ManTech International

Detection Engineering Lead

ManTech International$141K — $236K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of cybersecurity experience focused on detection engineering and threat hunting
  • Proficiency in Python or similar languages for automation
  • Hands-on experience with SIEM platforms like Splunk or ELK
  • Familiarity with the MITRE ATT&CK framework
  • Experience with signature-based detection technologies like YARA
  • Knowledge of Windows internals for endpoint investigations
  • Active/current TS/SCI security clearance

Responsibilities

  • Develop and deploy custom detection rules across SIEM platforms
  • Build and optimize security analytics pipelines to enhance alert fidelity
  • Design SOAR playbooks to streamline security operations
  • Automate threat intelligence correlation and alerting
  • Create integration scripts to link security tools and enhance visibility
  • Conduct continuous security log analysis for anomaly detection
  • Collaborate with incident response teams to update detection logic

Benefits

  • Health Insurance
  • Life Insurance
  • Paid Time Off
  • Short-term and long-term Disability
  • Retirement and Savings options
  • Learning and Development opportunities
  • Wellness programs
Full Job Description
MANTECH seeks a motivated and customer-oriented Cyber Detection Engineering Lead to join our team in McLean, VA. In this role youlead the missionto enhance cybersecurity detection and response capabilities by developing high-fidelity detection logic, automating security workflows, and strengthening threat-hunting operations. This role serves as a technical leader and liaison with customer staff, overseeing project and task workflow while improving the organization's ability to identify, analyze, and respond to evolving cyber threats.

Responsibilities include but are not limited to:
  • Developing, optimizing, and deploying custom detection rules across SIEM platforms and creating signatures and detection rules for malware and network-based threats
  • Building, testing, and tuning security analytics pipelines to reduce false positives and improve alert fidelity
  • Designing and implementing SOAR playbooks to streamline and enhance security operations
  • Automating threat intelligence ingestion, correlation, and alerting mechanisms
  • Developing integration scripts between security tools and data sources to enhance visibility and response capabilities
  • Developing and maintaining robust detection logic mapped to MITRE ATT&CK techniques
  • Conducting continuous security log analysis to identify anomalies and potential threats
  • Collaborating with Incident Response teams to provide detection logic for emerging threats
  • Leveraging EDR solutions to detect and investigate endpoint threats
  • Analyzing Windows internals and system logs to identify malicious activities and forensic artifacts
  • Serving as a liaison with customer staff and overseeing project and task workflow to ensure successful mission execution


Minimum Qualifications:
  • High School Diploma and 7+ years of experience in cybersecurity with a focus on detection engineering, threat hunting, incident response, or CNO/CNE
  • Experience with Python or a similar language for automation and data analysis
  • Hands-on experience with SIEM platforms such as Splunk, ELK, Sentinel, Chronicle, or similar technologies
  • Experience applying the MITRE ATT&CK framework for adversary tactics and techniques mapping
  • Experience with YARA, Snort, Suricata, or other signature-based detection technologies
  • Experience with Windows internals and forensic artifacts for endpoint security investigations


Preferred Qualifications:
  • Bachelors degree in Cybersecurity, Computer Science or other relevant field
  • Experience with SOAR solutions and security automation workflows
  • Experience with threat intelligence platforms and integrating threat intelligence feeds into security operations
  • Prior experience in penetration testing, red teaming, or reverse engineering
  • Certifications such as GCDA, GCIH, GCFA, OSCP, or Splunk Certified Security Professional


Clearance Requirements:
  • Active/current TS/SCI with polygraph


Physical Requirements:
  • Must be able to remain in a stationary position 50% of the time


The projected compensation range for this position is $141,500.00-$236,000.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

About ManTech International

ManTech International Corporation is an American defense contracting firm that was founded in 1968. The company provides cybersecurity, intelligence, and defense solutions to the United States Government. ManTech has over 9,000 employees and operates in 40 countries worldwide. The company's services include software development, systems engineering, and enterprise IT solutions. ManTech has been awarded numerous contracts by the U.S. Department of Defense and other government agencies.
Learn more about ManTech International
Size
9,800 employees
Market Cap
$3.7 billion
Industry
Net Income
$120.5 million
Founded
1968
5 Year Trend
+9.8%
Revenue
$2.5 billion
NASDAQ

Similar Jobs

More Jobs at ManTech International

  • ManTech International
    Cyber Security Task Lead
    $128K — $214K *
    Linthicum Heights, MD 21090 (Anne Arundel County)
    Information Technology
    In-Person
  • ManTech International
    Senior CNO Developer
    $114K — $190K *
    Annapolis, MD 21401 (Anne Arundel County)
    Information Technology
    In-Person
  • ManTech International
    Senior CNO Developer
    $114K — $190K *
    Annapolis Junction, MD 20701 (Howard County)
    Information Technology
    In-Person
  • ManTech International
    Data Scientist
    $128K — $214K *
    Patuxent River, MD 20670 (Saint Marys County)
    Aerospace & Defense
    In-Person
  • ManTech International
    Mission Assurance Engineer
    $116K — $194K *
    Lompoc, CA 93436 (Santa Barbara County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Detection Engineering Lead jobs: