Python, PowerShell, AWS, Azure, Google Cloud, Risk Management Framework (RMF), NIST 800-53, Defense Federal Acquisition Regulation Supplement (DFARS)
Health Resources and Services Administration: Administers federal programs providing healthcare to underserved populations.
1+ YOERequires one year of GS-13-equivalent specialized experience engineering enterprise security tools, developing threat detections, analyzing security metrics, and conducting incident response and digital forensics.
SIEM, SOAR, EDR, IDS/IPS, digital forensics, IaaS, PaaS, SaaS, Zero Trust, USA Hire, USAJOBS, Microsoft Excel