Return To Search
Cyber Detection Engineer
Location: McLean, VA
Company: Revolutional, LLC
Category:
Revolutional delivers advanced technology solutions and mission support to federal agencies across civilian, health, and national security environments. We apply modern capabilities, including AI/ML, cloud, cybersecurity, and IT modernization to solve complex challenges, enable faster and more secure operations, and drive measurable mission outcomes.
We are redefining how federal technology gets built and delivered by operating with a product mindset, prioritizing speed, ownership, and execution over bureaucracy.
Description
Title: Cyber Detection Engineer
Location: Remote
Terms: Full-time
Salary: $125 - $140k DOE
Clearance: Public Trust
Travel: <10%
Position Description
As a Cyber Detection Engineer, you will play a critical role in safeguarding the Department of Veterans Affairs (VA) digital assets by developing and implementing security detections for our Cyber Incident Response team to monitor. Your primary focus will be to baseline, develop, implement, and tune security detections using a variety of technologies such as SIEM, EDR, XDR, etc.
What you'll do
- Configure monitoring tools to detect threat actor techniques and/or behavioral indicators.
- Craft custom search queries using Splunk, Microsoft Defender for Endpoint, Microsoft Sentinel, CrowdStrike Falcon, and Elastic.
- Provide subject matter expertise to support security detections in one of the following areas: Cloud Technologies, SaaS, Identity and Access Management, Networking, Splunk, EDR, or Offensive Security and Purple-teaming.
- Map security detections to the MITRE ATT&CK Framework.
- Research new data source identification and configuration recommendations to facilitate detection of adversary activities.
- Use machine learning and pattern analysis to improve detection of specific types of threats.
- Collaborate effectively with cross-functional teams, including forensics, threat intelligence, IT, and network administrators. Clearly communicate technical information and detection-related updates to management and stakeholders.
- Develop and operationalize advanced security analytics to detect and respond to sophisticated cyber threats in real-time.
- Develop and implement detection feedback processes - e.g., tuning false positives, etc.
- Ensure data quality meets completeness and consistency.
- Monitor the performance of security analytics and automation processes regularly, identifying areas for improvement and taking proactive measures to enhance their efficacy.
- Leverage Security Orchestration, Automation, and Response (SOAR) platforms to streamline and automate detection and incident response, including enrichment, containment, and remediation actions.
- Support the operationalization of new security detections, including building reference documentation, investigation guidelines, and tuning considerations.
- Stay informed about the latest cybersecurity threats, trends, and best practices. Actively participate in cybersecurity exercises, drills, and simulations to improve incident response capabilities.
What You Bring (Requirements):
- Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field (or equivalent work experience)
- 5+ years of experience supporting large-scale IT related projects
- 3+ years of experience supporting incident response in an enterprise-level Security Operations Center (SOC)
- Candidates should possess a professional level certification in one of the following subject areas: Cloud (ex: GLCD), Incident Response/Forensics (ex: GCIH, GCFE), IDAM (ex: Microsoft Identity and Access Administrator Associate), SIEM (Splunk Power User), Offensive Security (ex: OSCP, GPEN)
- A deep understanding of cybersecurity principles, incident response methodologies, and a proactive mindset to ensure our SOC operates effectively in a high-pressure environment
Nice to Have (Differentiators):
- Strong experience with security technologies, including SIEM, IDS/IPS, EDR, and network monitoring tools
- Experience with enterprise ticketing systems like ServiceNow
- Excellent analytical and problem-solving skills
- Ability to work independently and in a team environment to identify errors, pinpoint root causes, and devise solutions with minimal oversight
- Ability to learn and function in multiple capacities and learn quickly
- Strong verbal and written communication skills
___________________________________________________________________________________________________________
Here at Revolutional we are pleased to have been repeatedly recognized for our outstanding work culture, the innovative work we do, and the employees on our team who make a difference each day. Some of these recognitions include:
- Recognized as a Top 20 "Best Place to Work in Virginia"
- Recipient of Department of Labor's HireVets Gold Medallion
- Great Place to Work Certification for five years running
- A Virginia Chamber of Commerce Fantastic 50 company
- A Northern Virginia Technology Council Tech 100 company
- Inc. 5000 list of fastest growing companies for eleven years
- Two-time SBA SBIR Tibbett's Award winner
- Virginia Values Veterans (V3) Certification
We recognize that every bit of our success is the result of our teams of hard-working, motivated, and innovative professionals who are proud to call themselves part of the Revolutional family! In addition to competitive compensation, a family-focused culture, and a dynamic, productive work environment, we offer all full-time employees a variety of benefits including, but not limited to
- Traditional and HSA- eligible medical insurance plans
- 100% employer-paid dental and vision insurance options
- 100% employer-sponsored STD, LTD, and life insurance
- 5% 401(k) company matching
- Flexible-schedules and teleworking options
- Paid holidays and PTO Accrual Plans
- Paid Parental Leave
- Professional development and career growth opportunities
- Team and company-wide events, recognition, and appreciation-- and so much more!
Check out our to find out a little more about who we are and if we are the right next step for your career!
Revolutional is an Equal Opportunity Employer providing equal employment opportunity to all employees and applicants for employment without regard to race, color, religion, national origin, age, gender, gender identity, sexual orientation, disability, or genetics. Revolutional does and will take affirmative action to employ and advance in employment individuals with disabilities and protected veterans. To perform the above job successfully, an individual must possess the knowledge, skills, and abilities listed; meet the education and work experience required; and must be able to perform each essential duty and responsibility satisfactorily. Other duties in addition to those listed may be assigned as necessary to meet business needs. Reasonable accommodation will be made to enable an applicant with a disability to successfully apply for and/or perform the essential duties of the job. If you are in need of an accommodation, please contact .