Talent.com
AWS Detection Engineer
AWS Detection EngineerLeidos Inc • Scott Air Force Base, IL, United States
No longer accepting applications
AWS Detection Engineer

AWS Detection Engineer

Leidos Inc • Scott Air Force Base, IL, United States
30+ days ago
Job type
  • Full-time
Job description

Description

We are seeking an AWS Detection Engineer to join our team in support of the GSM-O II effort. This position allows a hybrid schedule, and candidates can work out of Scott AFB, IL; Whitehall, OH; or Hill AFB, UT on their on-site days.

The Cyber Security Analyst / AWS Detection Engineer develops SIEM / SOAR capabilities to support the team's Cyber Security Service Provider (CSSP) services. This will include developing, implementing, testing, and executing detection capabilities for AWS security monitoring using Elastic and Splunk.

A successful candidate will have experience in cyber analysis / incident response and SIEM / SOAR development. Candidates with experience using Elastic and Splunk within AWS environments will be able to apply that knowledge while analyzing and responding to cyber threats and warnings.

PRIMARY RESPONSIBILITIES :

  • Work with site threat emulation / analytic development team to maximize detection opportunities referenced to the MITRE ATT&CK framework.
  • Develop, implement, and test analytics using Elastic and Splunk to detect malicious actor activity within AWS IaaS environments.
  • Review operation and threat reports to determine detection improvement opportunities.
  • Provide analyst training opportunities using test environments and emulations of malicious activity.
  • Assist / advise other teams within DISA Global on their cloud security missions as needed.

BASIC QUALIFICATIONS :

  • Active DoD Secret security clearance and ability to obtain TS / SCI
  • DoD 8570 IAT level II or higher certification such as CompTIA Security+ CE, CySA+, ISC2 SSCP, SANS GSEC prior to starting.
  • DoD 8570 CSSP-A level Certification such as CEH, CySA+, GCIA or other certification is required within 180 days of hire.
  • Demonstrated commitment to training, self-study and maintaining proficiency in the technical cyber security domain and an ability to think and work independently.
  • Bachelor's degree and 4+ years of prior relevant experience; additional work experience or Cyber courses / certifications may be substituted in lieu of degree.
  • Knowledge of architecture, engineering, and operations of Elastic and / or Splunk.
  • Understanding of AWS cyber security monitoring tools such as CloudWatch, GuardDuty, VPC Flow logs, and Security Hub.
  • Strong written and oral communications skills and strong analytical and troubleshooting skills.
  • An ability to think critically and work independently.
  • PREFERRED QUALIFICATIONS :

  • CND experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization
  • Experience with Azure, Google Cloud Platform (GCP), or Oracle Cloud Infrastructure is desirable.
  • Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
  • Advanced understanding of TCP / IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
  • Unix / Linux command line experience.
  • Experience with automation templates such as CloudFormation, ARM template, or terraform.
  • Scripting and programming experience such as PowerShell, bash, or python.
  • Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings.
  • Familiarity or experience in Intelligence Driven Defense and / or Cyber Kill Chain methodology.
  • Existing 8570 CSSP Analyst Certifications (CEH), CySA+, etc.
  • Familiarity or experience using cybersecurity frameworks such as MITRE ATT&CK, CIS Controls, NIST CSF, or CSA CCM.
  • At Leidos, we don't want someone who "fits the mold"-we want someone who melts it down and builds something better. This is a role for the restless, the over-caffeinated, the ones who ask, "what's next?" before the dust settles on "what's now."

    If you're already scheming step 20 while everyone else is still debating step 2... good. You'll fit right in.

    Original Posting : September 10, 2025

    For U.S. Positions : While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

    Pay Range :

    Pay Range $85,150.00 - $153,925.00

    The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

    Create a job alert for this search

    Detection Engineer • Scott Air Force Base, IL, United States

    Related jobs
    Senior AWS DevOps Engineer

    Senior AWS DevOps Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for a Senior AWS DevOps Engineer.Key Responsibilities Collaborate with development teams to design, implement, and optimize scalable and secure cloud solutions on AWS Automa...Show more
    Last updated: 30+ days ago • Promoted
    Platform Engineer

    Platform Engineer

    VirtualVocations • Florissant, Missouri, United States
    Full-time
    A company is looking for a Platform Engineer with a strong focus on Fastly, Compute@Edge, VCL, and WAF.Key Responsibilities Develop and maintain backend systems and cloud infrastructure using Fas...Show more
    Last updated: 30+ days ago • Promoted
    AWS Certified Cloud Engineer

    AWS Certified Cloud Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for a Cloud Engineer III to design and implement cloud services and security architectures.Key Responsibilities Design, deploy, and configure cloud services for migrations an...Show more
    Last updated: 30+ days ago • Promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    VirtualVocations • Saint Charles, Missouri, United States
    Full-time
    A company is looking for a Senior Cloud Security Engineer to join their fully remote team.Key Responsibilities Drive effective security detection and response across the production platform Desi...Show more
    Last updated: 30+ days ago • Promoted
    AWS Solutions Architect

    AWS Solutions Architect

    VirtualVocations • Saint Charles, Missouri, United States
    Full-time
    A company is looking for a Solutions Architect - AWS.Key Responsibilities Architect and design scalable, secure, and highly available cloud solutions on AWS Implement infrastructure as code (IaC...Show more
    Last updated: 30+ days ago • Promoted
    AWS DevOps Engineer

    AWS DevOps Engineer

    VirtualVocations • Saint Charles, Missouri, United States
    Full-time
    A company is looking for an AWS DevOps Engineer - Tech Lead.Key Responsibilities Collaborate with development teams to design and optimize cloud solutions on AWS Automate infrastructure provisio...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocations • Florissant, Missouri, United States
    Full-time
    A company is looking for a Sr Security Engineer responsible for maintaining and improving the overall security posture and incident response for infrastructure and application hosting environments....Show more
    Last updated: 30+ days ago • Promoted
    SIEM Engineer

    SIEM Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for a Manager, SIEM SOAR Engineer.Key Responsibilities Architect, deploy, and operationalize CrowdStrike LogScale for enterprise and managed clients Develop custom detection...Show more
    Last updated: 30+ days ago • Promoted
    Lead Engineer

    Lead Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for a Lead Engineer to oversee delivery across their core product stack and mentor an engineering team. Key Responsibilities Lead a team of 4-6 engineers in full-stack develop...Show more
    Last updated: 30+ days ago • Promoted
    Lead AWS Cloud DevOps Engineer

    Lead AWS Cloud DevOps Engineer

    VirtualVocations • Florissant, Missouri, United States
    Full-time
    A company is looking for a Lead AWS Cloud DevOps Engineer.Key Responsibilities Design and implement Cloud infrastructure for mission-critical platforms using AWS technologies Lead a team of engi...Show more
    Last updated: 4 days ago • Promoted
    Enterprise Security Engineer

    Enterprise Security Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for an Enterprise Security Engineer, IAM (US Remote).Key Responsibilities Administer, configure, and maintain IAM solutions, including SSO, MFA, IGA, and PAM platforms Colle...Show more
    Last updated: 30+ days ago • Promoted
    Tactical Seeker Engineer (Experienced, Lead or Senior)

    Tactical Seeker Engineer (Experienced, Lead or Senior)

    BOEING • Saint Charles, Missouri, United States
    Permanent +1
    Job Description At Boeing, we innovate and collaborate to make the world a better place.We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, wi...Show more
    Last updated: 20 days ago • Promoted
    AWS Security Engineer

    AWS Security Engineer

    VirtualVocations • Florissant, Missouri, United States
    Temporary
    A company is looking for an AWS Cybersecurity Architect for a short-term contract.Key Responsibilities : Design and manage AWS organizational governance, including Service Control Policies and mul...Show more
    Last updated: 7 days ago • Promoted
    Senior DevOps Engineer

    Senior DevOps Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for a Senior DevOps Platform Engineer.Key Responsibilities Design, deploy, and maintain foundational infrastructure components in AWS and Databricks Manage AWS environment, ...Show more
    Last updated: 30+ days ago • Promoted
    AWS IAM DevSecOps Engineer

    AWS IAM DevSecOps Engineer

    VirtualVocations • Saint Charles, Missouri, United States
    Full-time
    A company is looking for an AWS IAM DevSecOps Engineer IV.Key Responsibilities Design, build, and deliver AWS IAM as a service for internal cloud consumers Develop and maintain Terraform code to...Show more
    Last updated: 5 days ago • Promoted
    Senior AWS Cloud Engineer

    Senior AWS Cloud Engineer

    VirtualVocations • Saint Charles, Missouri, United States
    Full-time
    A company is looking for a Senior AWS Cloud Engineer to modernize and scale cloud platforms.Key Responsibilities Design, deploy, and manage scalable AWS environments Build and maintain Infrastru...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer

    Security Engineer

    VirtualVocations • Florissant, Missouri, United States
    Full-time
    A company is looking for a Security Engineer to join their portfolio companies.Key Responsibilities Secure and monitor blockchain infrastructure, nodes, and validators Partner with smart contrac...Show more
    Last updated: 30+ days ago • Promoted
    AWS Cloud Engineer

    AWS Cloud Engineer

    VirtualVocations • Saint Louis, Missouri, United States
    Full-time
    A company is looking for a Cloud Engineer (AWS) to support and enhance their AWS infrastructure remotely from LATAM.Key Responsibilities Manage, optimize, and maintain AWS services, including EC2...Show more
    Last updated: 30+ days ago • Promoted