Senior Systems Test Engineer (Cloud)

Posted 2 Days Ago
Be an Early Applicant
Ogden, UT, USA
In-Office
90K-145K Annually
Senior level
Information Technology
The Role
Performs continuous cybersecurity monitoring, threat detection, incident response, intrusion analysis, vulnerability management, and remediation across on-premises ELK and AWS GovCloud Splunk environments. Uses AI and machine learning to improve security analytics and response. Develops cyber operations procedures, conducts root cause analysis, documents incidents, supports customer exercises, and advises on DoD cybersecurity requirements. The role requires active Top Secret/SCI clearance, U.S. citizenship, relevant SOC experience, and hands-on Splunk, ELK, AWS, and GitLab expertise.
Summary Generated by Built In

Dark Wolf Solutions is looking for a Defensive Cyber Operations Analyst who will perform continuous system monitoring to identify malicious cyber-attacks while supporting the containment and remediation of IT threats. This role will function as an operator responsible for hands-on incident response, correlation, and threat detection both on-premise using ELK and across AWS GovCloud environments using Splunk Enterprise. Additionally, this position will leverage Artificial Intelligence (AI) and Machine Learning capabilities to enhance threat detection, streamline incident analysis, and accelerate response actions across monitored networks and applications. This role will be fully on-site at Hill AFB in Ogden, Utah. 

Key Responsibilities:

  • Active monitoring, detection, and analysis across on-prem (ELK) and cloud-hosted AWS GovCloud (Splunk Enterprise) environments. 
  • Utilize AI-assisted analysis, automation, and correlation of data from various log sources to triage security events, detect anomalies, and reduce response times for complex threats.
  • Vulnerability Management actions to include providing recommendations and implement mitigations. 
  • Conduct intrusion analysis and correlation of unauthorized activities; provide and implement recommendations to improve detection and customer mitigation processes. 
  • Participate in the Root Cause Analysis process and documentation capturing efforts taken to mitigate unauthorized actions.
  • Participate in the development of DCO tactics, techniques, and procedures (TTPs) and supporting documentation.
  • Identify security discrepancies and report and respond to security incidents. 
  • Provide research and analysis in support of expanding programs and areas of responsibility. 
  • Draft documentation for briefings, reports, and informational analyses. 
  • Participate in customer exercises (after duty hours may be required). 
  • Adhere to defined policies, master plans and schedules.
  • Complete all initial and annual training requirements and disclosures as outlined by BSTG. 
  • Perform all other duties as required, consistent with the goals, objectives, and responsibilities of the department. 

Required Qualifications:

  • 4+ years of relevant cybersecurity experience, including direct SOC / vSOC / CSSP incident response experience.
  • 2+ years of hands-on experience using Splunk Enterprise and ELK Stack (Elasticsearch, Logstash, Kibana) for event correlation and threat detection.
  • Direct experience monitoring, ingesting, and analyzing security telemetry within AWS GovCloud environments (e.g., CloudTrail, VPC Flow Logs, AWS GuardDuty).
  • Hands-on experience utilizing GitLab (e.g., source control, CI/CD pipelines, issue tracking, or DevSecOps workflows).
  • 2+ years of experience with employment of DoD cybersecurity requirements, policies, and procedures to include assessment and authorization activities.
  • Department of Defense Directive (DoDD) 8140 / 8570 IAT CSSP Certification must be obtained prior to hire (CEH, Security+, GCIH, CySA+ or Equivalent). 
  • Bachelor’s degree in Computer Science, Information Technology, or a related field. 
  • US Citizenship and an active Top Secret/SCI security clearance required. 

Desired Qualifications:

  • Experience with AI/ML security tools (e.g., generative AI for query generation, automated threat intelligence, or AI-driven behavioral analytics).
  • AWS Certified Security – Specialty certification.
  • Splunk Core Certified Power User / Admin or Elastic Certified Analyst certifications.
  • Experience writing search queries using SPL (Splunk Processing Language) and KQL/Lucene (Kibana Query Language).
  • Experience with SentinelOne (or similar EDR platforms) for endpoint detection, threat hunting, and automated remediation.
  • Familiarity with Infrastructure-as-Code (IaC) tools such as Terraform or Ansible within a DevSecOps environment.
  • Experience performing cybersecurity activities in support of software and system requirements, design, development, testing, and sustainment. 
  • Experience with HBSS, ACAS, SCAP Compliance Checker (SCC), DISA STIGs. 
  • Working knowledge of NIST 800-53 Security and Privacy Controls. 
  • Experience with various operation systems such as RHEL and Windows. 
  • Experience in performing post-incident computer forensics without destruction of critical data. 
  • Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff. 

The estimated salary range for this role is $90,000.00 - $145,000.00, commensurate on experience and technical skillset. 

We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories.

In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.

We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role.


Skills Required

  • 4+ years of relevant cybersecurity experience, including direct SOC, vSOC, or CSSP incident response experience
  • 2+ years of hands-on experience using Splunk Enterprise and ELK Stack for event correlation and threat detection
  • Experience monitoring, ingesting, and analyzing security telemetry in AWS GovCloud environments, including CloudTrail, VPC Flow Logs, or AWS GuardDuty
  • Hands-on experience with GitLab, including source control, CI/CD pipelines, issue tracking, or DevSecOps workflows
  • 2+ years applying DoD cybersecurity requirements, policies, and procedures, including assessment and authorization activities
  • DoDD 8140 / 8570 IAT CSSP certification obtained before hire, such as CEH, Security+, GCIH, CySA+, or equivalent
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • U.S. citizenship
  • Active Top Secret/SCI security clearance
  • Experience with AI/ML security tools
  • AWS Certified Security - Specialty certification
  • Splunk Core Certified Power User or Admin certification, or Elastic Certified Analyst certification
  • Experience writing SPL and KQL/Lucene search queries
  • Experience with SentinelOne or similar EDR platforms
  • Familiarity with Terraform or Ansible in a DevSecOps environment
  • Experience supporting cybersecurity activities across software and system requirements, design, development, testing, and sustainment
  • Experience with HBSS, ACAS, SCAP Compliance Checker, or DISA STIGs
  • Working knowledge of NIST 800-53 Security and Privacy Controls
  • Experience with RHEL and Windows operating systems
  • Experience performing post-incident computer forensics while preserving critical data
  • Ability to advise engineering and software development staff on DoD cyber regulations and requirements
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chantilly, VA
99 Employees
Year Founded: 2009

What We Do

Dark Wolf Solutions provides DevSecOps agile software development, information operations, penetration testing and incident response, applied research and rapid prototyping, machine learning, and mission support and engineering services to the Intelligence Community, national security, and Fortune 500 customers. By combining the most innovative emerging technologies with deep federal domain expertise, Dark Wolf operates at the nexus of technical innovation and mission needs.

Similar Jobs

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Inside Sales Representative

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
10 Locations
40000 Employees
45K-85K Annually

Pfizer Logo Pfizer

Patient Support & Advocacy Navigator

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
2 Locations
121990 Employees
139K-232K Annually
Remote or Hybrid
US
15100 Employees
106K-150K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Inside Sales Representative

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
10 Locations
40000 Employees
45K-85K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account