Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Base: $159,600 - $239,400 usd; bonus/equity: eligi...
Fully remote
Splunk correlation searches and spl development
Aws security services experience including cloudtrail
Fedramp high and dod il5 regulated environment knowledge
This role supports U.S. Federal Government contracts requiring United States citizenship and involves protecting enterprise and government SaaS environments

Job Summary

  • This role supports U.S. Federal Government contracts requiring United States citizenship and involves protecting enterprise and government SaaS environments.
  • The engineer is responsible for engineering high-fidelity detection logic using Splunk, AWS telemetry, and identity data to reduce adversary dwell time.
  • Workday offers a competitive salary range, flexible work arrangements requiring 50% in-office time, and a culture rooted in integrity and shared enthusiasm.

Matching Summary

This role supports U.S. Federal Government contracts requiring United States citizenship and involves protecting enterprise and government SaaS environments.

Salary

Base: $159,600 - $239,400 USD; Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants; Benefits: Comprehensive benefits package available

Skills & Requirements

Must-have

  • Splunk correlation searches and SPL development
  • AWS security services experience including CloudTrail
  • FedRAMP High and DoD IL5 regulated environment knowledge
  • MITRE ATT&CK mapping and adversary tradecraft understanding
  • NIST SP 800-61r3 incident response lifecycle familiarity

Nice-to-have

  • Hypothesis-driven threat hunting in SaaS architectures
  • Identity-based attack vector detection expertise
  • Container and workload-level attack detection skills
  • SOAR platform experience within constrained automation
  • Secure logging architecture in air-gapped environments

Key Requirements

  • 6+ years of cybersecurity operations or detection engineering experience
  • Bachelor's degree in Cybersecurity, Computer Science, Engineering, or equivalent
  • Ability to obtain and maintain TS/SCI w/CI Poly security clearance
  • Must be a United States citizen (naturalized or native)

Work Rights

Must have US citizenship

Tailored Resume

Cover Letter