Suricata IDS/IPS Engineer - RHEL & Napatech Tuning
Enssolutions
We are seeking an experienced Suricata Engineer to join our cybersecurity team. The ideal candidate will possess deep technical expertise in Suricata, particularly in understanding and managing its YAML configuration files, and how these configurations integrate and influence the Suricata Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS). You will play a critical role in deploying, tuning, and maintaining Suricata within a complex enterprise IT environment, primarily running on RedHat Enterprise Linux. A key focus of this role will be tuning Suricata to operate optimally with Napatech network interface cards (NICs), ensuring high-performance packet capture and processing while minimizing packet loss and system resource overhead. What You’ll Work On: Designing, deploying, and maintaining Suricata IDS/IPS systems across enterprise networks. Developing, reviewing, and optimizing Suricata YAML configuration files to ensure optimal detection capabilities and minimal false positives. Understanding and managing the interaction between Suricata’s YAML configuration and its runtime engine, including rule loading, protocol decoding, and logging. Tuning Suricata for optimal performance with Napatech NICs, including configuring Direct Memory Access (DMA), RSS queues, interrupt coalescing, and leveraging any NIC-specific acceleration features. Collaborating with security teams to integrate Suricata with SIEM and other security monitoring platforms. Troubleshooting installation and operational issues specific to Suricata on RedHat Enterprise Linux, addressing compatibility, kernel module requirements, SELinux policies, and performance tuning. Identifying and mitigating common pitfalls encountered when deploying Suricata in large-scale enterprise environments, including package dependencies, system resource constraints, and NIC driver/configuration issues. Provide detailed documentation and runbooks for Suricata configuration, tuning NICs, and deployment processes. Staying current with Suricata releases, NIC driver updates, and community best practices for network interface tuning and IDS/IPS performance enhancement. Qualifications: Proven experience working with Suricata IDS/IPS systems, including hands‑on management of its YAML configuration files. Strong knowledge of the Suricata configuration structure, syntax, and how it controls detection rules, logging, and output modules. Extensive experience administering RedHat Enterprise Linux (RHEL) systems, including package management (yum/dnf), kernel module management, SELinux configuration, and system optimization. Hands‑on experience tuning Suricata for high-performance packet capture with Napatech NICs or similar advanced network interface cards. Familiarity with NIC-specific features such as DMA, Receive Side Scaling (RSS), interrupt moderation, and offload capabilities, and how to configure them for Suricata. Experience troubleshooting Suricata’s interaction with NIC drivers and kernel modules in an enterprise environment. Experience with scripting languages (Bash, Python) to automate Suricata configuration and deployment tasks. TS/SCI clearance with the ability to obtain a counter‑intelligence polygraph. Associate’s degree and 5+ years of experience supporting IT projects and activities or Bachelor’s degree and 3+ years of experience supporting IT projects and activities or Master’s degree and 1+ years of experience supporting IT projects and activities. Years of experience may be accepted in lieu of degree. DoD8570 IAT LevelII Certification, including Security+ CE, CCNA‑Security, GSEC, SSCP, CySA+, GICSP, or CND Certification. Ability to obtain a DoD8570 Cybersecurity Service Provider– Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 60 days of start date. Nice If You Have: Proficient understanding of network protocols, intrusion detection methodologies, and security event correlation. Experience integrating Suricata with Splunk, or other SIEM solutions. Knowledge of containerized deployments of Suricata (Docker/Kubernetes) in enterprise environments. Familiarity with common Linux operating systems, including RHEL, Oracle, CentOS. Familiarity with other industry-standard IDS/IPS solutions and related technologies. Ability to be a self‑starter, work without considerable direction, and work with a team. Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations. Benefits: Free Platinum‑Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers’ Compensation Relocation Assistance #J-18808-Ljbffr
- ...ENS Solutions, LLC is seeking an experienced Suricata Engineer to join our cybersecurity team in Washington, D.C. The ideal candidate will... ...enterprise IT environments. Responsibilities include deploying and tuning Suricata, optimizing packet capture performance, and...Suggested
- ...company is seeking a Network Intrusion Detection Engineer to enhance security measures within their infrastructure... ...Linux and hands-on experience with systems like Suricata and Snort. Responsibilities include designing IDS/IPS systems, optimizing configurations, and...Suggested
- ...seeking an experienced Suricata Engineer to join our... ...Intrusion Prevention Systems (IDS/IPS). You will play a critical... ...role in deploying, tuning, and maintaining Suricata... ...optimally with Napatech network interface cards... ...Hat Enterprise Linux (RHEL) systems, including package...SuggestedRemote workFlexible hours
$120k - $185k
...Suricata Cyber Security Engineer Location: Reston, VA or Washington, DC Required... ..., integration, tuning, and sustainment of Suricata IDS/IPS solutions operating within... ...including Napatech network interface cards... ...Hat Enterprise Linux (RHEL) environments, including...SuggestedFull timeRemote work$112k - $179k
...Virtual Desktop Systems Engineer Job Locations... ...Riverdale Requisition ID 2026-164749 Position... ...maintaining system documentation, tune system performance,... ...center networking (TCP/IP, switching/routing,... ...19, and 2022 as well as RHEL and SLES operating systems...SuggestedContract workWork experience placementShift work- ...Senior Security Operations Engineer Job Title: Senior Security... ...configuring, administering, tuning, and operationally managing enterprise... ...and Prevention Systems (IDS/IPS), network security monitoring... ...technologies (e.g., Snort, Suricata, Palo Alto, Cisco Firepower)...
$176k - $247k
Clearance: TS/SCI - Polygraph required Position ID: 01-01-006-SE-SE2OR3 Location: Laurel,... ...Required Skills Skilled in Linux (RHEL) Administration including storage and interface... ...required. Bachelor’s degree in System Engineering, Computer Science, Information Systems,...- Amazon Data Services, Inc. is seeking a Senior Network Development Engineer to join the Network Fabric Engineering team. This role involves... ...units globally. Ideal candidates will possess over 8 years of IP networking experience, strong knowledge of major routing protocols...
$110k - $140k
...We are seeking a highly skilled Network Engineer to join our Managed Service Provider (MSP... ...site surveys, RF planning, and performance tuning. Maintain network documentation,... ...configuration and troubleshooting (policy, NAT, IPS/IDS) Secure network segmentation and remote...Remote workFlexible hoursAfternoon shift- ...TIC Systems Engineer ID 2025-9085 Type Full Time W/Benefits Ret Match... ...web proxies, intrusion prevention systems (IPS), network access control (NAC), and VPN gateways... ..., monitor traffic flows, and fine-tune load balancing algorithms to improve application...Full timeLocal area
$68.83k - $117.99k
...Job ID 504588 Posted since 18-May-2026 Job type Full-time Employment type Permanent Location(s) Beltsville - Maryland Buffalo Grove... ...one hour of a major airport. Overview This Building Automation Engineer will lead technical aspects during pre‑construction and early project...Permanent employmentFull timeContract workFor contractorsWork at officeLocal area$126.4k - $189.6k
...Ovation DCS Programmer - Systems Engineer to support the design,... ...Support control optimization, tuning, and modernization initiatives... ...industrial protocols (EtherNet/IP, ProfiNET, Modbus TCP/RTU, OPC... ...understanding of instrumentation, P&IDs, electrical schematics, and...Full timeTemporary workPart timeCasual workLocal areaRemote workFlexible hours- ...support in enterprise environments Preferred Skills and Qualifications: - Experience with network security tools such as firewalls, IDS/IPS, and monitoring platforms - Familiarity with vulnerability scanning and remediation in network environments - Knowledge of...Minimum wageFull timeContract workTemporary workWork experience placementRemote work
- ...Demonstrated proficiency in cyber security platforms: SOAR, SIEM, IDS/IPS, DLP, WAF, Endpoint Security Degree in a STEM related... ...collaborating, developing, and designing security orchestrations with SMEs/engineers, vendors, and project stakeholders Ability to navigate and...Remote workWork from homeFlexible hours
$107.9k - $195.05k
...in a federal agency context. This senior engineering role sits at the center of the organization... ..., access, and conditional access (Entra ID) Engineer and validate device-... ...Function Apps) for third-party logs. Tune audit retention, analytic rules, and alert...Local areaImmediate startNight shiftDay shift$135k - $216k
...Cyber Systems Engineering, Advisor - TS/SCI w/Poly Job Locations... ...US-MD-Laurel Requisition ID 2026-166248 Position... ...in enterprise networking (TCP/IP, routing protocols such as BGP... ...troubleshooting and performance tuning Solid understanding of Linux...Contract workShift workNight shift$176k - $282k
...Senior Tech Lead - Cyber Systems Engineering Job Locations US-MD-College Park Requisition ID 2026-166617 Position Category Engineering... ...complex issues: root-cause analysis, performance tuning, reliability improvements, and lifecycle...Full timeContract workFor subcontractorRelocation packageShift work$102.4k - $153.2k
...Senior Cloud Operations Engineer, Deployments Job Category: Engineering... ..., troubleshooting, and tuning Java applications and Apache Tomcat... ...troubleshooting skills including TCP/IP, DNS, VPN is a plus ~... ...relevant recruitment stage. Job ID: 23585 AI in Action -...Casual workRemote workMonday to FridayFlexible hoursShift work$131.3k - $237.35k
...an exciting opportunity a Principal Endpoint Security Systems Engineer in our Intel Security Sector's Analysis Solutions Business Area... ...tools and processes such as Splunk, Rapid7, SolarWinds, Cisco IDS/IPS, VPN, WebInspect, AppDetective At Leidos , the...Local areaImmediate startFlexible hours$131.3k - $237.35k
...Principal Endpoint Security Systems Engineer Leidos has an exciting opportunity for a Principal Endpoint Security Systems Engineer in... ...tools and processes such as Splunk, Rapid7, SolarWinds, Cisco IDS/IPS, VPN, WebInspect, AppDetective Benefits Competitive benefits including...Immediate startFlexible hours$70.32k - $130.86k
...environment. This is primarily a support role with great emphasis on engineering of CI/CD pipeline infrastructure. Help train junior members... ...in large – multi-site environments, expert knowledge of RHEL, in-depth knowledge and real-world experience in programming &...Full timeWork experience placement$86k - $138k
...Linux Systems Engineer Job Locations US-MD-College Park Requisition ID 2026-163721 Position Category Information Technology Clearance... ...Configure and troubleshoot networking and TCP/IP (switching/routing basics, port activation, patching...Full timeContract workFor subcontractorRemote workRelocation packageShift work- Assistant Building Engineer page is loaded## Assistant Building Engineerlocations: Lanham, MDtime type: Full timeposted on: Posted 2 Days Agojob requisition id: R0006001Four dynamic, integrated companies make up the Transwestern enterprise, giving us the perspective to...Work at officeLocal areaRemote workShift work
$78.5k - $108k
...Who We Are Applied Materials is a global leader in materials engineering solutions used to produce virtually every new chip and advanced... ...Offer Salary: $78,500.00 - $108,000.00 Location: Austin,TX, Boise,ID, Chandler,AZ, Linthicum,MD, Manassas,VA You'll benefit from a...Full timeTemporary workRelocation$70.97k - $121.67k
Job ID: 502880 Posted since: 20-Apr-2026 Organization: Smart Infrastructure Field of work: Company Experience level: Experienced... .... Transform the everyday with us! Building Automation Design Engineers create unique design solutions to meet specific customer requirements...Permanent employmentFull timeContract workFor contractorsWork at officeLocal areaImmediate startRemote work- ...Automation / SOAR Engineer Washington, DC Type: Contract Category: Security Industry: Government Reference ID: JN -062026-107231 Date Posted: 06/02/2026 Shortcut... ...with detection engineering and alert tuning, experience integrating automation into...Hourly payContract workLocal areaRemote work
$190k - $304k
...Technical Program Director / Lead Systems Engineer Job Locations US-MD-College Park Requisition ID 2026-163915 Position Category... ...response patterns, root-cause analysis, performance tuning, capacity planning, and change control Guide...Full timeContract workRelocation packageShift work$112k - $179k
...Senior Detection Engineer Job Locations US-VA-Arlington Requisition ID 2026-165378 Position Category... ...alerts Develop, configure, and tune cyber security tools, alerts, and... ...reports. Write Zeek (Bro), Suricata and Snort signatures. Maintain...Contract workMonday to FridayShift work- ...timeposted on: Posted Yesterdayjob requisition id: JR2610TSC is seeking a remote based **Guidance, Navigation, Controls (GNC) Engineer** that will design, integrate, test, and... ...include:*** Work on a team to develop, modify and tune guidance and control systems for fixed wing...Local areaRemote workFlexible hours
- ...Network Services Engineer A Cisco, WAN, LAN, Windows, Network Engineer is urgently required... ...with DNS, SMTP, SNMP, TCP, UDP, IP, IPv4 addressing and CIDR/ VLSM, OSPF, QoS... ...Intrusion Detection and Prevention Systems (IDS/IPS) and wired infrastructure, and network...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Suricata IDS/IPS Engineer - RHEL & Napatech Tuning. Be the first to apply!



