×
Register Here to Apply for Jobs or Post Jobs. X
More jobs:

Defensive Cybersecurity Engineer​/Blue Team

Job in Huntsville, Madison County, Alabama, 35801, USA
Listing for: The MITRE Corporation
Full Time position
Listed on 2026-08-05
Job specializations:
  • IT/Tech
    Cybersecurity
Job Description & How to Apply Below
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges-and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do.

The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day-working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities for career growth, and a culture of innovation that embraces adaptability, collaboration, technical excellence, and people in partnership.

If this sounds like the choice you want to make, then choose MITRE - and make a difference with us.

Department Summary:

MITRE's Defensive Cyber Operations department is seeking creative people to work collaboratively with our staff of cybersecurity engineers in the fields of defensive cyber operations, threat hunt, detection engineering, and cyber deception and adversary engagement with increasing emphasis in Artificial Intelligence (AI) to support mission-driven cybersecurity initiatives for government sponsors.

This role blends hands-on defensive operations with advanced research and applied development in AI-enabled cybersecurity. The successful candidate will have deep Splunk Enterprise expertise, experience with scripting, and a strong understanding of MITRE ATT&CK and its application to threat detection, threat hunting, and adversary behavior analysis.

Roles & Responsibilities :

This role provides the opportunity to work side-by-side with members of the national law enforcement and intelligence communities on a variety of technical and strategic initiatives in the areas of cyber security and systems engineering, helping to enhance the safety and security of the nation on a daily basis.

Our work responsibilities vary, but could include:

* Combining cybersecurity domain expertise and contemporary data science skills to enhance adversary detection, network defense, and threat hunting process improvement.

* Developing AI-enabled cybersecurity tools for anomaly detection, behavioral analytics, malware analysis, and adversary emulation.

* Designing, developing, and optimizing advanced threat hunting methodologies, Splunk detections, analytics, and dashboards to improve cyber defense capabilities.

* Developing scripts, APIs, and automation solutions that enhance cyber operations, improve analyst workflows, and integrate security platforms.

* Researching emerging AI techniques (e.g., machine learning, deep learning, generative AI, reinforcement learning) and assessing their applicability to defensive cyber missions.

* Using MITRE ATT&CK to hunt the adversary and build TTP-based defenses.

* Using detection engineering to create security analytics and dashboards in Splunk or Elastic and integrating new data feeds

* Automating container environments via continuous integration and continuous deployment (CI/CD)

* Acting as a trusted advisor to the Federal Government

Basic Qualifications:

* Typically requires a minimum of 8 years of related experience with a Bachelor's degree; or 6 years and a Master's degree; or a PhD with 3 years' experience; or equivalent combination of related education and work experience.

* Significant experience with Splunk, including both backend administration and detection/content development.

* Experience developing scripts and integrating APIs to automate cyber operations and security workflows.

* Knowledge of cyber security operations and cyber security principles and their application

* Demonstrated experience conducting proactive cyber threat hunting across enterprise environments.

* Strong understanding of the MITRE ATT&CK knowledge base

* Excellent written and verbal communication skills, including experience presenting technical analysis to both technical and executive audiences.

* Applicants selected for this position will be subject to a government clearance security investigation and must meet eligibility requirements for access to classified information.

* Active Top Secret/SCI Clearance with poly

* Per the U.S. Government's eligibility requirements for a clearance, U.S Citizenship is required

* This position has an on-site requirement of 5 days a week on-site

Preferred Qualifications:

* Experience supporting or developing capabilities within the Augury platform

* Experience developing advanced Splunk analytics, detections, dashboards, and security content.

* Experience with cyber automation, orchestration, and Security Operations Center (SOC) modernization initiatives

* Experience with Elastic/ELK

* Experience using MITRE ATT&CK

* Experience using or developing…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary