Professional Services Engineer - (TS/SCI Full Poly)
Corelight - Vienna, Virginia, United States, 22184
Work at Corelight
Overview
- View job
Overview
Join to apply for the
Professional Services Engineer - (TS/SCI Full Poly)
role at
Corelight . Overview
We are seeking a Staff Resident PSE to join our Federal Professional Services team, based in the DC, Maryland, Virginia (DMV) area. This role requires a TS/SCI Clearance with Full Scope Polygraph. The main responsibilities include preparing and validating equipment configurations, developing content for anomaly and hunt detections, and assessing the health of the Corelight infrastructure at client sites. This position involves some on-site work and an in-person interview process. Key Responsibilities
Help customers improve cybersecurity posture and optimize processes Investigate security incidents Educate on Zeek Log use and Corelight Suricata alerts Design and implement technical solutions with ecosystem partners Implement queries and dashboards in SIEMs like Splunk, Elastic, Humio Serve as a technical expert and influence customer and team decisions Conduct network testing and validate Corelight products Provide knowledge transfer and collaborate on product features Work with tools like Kafka and Logstash Document data import processes and develop custom threat hunting content Create playbooks for SOC/IR workflows and prepare summary reports Contribute to root cause analysis and project meetings Qualifications
US Citizen TS/SCI Full Scope Polygraph clearance 5+ years in cybersecurity, with experience in SOC environments Experience with Zeek/Corelight is a plus Security and networking certifications Proficiency in Windows/MacOS/Linux/Unix, IDS/IPS, TCP/IP SIEM experience (Splunk required) Scripting skills in Zeek, Bash, Python, Perl, Powershell, etc. Strong briefing skills and experience with senior management Why Corelight?
Corelight is a leading network detection and response platform, backed by top-tier venture capital. We focus on AI-assisted workflows, machine learning, cloud security, and SaaS solutions. We value diversity and foster an inclusive, collaborative culture. Join us to help protect critical assets worldwide. Additional Information
Compensation ranges from $135,000 to $223,000 USD, with potential bonuses, equity, and benefits. This is a full-time, mid-senior level role in the information technology industry.
#J-18808-Ljbffr