AWS Detection Engineer Job at Leidos, Hill Air Force Base, UT

ZVRZdTdpd2VaY29rNGtKN3hzeTZDZFhmV3c9PQ==
  • Leidos
  • Hill Air Force Base, UT

Job Description

Job Description

Description

We are seeking an AWS Detection Engineer to join our team in support of the GSM-O II effort. This position allows a hybrid schedule, and candidates can work out of Scott AFB, IL; Whitehall, OH; or Hill AFB, UT on their on-site days.

The Cyber Security Analyst/AWS Detection Engineer develops SIEM/SOAR capabilities to support the team’s Cyber Security Service Provider (CSSP) services. This will include developing, implementing, testing, and executing detection capabilities for AWS security monitoring using Elastic and Splunk.

A successful candidate will have experience in cyber analysis/incident response and SIEM/SOAR development. Candidates with experience using Elastic and Splunk within AWS environments will be able to apply that knowledge while analyzing and responding to cyber threats and warnings.

PRIMARY RESPONSIBILITIES:

  • Work with site threat emulation/analytic development team to maximize detection opportunities referenced to the MITRE ATT&CK framework.
  • Develop, implement, and test analytics using Elastic and Splunk to detect malicious actor activity within AWS IaaS environments.
  • Review operation and threat reports to determine detection improvement opportunities.
  • Provide analyst training opportunities using test environments and emulations of malicious activity.
  • Assist/advise other teams within DISA Global on their cloud security missions as needed.

BASIC QUALIFICATIONS:

  • Active DoD Secret security clearance and ability to obtain TS/SCI
  • DoD 8570 IAT level II or higher certification such as CompTIA Security+ CE, CySA+, ISC2 SSCP, SANS GSEC prior to starting.
  • DoD 8570 CSSP-A level Certification such as CEH, CySA+, GCIA or other certification is required within 180 days of hire.
  • Demonstrated commitment to training, self-study and maintaining proficiency in the technical cyber security domain and an ability to think and work independently.
  • Bachelor's degree and 4+ years of prior relevant experience; additional work experience or Cyber courses/certifications may be substituted in lieu of degree.
  • Knowledge of architecture, engineering, and operations of Elastic and/or Splunk.
  • Understanding of AWS cyber security monitoring tools such as CloudWatch, GuardDuty, VPC Flow logs, and Security Hub.
  • Strong written and oral communications skills and strong analytical and troubleshooting skills.
  • An ability to think critically and work independently.

PREFERRED QUALIFICATIONS:

  • CND experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization
  • Experience with Azure, Google Cloud Platform (GCP), or Oracle Cloud Infrastructure is desirable.
  • Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
  • Advanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
  • Unix/Linux command line experience.
  • Experience with automation templates such as CloudFormation, ARM template, or terraform.
  • Scripting and programming experience such as PowerShell, bash, or python.
  • Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings.
  • Familiarity or experience in Intelligence Driven Defense and/or Cyber Kill Chain methodology.
  • Existing 8570 CSSP Analyst Certifications (CEH), CySA+, etc.
  • Familiarity or experience using cybersecurity frameworks such as MITRE ATT&CK, CIS Controls, NIST CSF, or CSA CCM.

At Leidos, we don’t want someone who "fits the mold"—we want someone who melts it down and builds something better. This is a role for the restless, the over-caffeinated, the ones who ask, “what’s next?” before the dust settles on “what’s now.”

If you’re already scheming step 20 while everyone else is still debating step 2… good. You’ll fit right in.

Original Posting: September 10, 2025

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range: Pay Range $85,150.00 - $153,925.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Job Tags

Work experience placement,

Similar Jobs

Christus Health

Nurse Practitioner, NP/Physician Assistant, PA Urgent Care -- PRN Job at Christus Health

 ...Description Summary: We are looking for a Nurse Practitioner or Physician Assistant to join our amazing clinician team with our Urgent Care...  ...: ~ Dee Dee Fowler deedee. ****@*****.***. org Call/Text: (***) ***-**** Work Type: Per Diem As Needed... 

Accentuate Staffing

Warehouse Packer Job at Accentuate Staffing

Accentuate Staffing is assisting a toy distributor in the Durham area recruit reliable and detail-oriented Warehouse Packers to join their growing team. This is a 1st shift, temp-to-hire opportunity with the potential for long-term employment. Responsibilities:~Assemble...

NUC University

Instructor(a) CDA- Educación Continua Job at NUC University

 ...Job Description Job Description Descripcin: Impartir enseanza a grupo(s) de estudiantes en el rea de Educacin - CDA a travs de programas de Educacin Continua. Requisitos: Bachillerato en Educacin Preescolar o Educacin Temprana de la Niez,... 

Leidos

Senior Computer Systems Engineer Job at Leidos

 ...Hardware Support Security Android Bash Linux Network OpenAPI Perl Python Ruby Unix More: At Leidos in San Diego, CA, I am passionate about making a difference. I am looking for a Senior Systems Engineer to join my team focused on... 

MLee Healthcare Staffing and Recruiting, Inc

Speech Language Pathologist / SLP Job at MLee Healthcare Staffing and Recruiting, Inc

 ...seeking a dedicated and compassionate Speech-Language Pathologist (SLP) to join our client's multidisciplinary team. In this role, you...  ...candidate will be skilled in providing both in-person and teletherapy services and will have a strong commitment to improving patient...