Cyber Capability Developer- Senior

Cintel IncHuntsville, AL
5dOnsite

About The Position

We are seeking an experienced Senior Cyber Capability Developer to support advanced cyber threat detection, analysis, and response operations in Huntsville, AL. This role focuses on designing, engineering, and optimizing cybersecurity detection capabilities and analytics using enterprise security platforms, cyber threat intelligence, and automation technologies to defend mission-critical systems. The ideal candidate brings deep technical expertise across threat detection engineering, SIEM/SOAR platforms, forensic analysis, and cloud environments, with a strong background supporting classified or government cyber operations.

Requirements

  • Active Top Secret (TS) security clearance
  • Bachelor’s degree (BS or BA) in Cybersecurity, Computer Science, Engineering, or a related field
  • Significant experience in cyber threat detection engineering, alert and analytics development, display, and deployment
  • Proficiency in Splunk Search Processing Language (SPL)
  • Hands-on experience with Splunk and Microsoft Sentinel
  • Experience with data sourcing, integration, and analysis to establish baselines and identify anomalies
  • Experience implementing, operating, and optimizing SOAR systems and tools
  • Experience engineering and maintaining cybersecurity solutions within Linux environments
  • Minimum of (8) years of experience, including Bash, PowerShell, Python, SQL, and Java
  • Cloud engineering experience, including AWS and Azure GovCloud environments

Nice To Haves

  • GIAC Continuous Monitoring Certification (GMON)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Network Forensic Analyst (GNFA)
  • Professional experience supporting cyber intrusion detection and response operations
  • Experience with malware reverse engineering and functional analysis of source code and scripts
  • Experience analyzing technical data within advanced cyber threat environments
  • Experience working in team-based software development or cyber operations environments

Responsibilities

  • Engineer, develop, and deploy cybersecurity threat detection capabilities, alerts, and analytics across enterprise environments
  • Design, implement, and optimize security detections and dashboards using Splunk SPL and Microsoft Sentinel
  • Perform Splunk backend engineering, including log and data onboarding, ingestion pipelines, visualization, testing, and validation
  • Leverage cyber threat intelligence to improve detection logic, reduce false positives, and enhance analytic fidelity
  • Design, implement, and optimize cybersecurity data pipelines to support monitoring, analytics, and response workflows
  • Implement, operate, maintain, and optimize Security Orchestration, Automation, and Response (SOAR) tools and platforms
  • Establish data baselines and detect anomalous or malicious activity across network, endpoint, and cloud environments
  • Perform advanced cyber threat analysis, including malware analysis, network traffic analysis, and host-based forensics
  • Conduct static and dynamic analysis of known and unknown binary files and reverse engineer compiled software
  • Support memory, disk, and network forensic investigations in classified cyber threat environments
  • Develop and maintain capabilities across multiple environments, including on-premises and cloud infrastructures
  • Collaborate with cross-functional cyber and software development teams in agile or DevSecOps environments
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service