Talent.com
AWS Detection Engineer
AWS Detection EngineerLeidos Inc • Hill Air Force Base, UT, United States
AWS Detection Engineer

AWS Detection Engineer

Leidos Inc • Hill Air Force Base, UT, United States
10 hours ago
Job type
  • Full-time
Job description

Description

We are seeking an AWS Detection Engineer to join our team in support of the GSM-O II effort. This position allows a hybrid schedule, and candidates can work out of Scott AFB, IL; Whitehall, OH; or Hill AFB, UT on their on-site days.

The Cyber Security Analyst / AWS Detection Engineer develops SIEM / SOAR capabilities to support the team's Cyber Security Service Provider (CSSP) services. This will include developing, implementing, testing, and executing detection capabilities for AWS security monitoring using Elastic and Splunk.

A successful candidate will have experience in cyber analysis / incident response and SIEM / SOAR development. Candidates with experience using Elastic and Splunk within AWS environments will be able to apply that knowledge while analyzing and responding to cyber threats and warnings.

PRIMARY RESPONSIBILITIES :

  • Work with site threat emulation / analytic development team to maximize detection opportunities referenced to the MITRE ATT&CK framework.
  • Develop, implement, and test analytics using Elastic and Splunk to detect malicious actor activity within AWS IaaS environments.
  • Review operation and threat reports to determine detection improvement opportunities.
  • Provide analyst training opportunities using test environments and emulations of malicious activity.
  • Assist / advise other teams within DISA Global on their cloud security missions as needed.

BASIC QUALIFICATIONS :

  • Active DoD Secret security clearance and ability to obtain TS / SCI
  • DoD 8570 IAT level II or higher certification such as CompTIA Security+ CE, CySA+, ISC2 SSCP, SANS GSEC prior to starting.
  • DoD 8570 CSSP-A level Certification such as CEH, CySA+, GCIA or other certification is required within 180 days of hire.
  • Demonstrated commitment to training, self-study and maintaining proficiency in the technical cyber security domain and an ability to think and work independently.
  • Bachelor's degree and 4+ years of prior relevant experience; additional work experience or Cyber courses / certifications may be substituted in lieu of degree.
  • Knowledge of architecture, engineering, and operations of Elastic and / or Splunk.
  • Understanding of AWS cyber security monitoring tools such as CloudWatch, GuardDuty, VPC Flow logs, and Security Hub.
  • Strong written and oral communications skills and strong analytical and troubleshooting skills.
  • An ability to think critically and work independently.
  • PREFERRED QUALIFICATIONS :

  • CND experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization
  • Experience with Azure, Google Cloud Platform (GCP), or Oracle Cloud Infrastructure is desirable.
  • Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
  • Advanced understanding of TCP / IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
  • Unix / Linux command line experience.
  • Experience with automation templates such as CloudFormation, ARM template, or terraform.
  • Scripting and programming experience such as PowerShell, bash, or python.
  • Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings.
  • Familiarity or experience in Intelligence Driven Defense and / or Cyber Kill Chain methodology.
  • Existing 8570 CSSP Analyst Certifications (CEH), CySA+, etc.
  • Familiarity or experience using cybersecurity frameworks such as MITRE ATT&CK, CIS Controls, NIST CSF, or CSA CCM.
  • At Leidos, we don't want someone who "fits the mold"-we want someone who melts it down and builds something better. This is a role for the restless, the over-caffeinated, the ones who ask, "what's next?" before the dust settles on "what's now."

    If you're already scheming step 20 while everyone else is still debating step 2... good. You'll fit right in.

    Original Posting : September 10, 2025

    For U.S. Positions : While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

    Pay Range :

    Pay Range $85,150.00 - $153,925.00

    The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

    Create a job alert for this search

    Detection Engineer • Hill Air Force Base, UT, United States

    Related jobs
    AWS DevOps Engineer

    AWS DevOps Engineer

    VirtualVocations • Ogden, Utah, United States
    Full-time
    A company is looking for an AWS DevOps Engineer - Tech Lead.Key Responsibilities Collaborate with development teams to design and optimize cloud solutions on AWS Automate infrastructure provisio...Show more
    Last updated: 30+ days ago • Promoted
    Red Team Security Engineer

    Red Team Security Engineer

    VirtualVocations • Ogden, Utah, United States
    Full-time
    A company is looking for a Red Team Security Engineer to work 100% REMOTE.Key Responsibilities Conduct vulnerability assessments and penetration testing using various assessment tools Serve as a...Show more
    Last updated: 8 hours ago • Promoted • New!
    Data Engineer Lead

    Data Engineer Lead

    VirtualVocations • Ogden, Utah, United States
    Full-time
    A company is looking for a Data Engineer Lead to support and enhance their AWS cloud analytical environment.Key Responsibilities Monitor system performance and ensure optimal operation of the AWS...Show more
    Last updated: 30+ days ago • Promoted
    Principal Engineer Cyber Countermeasures

    Principal Engineer Cyber Countermeasures

    VirtualVocations • Ogden, Utah, United States
    Full-time
    A company is looking for a Principal Engineer - Cyber Countermeasures.Key Responsibilities Lead the design and implementation of cyber countermeasures against advanced adversary tactics Develop ...Show more
    Last updated: 1 day ago • Promoted
    Advanced Security Engineer - Cyber Security

    Advanced Security Engineer - Cyber Security

    Relativity • Salt Lake City, UT, United States
    Full-time
    As an Advanced Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging t...Show more
    Last updated: 30+ days ago • Promoted
    Sales Engineer with Security Clearance

    Sales Engineer with Security Clearance

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Sales Engineer, Public Sector.Key Responsibilities Lead technical evaluations and demonstrations of the platform for public sector customers Design and execute proof-o...Show more
    Last updated: 1 day ago • Promoted
    Senior Cloud Security Engineer

    Senior Cloud Security Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Senior Security Engineer, Cloud Security.Key Responsibilities Design, implement, and maintain secure AWS infrastructure following best practices Embed security control...Show more
    Last updated: 30+ days ago • Promoted
    AWS Cloud Engineer

    AWS Cloud Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for an AWS Cloud Engineer.Key Responsibilities Design and implement scalable, secure, and cost-effective cloud infrastructure solutions on AWS Develop and maintain Terraform...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer, DevSecOps

    Security Engineer, DevSecOps

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Security Engineer on the DevSecOps team.Key Responsibilities Build and maintain infrastructure, including custom software and vendor integrations, to support security n...Show more
    Last updated: 14 hours ago • Promoted • New!
    AI Engineer

    AI Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for an AI Engineer with AWS skills for a fully remote role.Key Responsibilities Designing, developing, and maintaining agentic AI frameworks and solutions Implementing agent...Show more
    Last updated: 30+ days ago • Promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    Relativity • Salt Lake City, UT, United States
    Full-time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...Show more
    Last updated: 30+ days ago • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Security Engineer, Product Security.Key Responsibilities Design, implement, and manage security controls and policies within AWS Perform security assessments of cloud ...Show more
    Last updated: 30+ days ago • Promoted
    AWS Detection Engineer

    AWS Detection Engineer

    Leidos Inc • Hill Air Force Base, UT, United States
    Full-time
    We are seeking an AWS Detection Engineer to join our team in support of the GSM-O II effort.This position allows a hybrid schedule, and candidates can work out of Scott AFB, IL; Whitehall, OH; or H...Show more
    Last updated: 30+ days ago • Promoted
    Entry-Level Automotive Detailer / Lot Attendant

    Entry-Level Automotive Detailer / Lot Attendant

    Carvana • Burmester, UT, US
    Full-time
    Carvana - the fastest-growing used automotive retailer in U.In these entry-level roles, you'll have a number of positions to choose from : . Pay : Starting pay for this position is $17 / hr.Schedule : ...Show more
    Last updated: 13 days ago • Promoted
    Sr AWS Cloud DevOps Engineer

    Sr AWS Cloud DevOps Engineer

    Unisys Corporation • Salt Lake City, UT, United States
    Full-time
    What success looks like in this role : .DevSecOps Pipeline Design & Automation : .Design and implement secure, automated CI / CD pipelines in AWS using tools like AWS CodePipeline, Jenkins, GitLab CI, an...Show more
    Last updated: 30+ days ago • Promoted
    Senior AWS Engineer

    Senior AWS Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Senior AWS Engineer.Key Responsibilities Act as a Subject Matter Expert in AWS, architecting and operating cloud solutions Consult with clients to gather requirements ...Show more
    Last updated: 30+ days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Senior Security Engineer to enhance its security program through automation and proactive measures. Key Responsibilities Drive security projects to protect customers, br...Show more
    Last updated: 30+ days ago • Promoted
    AWS Cloud-Native Engineer

    AWS Cloud-Native Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for an AWS Cloud-Native Engineer specializing in Intelligent Document Processing and Data Extraction. Key Responsibilities : Build and maintain IDP pipelines leveraging AWS ser...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Operations Engineer

    Senior Security Operations Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for a Senior Security Operations Engineer (Azure).Key Responsibilities Lead Security Design and Architecture, Log Collection, and Security Incident Management Manage identit...Show more
    Last updated: 30+ days ago • Promoted
    AWS Certified Infrastructure Engineer

    AWS Certified Infrastructure Engineer

    VirtualVocations • Salt Lake City, Utah, United States
    Full-time
    A company is looking for an Infrastructure Systems Engineer to manage infrastructure for federal government and private sector clients. Key Responsibilities Design, deploy, and manage AWS environm...Show more
    Last updated: 30+ days ago • Promoted