Senior Detection and Response Engineer

Northwood - Torrance, CA

Hiring: Senior Detection and Response Engineer Company: Northwood Location: Torrance, CA Job Posted Time: 2026-09-10 13:28:23 Target Skills & Keywords : AWS, Azure, Linux, PowerShell, Python, SIEM, SOC, Splunk About the job Experience: •5+ years of hands-on SOC operations, incident response, or threat hunting experience Required Skills: •Lead incident response and forensics - Own security incidents from detection through resolution across globally distributed ground stations and cloud infrastructure. Conduct digital forensics, malware analysis, and coordinate response efforts for incidents impacting national security missions. •Build and tune detection rules - Develop custom detection logic for SIEM platforms that can identify threats specific to satellite communications and ground station operations. Create behavioral analytics and threat hunting queries for distributed infrastructure. •Operate 24/7 security monitoring - Monitor security events across AWS multi-cloud environments, Linux-based ground station systems, and satellite communication networks. Triage alerts, investigate suspicious activity, and escalate critical threats. •Hunt threats across space infrastructure - Proactively search for advanced persistent threats targeting satellite ground stations, RF communications, and space-based assets. Develop threat hunting methodologies for unique attack vectors in space communications. •Create incident response playbooks - Build runbooks for security incidents specific to satellite ground stations and space communications. Develop escalation procedures and communication protocols for government customers and mission-critical operations. •Analyze threat intelligence - Research adversary tactics targeting aerospace and defense infrastructure. Integrate threat feeds into detection systems and brief stakeholders on emerging threats to space communications. •Build security automation - Develop Python/PowerShell scripts for automated incident response, threat hunting workflows, and security orchestration across distributed ground station networks. Qualifications: •Digital forensics and malware analysis skills with tools like Volatility, YARA, and hex editors •Proficiency in Python, PowerShell, or similar languages for security automation and threat hunting •Strong Linux forensics and log analysis skills across distributed systems •Knowledge of threat intelligence frameworks (MITRE ATT&CK, Diamond Model) and IOC analysis •Demonstrated capacity to obtain and maintain TS/SCI clearance •Background in aerospace, defense, or critical infrastructure security operations •Knowledge of RF communications, satellite systems, or space-based asset security •Certifications such as GCIH, GCFA, GNFA, or similar incident response credentials •Operational familiarity with government incident reporting requirements and procedures Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!