1

Malware Suricata Jobs (NOW HIRING)

Demonstrated expertise with malware analysis, including investigations of botnet and root‐kit ... OSSEC, Snort, Suricata Experience. * Experience with at least one SIEM i.e Alienvault, Logrhythm ...

Detection Engineering Lead

Mclean, VA · On-site

$141K - $236K/yr

... malware and network-based threats * Building, testing, and tuning security analytics pipelines to ... Experience with YARA, Snort, Suricata, or other signature-based detection technologies * Experience ...

Showing results 21-40

Malware Suricata information

See salary details

$5

$47

$62

How much do malware suricata jobs pay per hour?

As of Sep 13, 2026, the average hourly pay for malware suricata in the United States is $47.06, according to ZipRecruiter salary data. Most workers in this role earn between $39.18 and $52.88 per hour, depending on experience, location, and employer.

What is a malware Suricata analyst?

A Malware Suricata analyst is a cybersecurity professional who specializes in using Suricata, an open-source network threat detection engine, to identify and analyze malware threats within network traffic. Their responsibilities include configuring Suricata rules, monitoring alerts, and investigating suspicious activities that may indicate malware infections. They play a key role in incident response by providing actionable intelligence about threats detected in real time. Additionally, they often collaborate with other security teams to improve detection capabilities and help protect an organization's digital assets.

What are the key skills and qualifications needed to thrive as a malware Suricata analyst?

To thrive as a Malware Analyst with a focus on Suricata, you need a solid foundation in cybersecurity principles, malware analysis, and network protocols, often supported by a degree in computer science or related certifications like GIAC or CEH. Hands-on experience with Suricata IDS/IPS, packet analysis tools (e.g., Wireshark), and scripting languages such as Python is typically required. Strong analytical thinking, attention to detail, and effective problem-solving skills set top performers apart in this role. These competencies are critical for identifying, analyzing, and mitigating threats in complex network environments to maintain organizational security.

What are some common challenges faced by professionals working with Suricata for malware detection?

Professionals using Suricata for malware detection often encounter challenges such as managing large volumes of network traffic, fine-tuning rules to minimize false positives, and staying updated with emerging threats. Integrating Suricata with other security tools and SIEM platforms can require significant technical expertise. Additionally, regularly updating rule sets and maintaining performance while ensuring thorough detection are key aspects that require continuous attention.

What is the difference between Malware Suricata vs Malware Analyst?

AspectMalware SuricataMalware Analyst
CertificationsNetwork security, IDS/IPS certificationsMalware analysis, cybersecurity certifications
Work EnvironmentNetwork security teams, intrusion detection systemsMalware labs, cybersecurity teams
Industry UsageNetwork monitoring, intrusion detectionMalware research, threat analysis

Malware Suricata focuses on network-based intrusion detection using tools like Suricata, while Malware Analysts specialize in examining malicious software to understand its behavior. Both roles are vital in cybersecurity but differ in their primary focus: network security versus malware research.

What other helpful pages are available for Malware Suricata?

Other pages related to Malware Suricata:

Infographic showing various Malware Suricata job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 89% Full Time, 4% Part Time, and 6% Contract. Highlights an 76% Physical, 7% Hybrid, and 17% Remote job distribution, with an average salary of $97,888 per year, or $47.1 per hour.

Senior Threat-Warning Analyst with Secret Clearance

Fort Liberty, NC

CALNET Inc.
IT Services • 201 - 500 employees

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 4 days ago


Job description

Founded in 1989, CALNET, Inc. has become one of the fastest growing privately held companies in the Technology, Intelligence Analysis, and Language Services consulting arena. Headquartered in Reston, VA, CALNET employees deliver true value to our customers by employing best practices, world-class technologies industry expertise in every project. CALNET is ISO 9001, ISO 20000, and CMMI-Level III certified

For a USARC - Defensive Cyberspace Operations opportunity, we are currently searching for a talented Senior Threat-Warning Analyst in Fort Bragg, NC

About the Job

This position provides proactive CTI support to inform Blue Team detection priorities, drive assessment scoping, prioritize remediation effort, and deliver finished intelligence products to supported commanders, the supported RCC, and ARCYBER. CTI operations shall integrate classified and open-source reporting consistent with the analyst's cleared access (historical baseline: 6–10 daily cyber threat reports analyzed; approximately 1,300 sensor-grid signatures reviewed, activated, modified, or deactivated monthly). This position validates proposed signatures for proper syntax and minimal false positives prior to deployment; all development and signature testing shall be conducted on isolated networks.

Job Requirements

  • Conduct persistent collection, aggregation, and analysis of OSINT, commercial threat feeds, ISAC reporting, community intelligence reporting, and Government-Furnished Intelligence (GFI) to identify emerging threats relevant to supported networks.
  • Conduct open-source research to identify commercial exploits, zero-day vulnerabilities, and adversary TTPs requiring DCO action, and integrate findings into the supported environment's detection capability (host-based security, IPS/IDS, SIEM).
  • Develop, test, and recommend host-based and network-based signatures (YARA, Snort, Suricata, Elastic detection logic, custom host-based policies) based on identified adversary tradecraft, and coordinate signature submissions with the ARCYBER signature working group portal for global standardization.
  • Correlate internal sensor data and incident reports against classified and open-source threat reporting to identify campaign patterns and persistent adversary activity, and conduct hypothesis-driven and indicator-based threat hunt missions.
  • Provide tactical DCO integration support when directed, integrating tactical network sensor events and signature analysis into the supported RCC's DCO processes and enabling tactical units to detect, identify, and respond to threats on their networks.
  • Develop and maintain a DCO test lab using a Government-approved commercially leased connection (isolated from NIPRNet) for malware analysis and OSINT collection.
  • Produce and disseminate Threat Intelligence Reports (TIR), Indicator of Compromise (IOC) packages, Request for Information (RFI) responses, and trend analyses; maintain a current intelligence requirements (IR) management process aligned to the supported command's requirements and higher Army echelons.
  • Document and conduct annual test plans for the CTI signature-development pipeline (or as signatures are developed/updated) and conduct monthly DCO-specific internal training, maintaining a Program of Instruction (POI), attendee list, and After-Action Reports (AAR).

Required Skills

  • Bachelor’s  Degree in an IT field preferred
  • U.S Citizenship and Secret Clearance is required.
  • 5+ years’ IT Infrastructure experience

This opportunity is in Fort Bragg, NC

CALNET, Inc. offers a competitive salary and a generous benefits package.  This package includes medical, dental, vision, life, short- and long-term disability insurances, a 401(k)-retirement savings plan, and generous leave time.

CALNET, Inc. is an Equal Opportunity Employer. EEO/M/F/D/V