ManTech International

Detection Engineering Lead

ManTech International$141K — $236K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • High School Diploma with 7+ years in cybersecurity focusing on detection engineering and threat hunting.
  • Proficient in Python or similar for automation and data analysis.
  • Hands-on experience with SIEM platforms like Splunk or ELK.
  • Knowledgeable in MITRE ATT&CK for threat tactic and technique mapping.
  • Experience with signature-based detection tools like YARA or Snort.
  • Familiar with Windows internals for endpoint security investigations.

Responsibilities

  • Develop and deploy custom detection rules on SIEM platforms.
  • Build and tune security analytics pipelines to improve alert fidelity.
  • Design and implement SOAR playbooks to enhance operations.
  • Automate threat intelligence correlation and alerting.
  • Create integration scripts between security tools to improve visibility.
  • Conduct security log analysis to identify anomalies and threats.
  • Collaborate with Incident Response teams on detection logic for emerging threats.

Benefits

  • Health Insurance options including medical, dental, and vision.
  • Life Insurance coverage.
  • Paid Time Off and Holiday Pay.
  • Short-term and long-term Disability benefits.
  • Retirement and Savings plans.
  • Learning and Development opportunities for career growth.
  • Wellness programs and other optional benefits.
Full Job Description
MANTECH seeks a motivated and customer-oriented Cyber Detection Engineering Lead to join our team in McLean, VA. In this role youlead the missionto enhance cybersecurity detection and response capabilities by developing high-fidelity detection logic, automating security workflows, and strengthening threat-hunting operations. This role serves as a technical leader and liaison with customer staff, overseeing project and task workflow while improving the organization's ability to identify, analyze, and respond to evolving cyber threats.

Responsibilities include but are not limited to:
  • Developing, optimizing, and deploying custom detection rules across SIEM platforms and creating signatures and detection rules for malware and network-based threats
  • Building, testing, and tuning security analytics pipelines to reduce false positives and improve alert fidelity
  • Designing and implementing SOAR playbooks to streamline and enhance security operations
  • Automating threat intelligence ingestion, correlation, and alerting mechanisms
  • Developing integration scripts between security tools and data sources to enhance visibility and response capabilities
  • Developing and maintaining robust detection logic mapped to MITRE ATT&CK techniques
  • Conducting continuous security log analysis to identify anomalies and potential threats
  • Collaborating with Incident Response teams to provide detection logic for emerging threats
  • Leveraging EDR solutions to detect and investigate endpoint threats
  • Analyzing Windows internals and system logs to identify malicious activities and forensic artifacts
  • Serving as a liaison with customer staff and overseeing project and task workflow to ensure successful mission execution


Minimum Qualifications:
  • High School Diploma and 7+ years of experience in cybersecurity with a focus on detection engineering, threat hunting, incident response, or CNO/CNE
  • Experience with Python or a similar language for automation and data analysis
  • Hands-on experience with SIEM platforms such as Splunk, ELK, Sentinel, Chronicle, or similar technologies
  • Experience applying the MITRE ATT&CK framework for adversary tactics and techniques mapping
  • Experience with YARA, Snort, Suricata, or other signature-based detection technologies
  • Experience with Windows internals and forensic artifacts for endpoint security investigations


Preferred Qualifications:
  • Bachelors degree in Cybersecurity, Computer Science or other relevant field
  • Experience with SOAR solutions and security automation workflows
  • Experience with threat intelligence platforms and integrating threat intelligence feeds into security operations
  • Prior experience in penetration testing, red teaming, or reverse engineering
  • Certifications such as GCDA, GCIH, GCFA, OSCP, or Splunk Certified Security Professional


Clearance Requirements:
  • Active/current TS/SCI with polygraph


Physical Requirements:
  • Must be able to remain in a stationary position 50% of the time


The projected compensation range for this position is $141,500.00-$236,000.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

About ManTech International

ManTech International Corporation is an American defense contracting firm that was founded in 1968. The company provides cybersecurity, intelligence, and defense solutions to the United States Government. ManTech has over 9,000 employees and operates in 40 countries worldwide. The company's services include software development, systems engineering, and enterprise IT solutions. ManTech has been awarded numerous contracts by the U.S. Department of Defense and other government agencies.
Learn more about ManTech International
Size
9,800 employees
Market Cap
$3.7 billion
Industry
Net Income
$120.5 million
Founded
1968
5 Year Trend
+9.8%
Revenue
$2.5 billion
NASDAQ

Similar Jobs

More Jobs at ManTech International

More Information Technology Jobs

Find similar Detection Engineering Lead jobs: