Demo

Cybersecurity Detection Content Developer

ALTA IT Services
Vienna, VA Full Time
POSTED ON 1/20/2025
AVAILABLE BEFORE 4/9/2025

Cybersecurity Detection Content Developer

Interested in learning more about this job Scroll down and find out what skills, experience and educational qualifications are needed.

Location : Hybrid based out of Vienna, VA, Winchester, VA or Pensacola, FL or Remote.

Pay Rate : Open to Both C2C and W2 options

Position Type : Multiyear Contract

Job Description :

  • Create high-confidence security monitoring content consisting of dashboards and alerts within SIEM and other network security tools (Hybrid / Cloud) to detect threats, suspicious activities, potential incidents, and aid in analytical-investigations.
  • Continuously evaluate and optimize custom and OOTB (out of the box) detection content monitoring various on-prem and cloud service provider environments in support to SOC operations.
  • Serve as lead cyber security content SME for collaboration with various teams for purposes including, but not limited to threat intelligence, hunt operations, red team engagements, identity management, security architecture review, security event logging issues, and detection content management for identifying gaps and enhancing The organization's cyber security monitoring posture.

Log Analysis :

  • Troubleshoot issues in production and other test and development environments, applying debugging and problem-solving methodologies (e.g., log analysis, non-invasive tests).
  • Conduct independent critical thinking to diagnose and analyze threat intelligence data, latest threats and attack vectors, tactics, techniques, and procedures (TTPs) to make decisions on the most effective response and remediation strategies through content development.
  • Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats and vulnerabilities impacting the organization.
  • Documentation and Process Improvement :

  • Develop technical documents including, but not limited to content creation, content / rule review process, language-specific querying for disparate log sources, network / security visibility issues, detection gaps, SOPs, and monitoring strategies.
  • Continuously executes timely and effective communication across team and management channels regarding tasks completed, roadblocks experienced, and process improvement opportunities identified.
  • 7 years of experience within cyber security operations and SIEM technologies serving in a senior analyst or supervisory role.
  • Advanced knowledge of content creation concepts, content development management, content testing, implementation, the revision cycle, and cybersecurity threat analysis of complex events.
  • Advanced skills in monitoring and analyzing logs and alerts from a variety of different technologies and sources, to include but not limited to IDS / IPS, firewall, proxies, network / host, anti-virus, OS events, application / database, EDR, NDR, Cloud (IaaS, PaaS, SaaS).
  • Advanced skill in developing complex detection content using various data sources and query languages - e.g., custom SPL(macros, lookups, regex) SNORT, YARA, KQL
  • Experience in analyzing security systems, and how changes in conditions, operations, or the environment will affect deployed monitoring content.
  • Experience in applying cybersecurity and privacy principles to organizational requirements
  • relevant to confidentiality, integrity, availability, authentication, non-repudiation).

  • Advanced knowledge of security architectures, devices, proxies, firewalls, and system and
  • application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting,

    Procedural Language / Structured Query Language [PL / SQL] and injections, race conditions, covert

    channel, replay, return-oriented attacks, malicious code).

  • Advanced understanding of blue team / red team processes and technologies and their
  • applicability to custom content development

  • Advanced verbal and written skill presenting complex findings, conclusions, alternatives, and
  • information clearly and concisely to all levels of management, supervisors, stakeholders and vendors

    through advanced research, analytical, and problem solving skills

  • Required : Experience with security tools related to IPS / IDS, Antivirus, Firewalls, Proxies, DLP,
  • Forensic Analysis, Malware analysis, SIEM, Cloud, and the content development lifecycle

  • Required : Advanced skill in analyzing log events for on prem and cloud technologies to facilitate
  • development of cyber defense detections

  • Desired : Splunk Power User, CySA , CASP , CISSP or other related Information Security
  • certifications

  • Desired : Bachelor degree in cybersecurity or related discipline
  • Desired : Advanced knowledge of IT security standards and frameworks (e.g., MITRE ATT&CK )
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Cybersecurity Detection Content Developer?

    Sign up to receive alerts about other jobs on the Cybersecurity Detection Content Developer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $74,454 - $129,624
    Income Estimation: 
    $78,505 - $123,619
    Income Estimation: 
    $62,419 - $116,975
    Income Estimation: 
    $99,237 - $145,250
    Income Estimation: 
    $89,983 - $135,892
    Income Estimation: 
    $99,793 - $130,112
    Income Estimation: 
    $125,027 - $157,872
    Income Estimation: 
    $125,027 - $157,872
    Income Estimation: 
    $149,432 - $188,965
    Income Estimation: 
    $149,432 - $188,965
    Income Estimation: 
    $179,455 - $227,077
    Income Estimation: 
    $163,631 - $209,073
    Income Estimation: 
    $192,911 - $256,346
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at ALTA IT Services

    ALTA IT Services
    Hired Organization Address Vienna, VA Full Time
    Job Description Job Description Hi, I hope this email finds you well! My name is Julianna Spicer with ALTA IT Services. ...
    ALTA IT Services
    Hired Organization Address Reston, VA Part Time
    Job Details PART-TIME FRONT DESK ALTA IT Services is looking for a Front Desk Receptionist to work for an exciting compa...
    ALTA IT Services
    Hired Organization Address Silver Spring, MD Full Time
    Smart Hands Data Center Technician Location: Onsite – Silver Spring, MD Clearance: Must be able to obtain a Public Trust...
    ALTA IT Services
    Hired Organization Address Rockville, MD Contractor
    Oracle EBS R12.2 Sr Finance/Supply Chain Functional Analyst Location: Rockville, MD Contract Duration: 12 Months (with o...

    Not the job you're looking for? Here are some other Cybersecurity Detection Content Developer jobs in the Vienna, VA area that may be a better fit.

    Cybersecurity Threat Detection Developer

    Capgemini, Washington, DC

    AI Assistant is available now!

    Feel free to start your new journey!