Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Suricata IDS/IPS Engineer - RHEL & Napatech Tuning

Enssolutions

We are seeking an experienced Suricata Engineer to join our cybersecurity team. The ideal candidate will possess deep technical expertise in Suricata, particularly in understanding and managing its YAML configuration files, and how these configurations integrate and influence the Suricata Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS). You will play a critical role in deploying, tuning, and maintaining Suricata within a complex enterprise IT environment, primarily running on RedHat Enterprise Linux. A key focus of this role will be tuning Suricata to operate optimally with Napatech network interface cards (NICs), ensuring high-performance packet capture and processing while minimizing packet loss and system resource overhead. What You’ll Work On: Designing, deploying, and maintaining Suricata IDS/IPS systems across enterprise networks. Developing, reviewing, and optimizing Suricata YAML configuration files to ensure optimal detection capabilities and minimal false positives. Understanding and managing the interaction between Suricata’s YAML configuration and its runtime engine, including rule loading, protocol decoding, and logging. Tuning Suricata for optimal performance with Napatech NICs, including configuring Direct Memory Access (DMA), RSS queues, interrupt coalescing, and leveraging any NIC-specific acceleration features. Collaborating with security teams to integrate Suricata with SIEM and other security monitoring platforms. Troubleshooting installation and operational issues specific to Suricata on RedHat Enterprise Linux, addressing compatibility, kernel module requirements, SELinux policies, and performance tuning. Identifying and mitigating common pitfalls encountered when deploying Suricata in large-scale enterprise environments, including package dependencies, system resource constraints, and NIC driver/configuration issues. Provide detailed documentation and runbooks for Suricata configuration, tuning NICs, and deployment processes. Staying current with Suricata releases, NIC driver updates, and community best practices for network interface tuning and IDS/IPS performance enhancement. Qualifications: Proven experience working with Suricata IDS/IPS systems, including hands‑on management of its YAML configuration files. Strong knowledge of the Suricata configuration structure, syntax, and how it controls detection rules, logging, and output modules. Extensive experience administering RedHat Enterprise Linux (RHEL) systems, including package management (yum/dnf), kernel module management, SELinux configuration, and system optimization. Hands‑on experience tuning Suricata for high-performance packet capture with Napatech NICs or similar advanced network interface cards. Familiarity with NIC-specific features such as DMA, Receive Side Scaling (RSS), interrupt moderation, and offload capabilities, and how to configure them for Suricata. Experience troubleshooting Suricata’s interaction with NIC drivers and kernel modules in an enterprise environment. Experience with scripting languages (Bash, Python) to automate Suricata configuration and deployment tasks. TS/SCI clearance with the ability to obtain a counter‑intelligence polygraph. Associate’s degree and 5+ years of experience supporting IT projects and activities or Bachelor’s degree and 3+ years of experience supporting IT projects and activities or Master’s degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree. DoD8570 IAT LevelII Certification, including Security+ CE, CCNA‑Security, GSEC, SSCP, CySA+, GICSP, or CND Certification. Ability to obtain a DoD8570 Cybersecurity Service Provider– Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date. Nice If You Have: Proficient understanding of network protocols, intrusion detection methodologies, and security event correlation. Experience integrating Suricata with Splunk, or other SIEM solutions. Knowledge of containerized deployments of Suricata (Docker/Kubernetes) in enterprise environments. Familiarity with common Linux operating systems, including RHEL, Oracle, CentOS. Familiarity with other industry-standard IDS/IPS solutions and related technologies. Ability to be a self‑starter, work without considerable direction, and work with a team. Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations. Benefits: Free Platinum‑Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers’ Compensation Relocation Assistance #J-18808-Ljbffr

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Suricata IDS/IPS Engineer - RHEL & Napatech Tuning in College Park, MD vacancy
  •  ...ENS Solutions, LLC is seeking an experienced Suricata Engineer to join our cybersecurity team in Washington, D.C. The ideal candidate will...  ...enterprise IT environments. Responsibilities include deploying and tuning Suricata, optimizing packet capture performance, and... 
    Suggested

    Enssolutions

    Washington DC
    2 days ago
  •  ...company is seeking a Network Intrusion Detection Engineer to enhance security measures within their infrastructure...  ...Linux and hands-on experience with systems like Suricata and Snort. Responsibilities include designing IDS/IPS systems, optimizing configurations, and... 
    Suggested

    DAn Solutions Inc

    Washington DC
    2 days ago
  •  ...seeking an experienced Suricata Engineer to join our...  ...Intrusion Prevention Systems (IDS/IPS). You will play a critical...  ...role in deploying, tuning, and maintaining Suricata...  ...optimally with Napatech network interface cards...  ...Hat Enterprise Linux (RHEL) systems, including package... 
    Suggested
    Remote work
    Flexible hours

    GuidePoint Security

    Washington DC
    5 days ago
  • $120k - $185k

     ...Suricata Cyber Security Engineer Location: Reston, VA or Washington, DC Required...  ..., integration, tuning, and sustainment of Suricata IDS/IPS solutions operating within...  ...including Napatech network interface cards...  ...Hat Enterprise Linux (RHEL) environments, including... 
    Suggested
    Full time
    Remote work

    Ennoble First, Inc.

    Washington DC
    4 days ago
  • $112k - $179k

     ...Virtual Desktop Systems Engineer Job Locations...  ...Riverdale Requisition ID 2026-164749 Position...  ...maintaining system documentation, tune system performance,...  ...center networking (TCP/IP, switching/routing,...  ...19, and 2022 as well as RHEL and SLES operating systems... 
    Suggested
    Contract work
    Work experience placement
    Shift work

    Peraton

    Riverdale, MD
    6 days ago
  •  ...Senior Security Operations Engineer Job Title: Senior Security...  ...configuring, administering, tuning, and operationally managing enterprise...  ...and Prevention Systems (IDS/IPS), network security monitoring...  ...technologies (e.g., Snort, Suricata, Palo Alto, Cisco Firepower)... 

    Tri-Force Consulting Services Inc. | IT Recruitment & Staffi...

    Washington DC
    7 days ago
  • $176k - $247k

    Clearance: TS/SCI - Polygraph required Position ID: 01-01-006-SE-SE2OR3 Location: Laurel,...  ...Required Skills Skilled in Linux (RHEL) Administration including storage and interface...  ...required. Bachelor’s degree in System Engineering, Computer Science, Information Systems,... 

    Akina Inc

    Laurel, MD
    1 day ago
  • Amazon Data Services, Inc. is seeking a Senior Network Development Engineer to join the Network Fabric Engineering team. This role involves...  ...units globally. Ideal candidates will possess over 8 years of IP networking experience, strong knowledge of major routing protocols... 

    Amazon Data Services, Inc.

    Arlington, VA
    2 days ago
  • $110k - $140k

     ...We are seeking a highly skilled Network Engineer to join our Managed Service Provider (MSP...  ...site surveys, RF planning, and performance tuning. Maintain network documentation,...  ...configuration and troubleshooting (policy, NAT, IPS/IDS) Secure network segmentation and remote... 
    Remote work
    Flexible hours
    Afternoon shift

    SHI

    Washington DC
    2 days ago
  •  ...TIC Systems Engineer ID 2025-9085 Type Full Time W/Benefits Ret Match...  ...web proxies, intrusion prevention systems (IPS), network access control (NAC), and VPN gateways...  ..., monitor traffic flows, and fine-tune load balancing algorithms to improve application... 
    Full time
    Local area

    ERT

    Arlington, VA
    7 days ago
  • $68.83k - $117.99k

     ...Job ID 504588 Posted since 18-May-2026 Job type Full-time Employment type Permanent Location(s) Beltsville - Maryland Buffalo Grove...  ...one hour of a major airport. Overview This Building Automation Engineer will lead technical aspects during pre‑construction and early project... 
    Permanent employment
    Full time
    Contract work
    For contractors
    Work at office
    Local area

    Siemens Mobility

    Beltsville, MD
    3 days ago
  • $126.4k - $189.6k

     ...Ovation DCS Programmer - Systems Engineer to support the design,...  ...Support control optimization, tuning, and modernization initiatives...  ...industrial protocols (EtherNet/IP, ProfiNET, Modbus TCP/RTU, OPC...  ...understanding of instrumentation, P&IDs, electrical schematics, and... 
    Full time
    Temporary work
    Part time
    Casual work
    Local area
    Remote work
    Flexible hours

    Stantec

    Washington DC
    5 days ago
  •  ...support in enterprise environments Preferred Skills and Qualifications: - Experience with network security tools such as firewalls, IDS/IPS, and monitoring platforms - Familiarity with vulnerability scanning and remediation in network environments - Knowledge of... 
    Minimum wage
    Full time
    Contract work
    Temporary work
    Work experience placement
    Remote work

    Maximus

    Adelphi, MD
    2 days ago
  •  ...Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security Degree in a STEM related...  ...collaborating, developing, and designing security orchestrations with SMEs/engineers, vendors, and project stakeholders Ability to navigate and... 
    Remote work
    Work from home
    Flexible hours

    Phoenix Cyber

    Washington DC
    5 days ago
  • $107.9k - $195.05k

     ...in a federal agency context. This senior engineering role sits at the center of the organization...  ..., access, and conditional access (Entra ID) Engineer and validate device-...  ...Function Apps) for third-party logs. Tune audit retention, analytic rules, and alert... 
    Local area
    Immediate start
    Night shift
    Day shift

    Leidos

    Bladensburg, MD
    1 day ago
  • $135k - $216k

     ...Cyber Systems Engineering, Advisor - TS/SCI w/Poly Job Locations...  ...US-MD-Laurel Requisition ID 2026-166248 Position...  ...in enterprise networking (TCP/IP, routing protocols such as BGP...  ...troubleshooting and performance tuning Solid understanding of Linux... 
    Contract work
    Shift work
    Night shift

    Peraton

    Laurel, MD
    3 days ago
  • $176k - $282k

     ...Senior Tech Lead - Cyber Systems Engineering Job Locations US-MD-College Park Requisition ID 2026-166617 Position Category Engineering...  ...complex issues: root-cause analysis, performance tuning, reliability improvements, and lifecycle... 
    Full time
    Contract work
    For subcontractor
    Relocation package
    Shift work

    Peraton

    College Park, MD
    3 days ago
  • $102.4k - $153.2k

     ...Senior Cloud Operations Engineer, Deployments Job Category: Engineering...  ..., troubleshooting, and tuning Java applications and Apache Tomcat...  ...troubleshooting skills including TCP/IP, DNS, VPN is a plus ~...  ...relevant recruitment stage. Job ID: 23585 AI in Action -... 
    Casual work
    Remote work
    Monday to Friday
    Flexible hours
    Shift work

    Pegasystems

    Washington DC
    6 days ago
  • $131.3k - $237.35k

     ...an exciting opportunity a Principal Endpoint Security Systems Engineer in our Intel Security Sector's Analysis Solutions Business Area...  ...tools and processes such as Splunk, Rapid7, SolarWinds, Cisco IDS/IPS, VPN, WebInspect, AppDetective At Leidos , the... 
    Local area
    Immediate start
    Flexible hours

    Leidos

    Bethesda, MD
    5 days ago
  • $131.3k - $237.35k

     ...Principal Endpoint Security Systems Engineer Leidos has an exciting opportunity for a Principal Endpoint Security Systems Engineer in...  ...tools and processes such as Splunk, Rapid7, SolarWinds, Cisco IDS/IPS, VPN, WebInspect, AppDetective Benefits Competitive benefits including... 
    Immediate start
    Flexible hours

    Koitecc Solutions

    Bethesda, MD
    2 days ago
  • $70.32k - $130.86k

     ...environment. This is primarily a support role with great emphasis on engineering of CI/CD pipeline infrastructure. Help train junior members...  ...in large – multi-site environments, expert knowledge of RHEL, in-depth knowledge and real-world experience in programming &... 
    Full time
    Work experience placement

    TLINKED LLC

    Washington DC
    3 days ago
  • $86k - $138k

     ...Linux Systems Engineer Job Locations US-MD-College Park Requisition ID 2026-163721 Position Category Information Technology Clearance...  ...Configure and troubleshoot networking and TCP/IP (switching/routing basics, port activation, patching... 
    Full time
    Contract work
    For subcontractor
    Remote work
    Relocation package
    Shift work

    Peraton

    College Park, MD
    4 days ago
  • Assistant Building Engineer page is loaded## Assistant Building Engineerlocations: Lanham, MDtime type: Full timeposted on: Posted 2 Days Agojob requisition id: R0006001Four dynamic, integrated companies make up the Transwestern enterprise, giving us the perspective to... 
    Work at office
    Local area
    Remote work
    Shift work

    Transwestern

    Lanham, MD
    4 days ago
  • $78.5k - $108k

     ...Who We Are Applied Materials is a global leader in materials engineering solutions used to produce virtually every new chip and advanced...  ...Offer Salary: $78,500.00 - $108,000.00 Location: Austin,TX, Boise,ID, Chandler,AZ, Linthicum,MD, Manassas,VA You'll benefit from a... 
    Full time
    Temporary work
    Relocation

    Applied Materials

    Brentwood, MD
    4 days ago
  • $70.97k - $121.67k

    Job ID: 502880 Posted since: 20-Apr-2026 Organization: Smart Infrastructure Field of work: Company Experience level: Experienced...  .... Transform the everyday with us! Building Automation Design Engineers create unique design solutions to meet specific customer requirements... 
    Permanent employment
    Full time
    Contract work
    For contractors
    Work at office
    Local area
    Immediate start
    Remote work

    Siemens Mobility

    Beltsville, MD
    1 day ago
  •  ...Automation / SOAR Engineer Washington, DC Type: Contract Category: Security Industry: Government Reference ID: JN -062026-107231 Date Posted: 06/02/2026 Shortcut...  ...with detection engineering and alert tuning, experience integrating automation into... 
    Hourly pay
    Contract work
    Local area
    Remote work

    Eliassen Group

    Washington DC
    5 days ago
  • $190k - $304k

     ...Technical Program Director / Lead Systems Engineer Job Locations US-MD-College Park Requisition ID 2026-163915 Position Category...  ...response patterns, root-cause analysis, performance tuning, capacity planning, and change control Guide... 
    Full time
    Contract work
    Relocation package
    Shift work

    Peraton

    College Park, MD
    3 days ago
  • $112k - $179k

     ...Senior Detection Engineer Job Locations US-VA-Arlington Requisition ID 2026-165378 Position Category...  ...alerts Develop, configure, and tune cyber security tools, alerts, and...  ...reports. Write Zeek (Bro), Suricata and Snort signatures. Maintain... 
    Contract work
    Monday to Friday
    Shift work

    Peraton

    Arlington, VA
    4 days ago
  •  ...timeposted on: Posted Yesterdayjob requisition id: JR2610TSC is seeking a remote based **Guidance, Navigation, Controls (GNC) Engineer** that will design, integrate, test, and...  ...include:*** Work on a team to develop, modify and tune guidance and control systems for fixed wing... 
    Local area
    Remote work
    Flexible hours

    Technology Service Corporation

    Arlington, VA
    5 days ago
  •  ...Network Services Engineer A Cisco, WAN, LAN, Windows, Network Engineer is urgently required...  ...with DNS, SMTP, SNMP, TCP, UDP, IP, IPv4 addressing and CIDR/ VLSM, OSPF, QoS...  ...Intrusion Detection and Prevention Systems (IDS/IPS) and wired infrastructure, and network... 

    vTech Solution

    Washington DC
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Suricata IDS/IPS Engineer - RHEL & Napatech Tuning. Be the first to apply!