Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, Virginia, USA
Base: $159,600 - $239,400 usd (mclean); base: $144...
Fully remote
Splunk correlation searches and spl development
Fedramp high and dod il5 compliance experience
Aws security services telemetry analysis
This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working within high-security FedRAMP High and IL5 cloud environments

Job Summary

  • This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working within high-security FedRAMP High and IL5 cloud environments.
  • The engineer is responsible for engineering, validating, and continuously improving detection capabilities using Splunk, AWS telemetry, and identity access data to reduce adversary dwell time.
  • Workday offers a competitive base salary ranging from $159,600 to $258,000 depending on location, along with bonus plans, stock grants, and flexible work arrangements.

Matching Summary

This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working within high-security FedRAMP High and IL5 cloud environments.

Salary

Base: $159,600 - $239,400 USD (McLean); Base: $144,400 - $258,000 USD (Other US locations); Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants

Skills & Requirements

Must-have

  • Splunk correlation searches and SPL development
  • FedRAMP High and DoD IL5 compliance experience
  • AWS security services telemetry analysis
  • MITRE ATT&CK mapping and adversary tradecraft
  • NIST SP 800-61r3 incident response lifecycle

Nice-to-have

  • Hypothesis-driven threat hunting in SaaS
  • Identity-based attack vector detection
  • Container and workload-level attack detection
  • SOAR platform experience in constrained environments
  • Secure logging architectures in air-gapped settings

Key Requirements

  • 6+ years of cybersecurity operations or detection engineering experience
  • Active TS/SCI w/CI Poly security clearance preferred
  • Must be a United States citizen (naturalized or native)
  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or equivalent

Work Rights

Must have US citizenship

Tailored Resume

Cover Letter