Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Primary location base pyy range: $159,600 usd - $2...
Fully remote
Splunk detection logic development
Aws security services telemetry
Mitre att&ck adversary behaviors
Our Cyber Defense capability provides advanced monitoring, detection, threat hunting, and response across regulated cloud environments supporting federal customers

Job Summary

  • Our Cyber Defense capability provides advanced monitoring, detection, threat hunting, and response across regulated cloud environments supporting federal customers.
  • This role develops high-fidelity detection logic leveraging Splunk, cloud-native telemetry, identity and access telemetry, endpoint and container telemetry, and vulnerability intelligence sources.
  • You will support continuous monitoring requirements under FedRAMP and DoD IL5 frameworks, ensuring detection content aligns to compliance mandates, audit traceability, and evidentiary standards.

Matching Summary

Our Cyber Defense capability provides advanced monitoring, detection, threat hunting, and response across regulated cloud environments supporting federal customers.

Salary

Primary Location Base Pay Range: $159,600 USD - $239,400 USD; Additional US Location(s) Base Pay Range: $144,400 USD - $258,000 USD; Bonus/Equity: May be eligible for Workday Bonus Plan or role-specific commission/bonus, as well as annual refresh stock grants

Skills & Requirements

Must-have

  • Splunk detection logic development
  • AWS security services telemetry
  • MITRE ATT&CK adversary behaviors
  • FedRAMP High and IL5 environments
  • Air-gapped region detection strategies

Nice-to-have

  • Curious minds and courageous collaborators
  • Sun-drenched optimism and drive
  • Integrity, empathy, and shared enthusiasm
  • Hypothesis-driven threat hunting
  • SOAR platform integration

Key Requirements

  • 6+ years cybersecurity experience
  • Hands-on Splunk detection building
  • FedRAMP, DoD IL4/IL5 experience
  • AWS security services experience
  • NIST SP 800-61r3 lifecycle familiarity
  • Ability to obtain TS/SCI w/CI Poly clearance

Work Rights

Must be a United States citizen

Tailored Resume

Cover Letter