1

Day Shift Threat Detection Engineer Jobs in Alabama

Senior Security Engineer

Huntsville, AL · On-site

$48.07 - $62.50/hr

The engineer drives enterprise security strategy, advanced threat detection, cloud monitoring, incident response planning, cyber resiliency, and compliance and federal security standards. This ...

Senior Security Engineer

Huntsville, AL · On-site

$112.80K - $154.70K/yr

The engineer drives enterprise security strategy, advanced threat detection, cloud monitoring, incident response planning, cyber resiliency, and compliance and federal security standards. This ...

... detection engineering, DFIR, malware analysis, threat intelligence, or similar) Some coding experience required Fluency in English (native or bilingual level) Strong writing and analytical skills A ...

Solution Architect - Threat Sensors

Huntsville, AL · On-site

$154.05K - $278.48K/yr

In this role, you'll work closely with customers, engineers, program leadership, and business ... Define and integrate EW capabilities including signal detection, geolocation, electronic support ...

Solution Architect - Threat Sensors

Huntsville, AL · On-site

$154.05K - $278.48K/yr

In this role, you'll work closely with customers, engineers, program leadership, and business ... Define and integrate EW capabilities including signal detection, geolocation, electronic support ...

In this role, you'll work closely with customers, engineers, program leadership, and business ... Define and integrate EW capabilities including signal detection, geolocation, electronic support ...

Management of day-to-day security operations and act as the primary contact for the third-party SOC ... Threat Detection, Incident Response & Vulnerability Management. * Support or lead security incident ...

... threat detection, and event monitoring. The candidate must be a US citizen and possess a minimum of ... day operations on network hardware and operating systems including the evaluation of system ...

... threat detection, and event monitoring. The candidate must be a US citizen and possess a minimum of ... day operations on network hardware and operating systems including the evaluation of system ...

next page

Showing results 1-20

Day Shift Threat Detection Engineer information

What are the key skills and qualifications needed to thrive as a Day Shift Threat Detection Engineer, and why are they important?

To thrive as a Day Shift Threat Detection Engineer, you need a strong background in cybersecurity principles, network defense, incident response, and a relevant degree or equivalent certifications such as CISSP, CEH, or GIAC. Familiarity with Security Information and Event Management (SIEM) tools like Splunk or QRadar, intrusion detection systems, and scripting languages is typically required. Analytical thinking, attention to detail, and effective communication are vital soft skills for identifying threats and collaborating with IT teams. These skills are crucial to quickly detecting, analyzing, and mitigating security threats, ensuring organizational resilience during core business hours.

How does a Day Shift Threat Detection Engineer typically collaborate with other security teams during incident response?

Day Shift Threat Detection Engineers play a crucial role in coordinating with SOC analysts, incident responders, and IT staff during security events. They are often responsible for triaging alerts, escalating verified threats, and providing detailed context to support a swift and effective response. Communication skills are essential, as this role frequently involves updating team members on investigation findings and recommending mitigation actions. Collaboration is usually structured through regular stand-ups, incident debriefs, and ticketing systems to ensure consistent knowledge transfer and rapid resolution of threats.

What does a Day Shift Threat Detection Engineer do?

A Day Shift Threat Detection Engineer is responsible for monitoring and analyzing security events during daytime hours to identify potential cyber threats and vulnerabilities within an organization’s network. They use various tools and technologies to detect malicious activities, investigate incidents, and respond promptly to mitigate risks. Their work helps ensure the safety of sensitive data and maintains the organization’s overall cybersecurity posture. Collaboration with other IT and security teams is also a key part of the role.

What is the difference between Day Shift Threat Detection Engineer vs Security Analyst?

AspectDay Shift Threat Detection EngineerSecurity Analyst
CertificationsCompTIA Security+, GIAC certificationsCompTIA Security+, CISSP (preferred)
Work EnvironmentSecurity operations centers, IT teams, monitoring networksSecurity teams, incident response, risk assessment
Industry UsageIT security, cybersecurity firms, large enterprisesCorporate security, government agencies, financial institutions

Both roles focus on cybersecurity, with the Threat Detection Engineer primarily responsible for monitoring and identifying threats in real-time, while the Security Analyst analyzes security data and responds to incidents. The roles often overlap but differ in daily tasks and focus areas within cybersecurity teams.

What are popular job titles related to Day Shift Threat Detection Engineer jobs in Alabama? For Day Shift Threat Detection Engineer jobs in Alabama, the most frequently searched job titles are:
What job categories do people searching Day Shift Threat Detection Engineer jobs in Alabama look for? The top searched job categories for Day Shift Threat Detection Engineer jobs in Alabama are:
What cities in Alabama are hiring for Day Shift Threat Detection Engineer jobs? Cities in Alabama with the most Day Shift Threat Detection Engineer job openings:
Cyber Capability Developer- Senior

Cyber Capability Developer- Senior

Cintel Inc

Huntsville, AL • On-site

Full-time

Posted 14 days ago


Job description

Salary:

Position Title: Cyber Capability Developer-Senior

Position Location: Redstone Arsenal

Position Type: Full-Time, On-Site


Position Overview

We are seeking an experienced Senior Cyber Capability Developer to support advanced cyber threat detection, analysis, and response operations in Huntsville, AL. This role focuses on designing, engineering, and optimizing cybersecurity detection capabilities and analytics using enterprise security platforms, cyber threat intelligence, and automation technologies to defend mission-critical systems.

The ideal candidate brings deep technical expertise across threat detection engineering, SIEM/SOAR platforms, forensic analysis, and cloud environments, with a strong background supporting classified or government cyber operations.

Key Responsibilities

  • Engineer, develop, and deploy cybersecurity threat detection capabilities, alerts, and analytics across enterprise environments
  • Design, implement, and optimize security detections and dashboards using Splunk SPL and Microsoft Sentinel
  • Perform Splunk backend engineering, including log and data onboarding, ingestion pipelines, visualization, testing, and validation
  • Leverage cyber threat intelligence to improve detection logic, reduce false positives, and enhance analytic fidelity
  • Design, implement, and optimize cybersecurity data pipelines to support monitoring, analytics, and response workflows
  • Implement, operate, maintain, and optimize Security Orchestration, Automation, and Response (SOAR) tools and platforms
  • Establish data baselines and detect anomalous or malicious activity across network, endpoint, and cloud environments
  • Perform advanced cyber threat analysis, including malware analysis, network traffic analysis, and host-based forensics
  • Conduct static and dynamic analysis of known and unknown binary files and reverse engineer compiled software
  • Support memory, disk, and network forensic investigations in classified cyber threat environments
  • Develop and maintain capabilities across multiple environments, including on-premises and cloud infrastructures
  • Collaborate with cross-functional cyber and software development teams in agile or DevSecOps environments

Required Qualifications

  • Active Top Secret (TS) security clearance
  • Bachelors degree (BS or BA) in Cybersecurity, Computer Science, Engineering, or a related field
  • Significant experience in cyber threat detection engineering, alert and analytics development, display, and deployment
  • Proficiency in Splunk Search Processing Language (SPL)
  • Hands-on experience with Splunk and Microsoft Sentinel
  • Experience with data sourcing, integration, and analysis to establish baselines and identify anomalies
  • Experience implementing, operating, and optimizing SOAR systems and tools
  • Experience engineering and maintaining cybersecurity solutions within Linux environments
  • Minimum of(8) years of experience, including Bash, PowerShell, Python, SQL, and Java
  • Cloud engineering experience, including AWS and Azure GovCloud environments

Preferred Certifications

  • GIAC Continuous Monitoring Certification (GMON)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Network Forensic Analyst (GNFA)

Preferred Experience

  • Professional experience supporting cyber intrusion detection and response operations
  • Experience with malware reverse engineering and functional analysis of source code and scripts
  • Experience analyzing technical data within advanced cyber threat environments
  • Experience working in team-based software development or cyber operations environments


CULTURE REQUIREMENTS:


  • Engineers, Analysts, and Developers at Cintel, Inc. are highly motivated, technical, and selforganized. We place a lot of trust in our team members to develop technical solutions for illdefinedproblems (i.e. thrive in an environment where the problem is vague, requirements are lacking, and a solution is not obvious). We need problem solvers.
  • We want our team members to be selfmotivated and eager to learn new skills. If you consider yourself a jackofalltrades, and are eager to keep up with the latest trends in technology,youll fit right in.


ABOUT CINTEL, INC:

Cintel Inc. is a Small Business providing strategies and services to support an array of Government clients in Software Development, Operational/Tactical and Installation/Facilities Energy, Cyber Security, Modeling and Simulation, Data Science, and Programmatic support.


We offer our clients nimble, unique, and value focused solutions with an emphasis on people, connectivity, communication, and teamwork. Our team believes that people drive solutions. By connecting people, information, teams, and experience we deliver solutions that respond to customer needs.


It is the policy of Cintel that all persons are entitled to equal employment opportunity regardless of their race, color, religion, sex (including gender identity, sexual orientation, and pregnancy), national origin, age (40 or older), disability, genetic information, or veteran status. These policies shall ensure that the practice of nondiscrimination will be applied in the employment, promotion, upgrading, demotion, transfer, layoff, termination, recall or rehire of personnel. Equal employment opportunity applies to all terms and conditions of employment, including hiring, placement, promotion, termination, layoff, recall, transfer, leave of absence, compensation, and training.


Cintel, Inc. expressly prohibits any form of unlawful employee harassment or discrimination based on any of the characteristics mentioned above. Improper interference with the ability of other employees to perform their expected job duties is not tolerated.