ECS is seeking a Systems Engineer-Mid to work in our Huntsville, AL office. Please Note: This position is contingent upon contract award.
We're looking for a highly qualified Systems Engineer to support cybersecurity operations for the Federal Bureau of Investigation (FBI). In this role, you will provide systems engineering expertise, and cybersecurity operational support to the SOC Watch Floor Team, playing a key role in enhancing and maintaining the FBI’s cybersecurity defense posture. Operating 24/7/365, this high-impact team is responsible for the real-time detection, prevention, and mitigation of cyber threats that could compromise national security and critical infrastructure. As part of the SOC engineering team, you will ensure optimal system performance, seamless security data integration, and enhanced security visibility through advanced technical solutions.
Key Responsibilities
- Architect, implement, and optimize SOC systems and infrastructure to support continuous monitoring and incident detection.
- Manage SIEM configurations, log ingestion processes, and security data pipelines to maintain comprehensive visibility into cybersecurity threats.
- Develop and enhance custom queries, correlation rules, and detection mechanisms within Splunk Enterprise Security and other SIEM platforms.
- Design and maintain SOC playbooks, automated workflows, and response strategies to facilitate efficient incident handling.
- Provide technical leadership in SOC operations, ensuring effective coordination between analysts, incident responders, and engineering teams.
- Support security event monitoring, threat analysis, and forensic investigations using industry-standard methodologies and advanced security tools.
- Lead efforts to engineer and optimize security automation, improving SOC efficiency and response times.
- Optimize data collection, normalization, and enrichment processes to ensure high-performance ingestion and correlation across SIEM, SOAR, and threat intelligence platforms, enabling faster detection and response.
- Ensure security infrastructure is properly configured, maintained, and integrated with the FBI’s broader cybersecurity framework.
- Assist in the development and implementation of cyber threat intelligence-driven detection and defense strategies.
Read Full Description