Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Base: $159,600 - $239,400 usd (mclean); base: $144...
Fully remote
Splunk correlation searches and spl development
Fedramp high and dod il5 environment experience
Aws security services cloudtrail guardduty inspector
This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working in high-security FedRAMP High and IL5 cloud-native SaaS environments

Job Summary

  • This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working in high-security FedRAMP High and IL5 cloud-native SaaS environments.
  • The engineer is responsible for developing high-fidelity detection logic using Splunk and AWS telemetry to reduce adversary dwell time and ensure compliance with rigorous audit standards.
  • Workday offers a competitive salary range of $159,600 to $258,000 USD along with flexible work arrangements requiring at least 50% time in-office or with customers.

Matching Summary

This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working in high-security FedRAMP High and IL5 cloud-native SaaS environments.

Salary

Base: $159,600 - $239,400 USD (McLean); Base: $144,400 - $258,000 USD (Other US locations); Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants

Skills & Requirements

Must-have

  • Splunk correlation searches and SPL development
  • FedRAMP High and DoD IL5 environment experience
  • AWS security services CloudTrail GuardDuty Inspector
  • MITRE ATT&CK mapping and adversary tradecraft
  • NIST SP 800-61r3 incident response lifecycle

Nice-to-have

  • Hypothesis-driven threat hunting in SaaS architectures
  • Identity-based attack vector detection expertise
  • Container and workload-level attack detection
  • SOAR platform experience within constrained boundaries
  • Secure logging architecture in air-gapped environments

Key Requirements

  • 6+ years cybersecurity operations or detection engineering experience
  • Bachelor's degree in Cybersecurity, Computer Science, Engineering or equivalent
  • Active TS/SCI w/CI Poly security clearance preferred
  • Must be a United States citizen (naturalized or native)

Work Rights

Must have US citizenship

Tailored Resume

Cover Letter