Threat Hunting & Detection Engineer (us Federal)

Workday

McLean, VA, USA
Base: $159,600 - $239,400 usd; bonus/equity: eligi...
Fully remote
6+ years cybersecurity operations experience
Splunk correlation searches and spl development
Fedramp high and dod il5 environment experience
This role supports U.S. Federal Government contracts requiring United States citizenship and involves protecting enterprise and government SaaS environments

Job Summary

  • This role supports U.S. Federal Government contracts requiring United States citizenship and involves protecting enterprise and government SaaS environments.
  • The engineer will develop high-fidelity detection logic using Splunk and cloud-native telemetry to reduce adversary dwell time in regulated cloud environments.
  • Candidates must be comfortable operating in high-assurance, controlled, and sometimes disconnected environments where precision and auditability are critical.

Matching Summary

This role supports U.S. Federal Government contracts requiring United States citizenship and involves protecting enterprise and government SaaS environments.

Salary

Base: $159,600 - $239,400 USD; Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants; Benefits: Comprehensive benefits package described as linked

Skills & Requirements

Must-have

  • 6+ years cybersecurity operations experience
  • Splunk correlation searches and SPL development
  • FedRAMP High and DoD IL5 environment experience
  • AWS security services CloudTrail GuardDuty Inspector
  • MITRE ATT&CK mapping and adversary tradecraft

Nice-to-have

  • Hypothesis-driven threat hunting in SaaS architectures
  • Identity-based attack vector detection expertise
  • Container and workload-level attack detection
  • SOAR platform experience in constrained boundaries
  • Secure logging architecture in air-gapped environments

Key Requirements

  • United States citizenship required
  • TS/SCI w/CI Poly security clearance preferred
  • Bachelor's degree in Cybersecurity or equivalent experience
  • 6+ years of experience in cybersecurity operations

Work Rights

Must have US citizenship (naturalized or native)

Tailored Resume

Cover Letter