Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Primary location base pyy range: $159,600 usd - $2...
Fully remote
Splunk detection logic development
Aws security services experience
Mitre att&ck mapping
This role supports U.S. federal agencies in modernizing their employee lifecycle and finance operations using Workday's enterprise cloud platform

Job Summary

  • This role supports U.S. federal agencies in modernizing their employee lifecycle and finance operations using Workday's enterprise cloud platform.
  • The Threat Hunting & Detection Engineer is responsible for engineering, validating, and continuously improving detection capabilities across FedRAMP High and IL5 cloud-native SaaS environments.
  • The team values collaboration, follow-through, and doing the right thing, especially when the stakes are high in mission-driven work.

Matching Summary

This role supports U.S. federal agencies in modernizing their employee lifecycle and finance operations using Workday's enterprise cloud platform.

Salary

Primary Location Base Pay Range: $159,600 USD - $239,400 USD; Additional US Location(s) Base Pay Range: $144,400 USD - $258,000 USD; Bonus/Equity: May be eligible for Workday Bonus Plan or role-specific commission/bonus, as well as annual refresh stock grants

Skills & Requirements

Must-have

  • Splunk detection logic development
  • AWS security services experience
  • MITRE ATT&CK mapping
  • FedRAMP High and IL5 environments
  • Cloud-native SaaS security

Nice-to-have

  • Hypothesis-driven threat hunting
  • Identity-based attack vectors
  • Container and workload attack detection
  • SOAR platform experience

Key Requirements

  • 6+ years cybersecurity experience
  • Splunk correlation searches and SPL
  • FedRAMP, DoD IL4/IL5 regulated environments
  • AWS security services
  • MITRE ATT&CK and NIST SP 800-61r3
  • Bachelor's degree or equivalent experience
  • Ability to obtain TS/SCI w/CI Poly clearance

Work Rights

Must have US citizenship

Tailored Resume

Cover Letter