Senior Cyber Security Detections Engineer Job at ManTech, Springfield, VA

YTlsL3IyMVQzS3ltTENURXZMbm5aNkVwWnc9PQ==
  • ManTech
  • Springfield, VA

Job Description

MANTECH seeks a motivated, career and customer-oriented Senior Cyber Security Detections Engineer to join our team in Springfield, VA.


This role supports our Cyber Operations mission by providing critical detection and response capabilities. You will be part of an industry-leading organization where employees come first, and you'll help defend national security while working on rewarding projects with room for growth and innovation.

Responsibilities include but are not limited to:

  • Formulating and publishing custom Security Information and Event Management (SIEM) tool content and IDS/IPS signatures to address threats
  • Performing security event and incident correlation using information gathered from a variety of sources within the enterprise
  • Analyzing and assessing damage to the data/infrastructure as a result of cyber incidents
  • Performing cyber incident trend analysis and reporting
  • Characterizing and analyzing network traffic and system data to identify anomalous activity and potential threats to resources
  • Providing detection, identification, and reporting of possible cyber-attacks/intrusions, anomalous activities, and misuse activities
  • Creating, deploying, and implementing threat-based signatures and detection rules for operational intrusion detection capabilities

Minimum Qualifications:

  • Bachelor’s degree or 4+ years of additional cyber experience in lieu of a degree
  • 5+ years of related cyber experience
  • Experience with modern Windows, UNIX, network operating systems, databases, and virtual computing environments
  • DoD 8570 certification meeting IAT Level II (e.g., GSEC, Security+, SSCP, or CCNA-Security)
  • Knowledge of counter-measures or mitigating controls
  • Experience with enterprise security tools, including SIEMs, Threat Intelligence Platforms (TIPs), or network monitoring tools
  • Proficiency in creating, modifying, tuning IDS signatures/SIEM correlation searches and other detection signatures

Preferred Qualifications:

  • Advanced skills in Linux/Unix (command line user—proficient and used in the last 6 months)

Clearance Requirements:

  • Must have a current/active TS/SCI with Polygraph

Physical Requirements:

  • Must be able to remain in a stationary position 50% of the time
  • Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers via email, phone, and/or virtual communication, which may involve delivering presentations 

Job Tags

Work at office,

Similar Jobs

Fidelis Care

Director, Digital Marketing Strategy Job at Fidelis Care

 ...identify opportunities for optimization in content, navigation, SEO, and user flow Develop and oversee enterprise video strategy...  ...paid time off plus holidays, and a flexible approach to work with remote, hybrid, field or office work schedules. Actual pay will be... 

Waynes Pest Control

Pest Control Technician Job at Waynes Pest Control

 ...infested locations Recommend treatment and prevention methods for pest problems to clients Have daily check-in with Supervisor to...  ...WHY WORK WITH US? Waynes is a leader in modern pest control and lawn care with branches throughout Alabama, Mississippi, Florida... 

Paladin Inc

Family Advocate Job at Paladin Inc

 ...Position Title: Family Advocate Location: Michigan City, IN Description POSITION SUMMARY: Providing quality, comprehensive child/family support services to Head Start preschool children and their families. They partner with families to... 

Acara Solutions

Part-Time Marketing Specialist Job at Acara Solutions

 ...Acara Solutions is seeking a Part-Time Marketing Specialist to work with our client Headquartered in Boston, MA. This position is 100% remote. Pay:$25.00/hour Schedule: Part-time (20 hours per week, flexible schedule) Job Type:6-month contract Overview... 

RIT Solutions

COBOL Developer Job at RIT Solutions

COBOL Developer Role: COBOL Developer Duration: 12+ months Location: Remote Details: Designs and develops solutions on the System i (AS/400i (AS/400) environment, utilizing expertise in a wide range of AS/400 products, including RPG, COBOL/400, SYNON, and new age offerings...