Threat Detection Engineer (Cloud Security)
Dark Wolf Solutions · Ogden, UT
Posted 16 days ago · $100,000.00 - $160,000.00
or apply directly on Dark Wolf Solutions's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 16 days Dark Wolf Solutions's roles stay open a median of 45 days
- Reposted
- No
- Salary listed
- Yes 90% of Dark Wolf Solutions's roles list one
- Ghost-job risk at Dark Wolf Solutions
- high 32 stale, 2 reposted of 63 open
- Hiring momentum
- 77 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from Dark Wolf Solutions's own greenhouse board since 2026-08-03. Full hiring picture for Dark Wolf Solutions.
About this role
The Threat Detection Engineer will focus on designing, building, testing, and deploying detection logic using a 'Detection-as-Code' methodology for both on-premise and AWS GovCloud environments. This role involves writing custom detection signatures, analyzing security logs, and proactively hunting for threats while leveraging AI and ML to enhance detection capabilities. The engineer will also collaborate with other teams to automate incident response and improve alert fidelity.
- benefits
- 1/5
- freshness
- 4/5
- career value
- 4/5
- role clarity
- 5/5
- pay transparency
- 5/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Dark Wolf Solutions as an employer.
What you need
- 4+ years of relevant experience
- 2+ years of hands-on experience authoring and tuning detection logic in Splunk Enterprise and the ELK Stack (Elasticsearch, Logstash, Kibana)
- 2+ years of experience with employment of DoD cybersecurity requirements, policies, and procedures
- Experience within a vSOC, SOC, or CSSP responding to cyber incidents
- Direct experience ingesting, normalizing, and engineering detections for AWS GovCloud security telemetry
- Demonstrated experience using GitLab for Detection-as-Code, CI/CD pipelines, version control, and DevSecOps workflows
Nice to have
- Experience managing detections as code using Infrastructure as Code (IaC) tools like Terraform or CloudFormation
- Familiarity with container runtime security and Kubernetes threat modeling
- Experience with RHEL
- Experience in performing post-incident computer forensics without destruction of critical data
- Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff
Worth weighing
- Position requires full-time on-site presence at Hill AFB in Ogden, Utah
- Salary range provided but may vary based on experience and skills
- Direct, full-time W2 employment only, no contract or remote options available
Summarised from Dark Wolf Solutions's posting. Read the full original.
Listed by Dark Wolf Solutions on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at Dark Wolf Solutions
- AI Software EngineerChantilly/Herndon, VA
- Data Engineer - SMEChantilly/Herndon, VA
- DevSecOps Engineer - SMEChantilly/Herndon, VA
- Data Engineer - ExpertChantilly/Herndon, VA
- Junior DevSecOps EngineerChantilly/Herndon, VA
- Senior AI Software EngineerChantilly/Herndon, VA
- AI Software Engineer - ExpertChantilly/Herndon, VA
- Junior Data EngineerChantilly/Herndon, VA