Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

AOUSC - Detection Engineering Lead

cFocus Software Incorporated

Job Description

Job Description

cFocus Software seeks a Detection Engineering Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance.
Qualifications:

  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 5+ years within IR in a large SOC (over 5,000 endpoints) with at least 3 years focused on proactive detection engineering, threat hunt, or adversary emulation. 
  • 3+ years of experience with demonstrated proficiency in forming hypothesis, querying large datasets and identifying APT behavior. 
  • 2+ years’ experience with demonstrated proficiency in scripting languages including Python and PowerShell to develop new tools.
  • 2+ years’ experience with demonstrated proficiency developing detections in a SIEM (utilizing Splunk ES or Microsoft Sentinel). 
  • This role most closely aligns with the NICE work role PD-WRL-006 (Threat Analysis).
  • Active OSCP or GXPN certification
Duties:
  • Lead Detection Engineering operations supporting AOUSC Security Operations Division (SOD) mission objectives and defensive cybersecurity operations.
  • Provide full lifecycle support for cybersecurity detection engineering activities, including research, testing, implementation, tuning, deployment, and maintenance of detection capabilities.
  • Research emerging cyber threats, adversary capabilities, attack methodologies, and Tactics, Techniques, and Procedures (TTPs) to improve detection coverage and SOC visibility.
  • Develop, test, validate, and deploy new SIEM detection signatures, analytics, rules, and workflows to enhance threat detection capabilities and minimize analyst burden.
  • Maintain and manage the Risk Based Alerting (RBA) framework within the Judiciary SIEM environment to ensure effective detection of risky or malicious activity.
  • Coordinate weekly meetings with SOC analysts and stakeholders to review alert performance, analyst feedback, false positives, and detection tuning requirements.
  • Analyze all false positive alerts to determine necessary tuning, whitelisting, suppression logic, and gaps in security monitoring or analytics.
  • Develop and maintain detailed documentation for all detection engineering changes, configuration updates, rule logic, workflows, and implementation procedures.
  • Coordinate with Threat Hunting, Cyber Threat Intelligence (CTI), Cybersecurity Triage, Incident Response, and Blue Team personnel to operationalize intelligence-driven detections.
  • Develop new alerts and detections in response to emerging cybersecurity threats, active vulnerabilities, malicious campaigns, and government-directed priorities.
  • Ensure critical vulnerability-related detections are deployed within required service level timelines, including 24-hour implementation for critical severity alerts.
  • Conduct analysis and validation of new alerts from security devices and external telemetry sources to determine operational impact, detection value, and analyst workflow considerations.
  • Track all detection engineering changes, modifications, additions, and removals through Jira stories and established Agile workflows.
  • Develop weekly operational reports summarizing security events, alert dispositions, workforce metrics, tuning activities, detection improvements, and outstanding issues.
  • Document and maintain all detection framework changes within configuration files, knowledge management portals, and operational repositories.
  • Support development and implementation of detection engineering execution plans aligned to AOUSC operational priorities, organizational risks, and emerging threat vectors.
  • Provide recommendations for improving telemetry collection, log visibility, event correlation, and security monitoring effectiveness across Judiciary systems and cloud environments.
  • Collaborate with Blue Team personnel to improve detection coverage associated with Red Team findings, adversary emulation, and cyber exercises.
  • Prepare and deliver technical briefings, operational status reports, executive summaries, and stakeholder presentations.
  • Support transition-in, transition-out, operational readiness, and knowledge transfer activities in accordance with AOUSC requirements.

Powered by JazzHR

P9TT05MarC

Vacancy posted 15 days ago
Similar jobs that could be interesting for youBased on the AOUSC - Detection Engineering Lead in Washington DC vacancy
  • cFocus Software seeks a Detection Engineering Lead to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance.... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    2 days ago
  • cFocus Software Incorporated seeks a Detection Engineering Lead to support the Administrative Office of the United States Courts (AOUSC) in Washington, DC. This hybrid role requires leading detection engineering operations, developing and implementing detection capabilities... 
    Suggested
    Work at office

    cFocus Software Incorporated

    Washington DC
    2 days ago
  • $145k - $155k

     ...with Gunnison. Salary: $145,000 - $155,000/year Work Location: Hybrid. 4 days/week on site in Washington, DC Lead detection engineering activities supporting cybersecurity monitoring and defense for the federal customer Oversee the full lifecycle of... 
    Suggested
    Contract work
    Flexible hours

    Gunnison Consulting Group, Inc.

    Washington DC
    3 days ago
  • $164k - $328k

     ...About The Role: Innovative Defense Technologies (IDT), a leading defense technology company, is seeking a Senior Engineering Lead to be part of our Warfare Systems team and based out of our Arlington, VA location. The Senior Engineering Lead will be responsible... 
    Suggested
    Full time
    Contract work
    Work at office
    Immediate start

    Innovative Defense Technologies

    Arlington, VA
    4 days ago
  • $160k - $220k

     ...in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The...  ...please visit Role Overview: As the Strategic Mission Engineering Lead, C-UAS at CHAOS, you will lead the design, development, execution... 
    Suggested
    Work experience placement
    Casual work
    Relocation package

    CHAOS Industries

    Washington DC
    2 days ago
  • $99k - $225k

     ...Job Number: R0237645 Engineering & Mission Integration Lead The Opportunity : Act as a strategic business leader, program manager, and client relationship owner, partnering with internal and external senior leaders to drive growth and delivery excellence across... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    5 days ago
  •  ...Position Overview The Data Engineering Lead is responsible for designing and implementing modern, scalable data architectures to support...  ...accuracy metrics Pipeline health indicators Variance detection summaries Enable transparency into data transformation... 
    Contract work
    Temporary work
    Flexible hours

    Ignite IT

    Suitland, MD
    1 day ago
  •  ...Mission Engineering Study Lead Ventus Executive Solutions is seeking a skilled Mission Engineering Study Lead to support an innovative program. You will serve as the senior analytic member of a team of analysts, engineers, and modelers conducting mission engineering... 

    Navstar

    Alexandria, VA
    1 day ago
  •  ...Full-Time/Part-Time Full-Time Description RiVidium is seeking a Vulnerability Engineering Lead to support our planned MODES III team supporting Military Community and Family Policy (MC&FP). This role supports IT, Cybersecurity, and Data Operations - Core... 
    Full time
    Contract work
    Part time

    Rividium Inc

    Alexandria, VA
    2 days ago
  • $140k - $220k

     ...Intelligence Community through advanced engineering, digital transformation, and program execution...  ...simulation, or operational systems. Lead the full AI/ML lifecycle — from data...  ...integration, retraining, and drift detection. Transition R&D prototypes into production... 
    Full time
    Remote work

    Frontier Technology

    Washington DC
    3 days ago
  • $120k - $135k

    Leidos is seeking an Engineering Lead for Unified Endpoint Management in Washington, DC. This role involves leading a team of engineers managing end-user computing environments, with a focus on Microsoft Endpoint Configuration Manager (MECM). Responsibilities include overseeing... 

    Leidos

    Washington DC
    2 days ago
  • $120k

     ...transformation and IT programs, allowing us to better serve our customers through scale and repeatability. Unified Endpoint Management - Engineering Lead The Engineering Lead will be responsible for leading a team of Unified Endpoint Management engineers with primary... 

    Leidos

    Washington DC
    2 days ago
  •  ...organisations with the people, capabilities, and strategies to lead - globally, fluently, and confidently. Piedmont Global builds...  ...government, and enterprise clients. We are looking for a hands‑on Engineering Lead to own the end‑to‑end delivery of our core product... 
    Contract work
    Work at office
    Local area
    Remote work

    Piedmont Global

    Arlington, VA
    5 days ago
  • A leading AI lab in Washington is looking for a foundational engineer to join their federal group. You will shape technical direction, manage strategic accounts, and translate customer pain points into product enhancements. Ideal candidates will have a strong engineering... 

    Cognition

    Washington DC
    2 days ago
  • RiVidium is looking for a Vulnerability Engineering Lead in Alexandria, Virginia, to support Military Community and Family Policy (MC&FP). This role guides teams in cybersecurity operations and compliance, ensuring mission-focused delivery. Ideal candidates should have... 

    Rividium

    Alexandria, VA
    4 days ago
  • $100k - $200k

     ...resiliency, contact center operations, information technology, software engineering, program management, strategic communications, engineering, and...  ...Position Overview Pantheon Data is seeking a Civil Engineering Lead to provide technical leadership and strategic guidance in... 
    For contractors
    Work at office
    Local area
    Remote work

    Pantheon Data

    Washington DC
    3 days ago
  • Overview Title: Civil Engineering Lead Req Number: ENG-26-00002 Requisition Category: (not specified) Full-Time/Part-Time: Full-Time Location: Washington, DC Telework/Work-from-Home Authorized: Yes About the Role Sawdey Solution Services is seeking a highly experienced... 
    Full time
    Contract work
    Part time
    Work at office
    Remote work
    Work from home

    Sawdey Solution Services

    Washington DC
    4 days ago
  • A consulting firm based in Washington, D.C. is seeking a Civil Engineering Lead to support Federal Government projects. This on-site role demands expertise in civil engineering for asset management and compliance. Key responsibilities include advising on engineering standards... 

    TeleSolv Consulting

    Washington DC
    2 days ago
  • $116.9k - $243.1k

     ...drive positive, lasting change that moves missions and the government forward! Overview: We are seeking a hands-on Security Engineering Lead to manage the engineering and sustainment of CBP SOC's security infrastructure. This role involves leading a team responsible... 
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    5 days ago
  •  ...Description Description TeleSolv Consulting has a great opportunity for you to work with the Federal Government as a Civil Engineering Lead.  This position is an on-site position in Washington, D.C. The Civil Engineering Lead provides subject matter expertise... 

    Telesolv Consulting

    Washington DC
    16 days ago
  • $135.2k - $278.5k

     ...Join us to drive positive, lasting change that moves missions and the government forward! Job Description The Systems Engineering Lead will conduct comprehensive systems engineering activities to support the client platform. Translate customer requirements into... 
    Live in
    Work at office
    Local area

    Accenture

    Arlington, VA
    3 days ago
  •  ...Koniag Technology Solutions, Inc, a Koniag Government Services company, is seeking a Systems Engineering Lead to support KTS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust. This position is for a... 
    Local area
    Flexible hours

    Koniag

    Washington DC
    5 days ago
  •  ...their applications, modernize their infrastructure and manage their data. Job Description: The Workstation and Systems Engineering Lead is a designated Key Personnel role responsible for leading the design, development, deployment, and maintenance of customer... 
    Permanent employment
    Contract work
    Work experience placement
    Work at office
    Local area

    TrueTandem

    Bethesda, MD
    5 days ago
  • CoStar Group, Inc. is looking for an experienced cyber-security professional in Arlington, Virginia, to lead incident response activities and oversee security assessments. Candidates should have a Bachelor’s degree, 8+ years in IT, and strong scripting skills. Responsibilities... 

    CoStar Group, Inc.

    Arlington, VA
    4 days ago
  • $100k - $200k

    Pantheon Data is seeking a Civil Engineering Lead in Washington, D.C. to provide strategic leadership for U.S. Coast Guard projects focused on shore infrastructure. Candidates should have a Masters in Civil Engineering, a PE license, PMP certification, and over 10 years... 

    Pantheon Data

    Washington DC
    3 days ago
  •  ...Job Description Job Description The Role We're seeking a Fintech Engineering Lead who has directly leverable B2C banking, stablecoin, or payments experience. This is a critically important role on our team. Youll be working with the technical founders to... 
    Remote work
    Flexible hours

    AHU Technologies Inc

    Washington DC
    17 days ago
  • A global technology organization is seeking an Engineering Lead to drive end-to-end delivery of core product platforms. The role involves leading a team, writing production code, and utilizing AI-assisted development tools. Candidates must have over 5 years of engineering... 
    Remote job
    Flexible hours

    Piedmont Global

    Arlington, VA
    5 days ago
  • True Zero Technologies is seeking a Senior Cybersecurity Engineer located in Arlington, Virginia. This role will lead cybersecurity engineering efforts, implement security controls, and support federal security requirements. Required qualifications include a Bachelor’s... 

    True Zero Technologies

    Arlington, VA
    5 days ago
  •  ...A global energy technology provider is seeking a Solutions Engineering Lead to support the sales team in Washington, focusing on developing customer relationships and delivering technical solutions. This role requires strong knowledge in power systems and excellent communication... 
    Remote work

    Reactive Technologies LTD

    Washington DC
    4 days ago
  •  ...Accenture. ROLE DESCRIPTION As we continue to expand our North American presence, we have a unique opportunity for a Solutions Engineering Lead to join a group of innovative and performance-driven people, with a passion for delivering low carbon energy systems globally... 
    Permanent employment
    Full time
    Contract work
    Work experience placement
    Remote work
    Work from home
    Flexible hours

    Reactive Technologies LTD

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to AOUSC - Detection Engineering Lead. Be the first to apply!