Incident Response Monitoring Job at System One, Merrifield, VA

THRMZ29YVGdlUlIrNkJMSS9qQ0I1eGhJbkE9PQ==
  • System One
  • Merrifield, VA

Job Description

Job Title: Incident Response Monitoring
Location: Hybrid Work Model Reporting to Winchester, VA, Pensacola, FL and Vienna, VA
Pay Rate: Open to Both C2C and W2 options
Position Type: Multiyear Contract

Role Overview
The Principal Cybersecurity Detection Engineer – AI Driven Threats is a senior individual contributor responsible for advancing the effectiveness and maturity of the Cyber Security Operations Center (CSOC). This role designs, operationalizes, and scales high confidence detection capabilities to address AI enabled threats and related emerging attack techniques.
The position combines deep, hands on detection engineering expertise with applied knowledge of AI security and adversarial techniques. As a principal level individual contributor, this role drives the practical application of AI and emerging technologies within security operations, ensuring measurable improvements in detection fidelity, incident response outcomes, and analyst efficiency.

Key Responsibilities
AI & Emerging Threat Detection
Serve as the senior technical subject matter expert for AI focused threat detection within the CSOC.
Design, develop, deploy, and maintain advanced detection content across SIEM and security platforms to identify AI enabled and emerging attack techniques.
Engineer high confidence detections using complex query languages and techniques (e.g., SPL, KQL, regex, YARA, macros, lookups) across on premises, hybrid, and cloud environments.
Continuously evaluate detection coverage and fidelity, tuning or retiring content as adversary tactics, data sources, and operational needs evolve.
Research emerging AI and advanced technology threats (e.g., prompt injection, model poisoning, adversarial AI, data exposure) and translate them into actionable detection strategies.
Align detection use cases to industry frameworks such as MITRE ATT&CK, MITRE ATLAS, and NIST CSF.
Partner with threat intelligence, detection engineering, threat hunting, red team, and architecture teams to proactively strengthen detection capabilities.
Support proofs of concept and pilots that apply AI to detection engineering and SOC operations, ensuring solutions deliver measurable operational value.
Mentor and guide senior detection engineers and analysts on AI threat concepts and advanced detection strategies.
Communicate complex technical findings clearly to technical teams, leadership, and executive stakeholders.

Required Qualifications
7+ years of experience in cybersecurity operations, detection engineering, or SIEM engineering in a senior individual contributor role.
Advanced expertise in detection engineering across the full content lifecycle (design, testing, deployment, tuning, and decommissioning).
Hands on experience applying AI or machine learning capabilities within SOC or detection workflows.
Familiarity with AI security frameworks (e.g., MITRE ATLAS, OWASP AI Security).
Advanced proficiency with SIEM query languages and multi source telemetry across on prem, cloud (IaaS/PaaS/SaaS), and hybrid environments.
Strong understanding of adversary TTPs, including emerging AI enabled threats.
Demonstrated ability to analyze large scale log and telemetry datasets to identify threats and detection gaps.
Strong communication skills, with the ability to present complex technical concepts to both technical and nontechnical audiences.

Preferred Qualifications
Experience leading or contributing to AI?focused SOC pilots, automation initiatives, or advanced detection programs.
Relevant certifications (e.g., CISSP, CySA+, CASP+, CCSP) or comparable credentials.
Bachelor’s degree in Cybersecurity, Computer Science, Engineering, or a related field.

Ref: #851-Rockville-S1


System One, and its subsidiaries including Joulé, ALTA IT Services, TeamPeople, and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

Job Tags

Contract work, Local area

Similar Jobs

Boom Therapy Group

COTA/L in Nashville NC Job at Boom Therapy Group

 ...Therapist Assistant to work in Nashville, NC with both children and adults in need of occupational services. 100% clinic based; no travel, schools or homes. Looking for Full-time, but open to part-time. New grads are welcome to apply! Responsibilities: Therapist Assistants... 

Nami Nori - West Village

Pastry Cook Job at Nami Nori - West Village

 ...Nami Nori Commissary Kitchen is looking for a detail oriented and organized PM Production Pastry Cook with a passion for the food industry and a focus on pastry products. Nami Nori is the first concept to specialize in open-style sushi hand rolls in New York City... 

US Physical Therapy

Physical Therapy Aide (Full Time) Job at US Physical Therapy

 ...You are responsible for your transportation to and from work including any coverage shifts you accept Knowledge of Anatomy & Kinesiology Knowledge of the equipment used in therapy work. Knowledge of the behavior and needs of patients. Knowledge of proper strengthening... 

TheRapidHire Private Limited

Python Developer Job at TheRapidHire Private Limited

# Design and develop backend applications using Python frameworks such as Django , Flask , or FastAPI . # Write clean, efficient, and maintainable code following best practices. # Develop and maintain RESTful APIs for web and mobile applications. # Integrate... 

Realign LLC

Python Developer-5 Job at Realign LLC

 ...March 29th, 2026 Looking for more job opportunities? Click here! Job Type: Full Time Job Category: IT Job Role Python Developer Experience: 6 To 10 + year of Experience . Location Chandler, AZ Local Job Description Skill: Must Have...