Detection Engineer Analyst Subject Matter Expert (SME)

Resource Management Concepts, Inc. - Rmc
Quantico, Virginia 22134 United States  View Map
Posted: May 30, 2026
  • Full Time
  • Federal Government
  • Summary

    Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.

    RMC is hiring a Detection Engineer Analyst Subject Matter Expert (SME) to support an active government contract in Quantico, Virginia, providing defensive cyberspace operations and Cyber Security Service Provider (CSSP) functions. This position will support the government's mission to deny, disrupt, and degrade adversaries' abilities and attempts to disrupt, exploit and attack the information technology (IT) services provided to network users.

    The selected applicant will perform a variety of activities including but not limited to:
    • Develop detection use cases based on current threats, the MITRE ATT&CK framework, and government direction.
    • Review incident reporting to tune related detection use cases as necessary.
    • Review Security information and event management (SIEM)/ Security orchestration, automation, and response (SOAR) incident queue for unnecessary events and alerts and implement corrective actions.
    • Identify gaps in logging and detection capabilities across attack surface.
    • Assist in implementing new log ingestion and verify proper parsing and normalization of data in SIEM/SOAR.
    • Create high fidelity correlation rules, signatures, filters, and automations and maintain low false-positive rate.

    Requirements

    Required
    • Active TS/SCI (DoD TOP SECRET clearance with Sensitive Compartmented Information access) eligibility is required. Applicant selected will be subject to security investigation(s) and must maintain eligibility requirements for access to classified information.
    • Bachelor's in IT or Computer Science OR 5 years' supporting DCO and/or network systems and technology
    • DoD 8570 IAT Level III certification.
    • DoD 8570 CSSP Analyst certification.
    • 5 years' experience with development/refinement of signatures, plays, policies, configurations, scripts and indicators used to identify malicious activity via network and host-based detection on the enterprise network.
    • Experience leading operations and maintenance support for an enterprise-level (50k users) network.
    • Experience writing signatures (e.g., KQL/Snort/ePO/Yara) for network and host IDS/IPS.

    Desired
    • Microsoft Cloud Security training is highly recommended.
    • Microsoft Azure and Microsoft Defender XDR.
    • Microsoft Sentinel Ninja Training.
    • Microsoft Defender For Endpoint Ninja Training.
    • Microsoft Defender For Identity Ninja Training.
    • Microsoft SC-XXX Training (certifications).

    Schedule: M-F, 5 X 8, between 7:00am EST and 5:00pm EST, normally not to exceed 40 hours per week.

    This position may require extended or non-standard hours occasionally to support major cyber incidents. This position is considered essential and may be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies.

    Benefits

    At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.

    RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. We offer Monday to Friday full-time day shift work, and can assist in paid relocation. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.

    Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements. The current salary range for this position will be $130,000 to $150,000 (annually).

    #LI-LL1
  • Job Description

    Resource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.

    RMC is hiring a Detection Engineer Analyst Subject Matter Expert (SME) to support an active government contract in Quantico, Virginia, providing defensive cyberspace operations and Cyber Security Service Provider (CSSP) functions. This position will support the government's mission to deny, disrupt, and degrade adversaries' abilities and attempts to disrupt, exploit and attack the information technology (IT) services provided to network users.

    The selected applicant will perform a variety of activities including but not limited to:
    • Develop detection use cases based on current threats, the MITRE ATT&CK framework, and government direction.
    • Review incident reporting to tune related detection use cases as necessary.
    • Review Security information and event management (SIEM)/ Security orchestration, automation, and response (SOAR) incident queue for unnecessary events and alerts and implement corrective actions.
    • Identify gaps in logging and detection capabilities across attack surface.
    • Assist in implementing new log ingestion and verify proper parsing and normalization of data in SIEM/SOAR.
    • Create high fidelity correlation rules, signatures, filters, and automations and maintain low false-positive rate.

    Requirements

    Required
    • Active TS/SCI (DoD TOP SECRET clearance with Sensitive Compartmented Information access) eligibility is required. Applicant selected will be subject to security investigation(s) and must maintain eligibility requirements for access to classified information.
    • Bachelor's in IT or Computer Science OR 5 years' supporting DCO and/or network systems and technology
    • DoD 8570 IAT Level III certification.
    • DoD 8570 CSSP Analyst certification.
    • 5 years' experience with development/refinement of signatures, plays, policies, configurations, scripts and indicators used to identify malicious activity via network and host-based detection on the enterprise network.
    • Experience leading operations and maintenance support for an enterprise-level (50k users) network.
    • Experience writing signatures (e.g., KQL/Snort/ePO/Yara) for network and host IDS/IPS.

    Desired
    • Microsoft Cloud Security training is highly recommended.
    • Microsoft Azure and Microsoft Defender XDR.
    • Microsoft Sentinel Ninja Training.
    • Microsoft Defender For Endpoint Ninja Training.
    • Microsoft Defender For Identity Ninja Training.
    • Microsoft SC-XXX Training (certifications).

    Schedule: M-F, 5 X 8, between 7:00am EST and 5:00pm EST, normally not to exceed 40 hours per week.

    This position may require extended or non-standard hours occasionally to support major cyber incidents. This position is considered essential and may be required to report during hazardous weather, power outages, fuel shortages, pandemics, and other emergencies.

    Benefits

    At RMC, we're committed to your career growth! RMC differentiates itself from other firms through its investment in our employees. We invest our resources to train, certify, educate, and build our employees.

    RMC can offer you a great place to work with a small company feel and give you the experience, tuition assistance, and certifications that will take your career to the next level. We offer Monday to Friday full-time day shift work, and can assist in paid relocation. This also includes a competitive paid vacation package with 11 paid federal holidays. Additionally, we also offer high-quality, low-deductible healthcare plans, pet insurance, and a competitive 401K package.

    Salary at RMC is determined by various factors, including but not limited to location, a candidate's specific combination of education, knowledge, skills, competencies, and experience, as well as contract-specific requirements. The current salary range for this position will be $130,000 to $150,000 (annually).

    #LI-LL1
  • ABOUT THE COMPANY

    • Government Careers
    • Government Careers

    Government jobs offer stability, competitive benefits, and the chance to make a meaningful impact on your community and country.

    Whether you’re starting your career or seeking new opportunities, these roles provide pathways for growth, security, and service.

    Explore positions across a wide range of fields and take the first step toward a rewarding future in public service.

    Show more

MORE JOBS

  • Lead SIEM Engineer with Security Clearance

    • Alexandria, Virginia
    • August Schell Enterprises
    • May 30, 2026
    • Full Time
    • Federal Government
  • Payload SME

    • Chantilly, Virginia
    • KBR
    • May 30, 2026
    • Full Time
    • Federal Government
  • Gig Driver | Nights and Weekends (91007)

    • Arcadia, California
    • ALTO
    • May 30, 2026
    • Full Time
    • Federal Government
    • Other
  • Driver | Nights and Weekends (91608)

    • Universal City, California
    • ALTO
    • May 30, 2026
    • Full Time
    • Federal Government
    • Other
  • Rideshare Driver | Nights and Weekends (91607)

    • Valley Village, California
    • ALTO
    • May 30, 2026
    • Full Time
    • Federal Government
    • Other
  • Bomb Technician (EOD)

    • West Jordan, Utah
    • US Navy
    • May 30, 2026
    • Full Time
    • Federal Government
    • Military
Show More
Apply Now Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.
Please mention you found this employment opportunity on the CareersInGovernment.com Job Board.