Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Base: $159,600 - $239,400 usd (mclean); base: $144...
Fully remote
Splunk correlation searches and spl development
Fedramp high and dod il5 environment experience
Aws cloudtrail guardduty inspector vpc flow logs
This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working within high-security FedRAMP High and IL5 cloud-native environments

Job Summary

  • This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working within high-security FedRAMP High and IL5 cloud-native environments.
  • The engineer is responsible for developing high-fidelity detection logic using Splunk and AWS telemetry to reduce adversary dwell time and ensure compliance with audit standards.
  • Workday offers a competitive salary range, flexible work arrangements requiring at least 50% time in-office or field, and a culture rooted in integrity and shared enthusiasm.

Matching Summary

This role supports U.S. Federal Government contracts requiring United States citizenship and mandates working within high-security FedRAMP High and IL5 cloud-native environments.

Salary

Base: $159,600 - $239,400 USD (McLean); Base: $144,400 - $258,000 USD (Other US locations); Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants

Skills & Requirements

Must-have

  • Splunk correlation searches and SPL development
  • FedRAMP High and DoD IL5 environment experience
  • AWS CloudTrail GuardDuty Inspector VPC Flow Logs
  • MITRE ATT&CK mapping and NIST SP 800-61r3 knowledge
  • Hypothesis-driven threat hunting in SaaS architectures

Nice-to-have

  • Experience with air-gapped region constraints
  • Strong understanding of identity-based attack vectors
  • Familiarity with secure logging in disconnected environments
  • Collaboration with Red/Purple/Blue teams
  • Curious minds and courageous collaborators culture

Key Requirements

  • 6+ years of cybersecurity operations or detection engineering experience
  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or equivalent
  • Ability to obtain and maintain TS/SCI w/CI Poly security clearance
  • Must be a United States citizen (naturalized or native)

Work Rights

Must have US citizenship

Tailored Resume

Cover Letter