Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Base: $159,600 - $239,400 usd (mclean); base: $144...
Fully remote
Splunk correlation searches and spl development
Fedramp high and dod il5 cloud environments
Aws security services cloudtrail guardduty inspector
This role supports U.S. federal agencies by protecting enterprise and government SaaS environments operating under multiple authorization boundaries including air-gapped regions

Job Summary

  • This role supports U.S. federal agencies by protecting enterprise and government SaaS environments operating under multiple authorization boundaries including air-gapped regions.
  • The engineer is responsible for engineering high-fidelity detection logic using Splunk and cloud-native telemetry to reduce adversary dwell time across regulated cloud environments.
  • Workday offers a competitive salary range of $159,600 to $258,000 USD along with flexible work arrangements requiring at least half-time presence in the office or field.

Matching Summary

This role supports U.S. federal agencies by protecting enterprise and government SaaS environments operating under multiple authorization boundaries including air-gapped regions.

Salary

Base: $159,600 - $239,400 USD (McLean); Base: $144,400 - $258,000 USD (Other US locations); Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants

Skills & Requirements

Must-have

  • Splunk correlation searches and SPL development
  • FedRAMP High and DoD IL5 cloud environments
  • AWS security services CloudTrail GuardDuty Inspector
  • MITRE ATT&CK mapping and NIST SP 800-61r3
  • United States citizenship requirement

Nice-to-have

  • Hypothesis-driven threat hunting in SaaS architectures
  • Identity-based attack vector detection expertise
  • Container and workload-level attack detection
  • SOAR platform experience in constrained environments
  • Air-gapped environment secure logging knowledge

Key Requirements

  • 6+ years in cybersecurity operations or detection engineering
  • Active TS/SCI w/CI Poly security clearance preferred
  • Bachelor's degree in Cybersecurity or equivalent experience
  • Mandatory United States citizenship for contract eligibility

Work Rights

Must have US citizenship (naturalized or native)

Tailored Resume

Cover Letter