Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges-and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day-working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities for career growth, and a culture of innovation that embraces adaptability, collaboration, technical excellence, and people in partnership. If this sounds like the choice you want to make, then choose MITRE - and make a difference with us.
MITRE's Defensive Cyber Operations department is seeking creative people to work collaboratively with our staff of cybersecurity engineers in the fields of defensive cyber operations, cybersecurity analytics, and cyber deception and adversary engagement.Roles & Responsibilities:MITRE is seeking strong technical candidates needed to provide engineering support for a Centralized Logging Initiative. Candidates will be part of a fast-paced team of government and contractor personnel to help stand up and maintain a centralized log collection tier for the sponsor organization.Candidates will comprise a team which performs duties across a broad spectrum of growing demands:- Consult and interface with customers to understand log collection requirements and provide appropriate solutions to integrate data feeds
- Implement cybersecurity-focused dashboards and alerts for the ESOC watch floor to promote an expedited adoption of new logs by analysts
- Advanced SPL search construction and optimization with a focus on security and detection engineering
- Build incident response playbooks and running incident response plans
- Understand M-21-31 Executive Order 14028 and the practical steps to achieve compliance
- Implement metrics to understand environment health and monitor dashboard adoption
- Provide strategic and technical recommendations to sponsor, occasionally writing short whitepapers and/or building executive briefs
Some examples our work include:- Combining cybersecurity domain expertise and contemporary data science skills to enhance adversary detection, network defense, and Security Operations Center (SOC) process improvement.
- Using MITRE ATT&CK to hunt the adversary and build TTP-based defenses.
- Automating container environments via continuous integration and continuous
Basic Qualifications:- Typically requires a minimum of 5 years of related experience with a Bachelor's degree; or 3 years and a Master's degree; or a PhD with relevant experience who can immediately contribute at this job step; or equivalent combination of related education and work experience
- Degree in Computer Science, Artificial Intelligence, Machine Learning, Software Engineering, Cybersecurity, Data Science, or related technical field
- Familiarity and experience with Splunk
- This position requires a minimum of 50% hybrid on-site
Preferred Qualifications: - Experience applying AI/ML to cyber operations, reverse engineering, digital investigations, or mission analytics
- Experience and knowledge of MITRE ATT&CK implementation
This requisition requires the candidate to have a minimum of the following clearance(s):None
This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):None
Salary compensation range and midpoint:$129,200 - $161,500 - $193,800 Annual
Work Location Type:Hybrid
Commitment to Non-DiscriminationAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local or international law.
MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE's employment process, please email for general support and for intern positions. This service is for individuals requiring reasonable accommodation requests. Please note that vendor solicitations will not receive a reply.
Benefits information may be found here.
Copyright 1997-2026, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only.