bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesCareers Peraton Icims ComCyber Software Engineer

Cyber Software Engineer

Careers Peraton Icims Com · Fort Gordon, GA, US · Active · $104,000–$166,000 / day · iCIMS

Job facts

FieldValue
CompanyCareers Peraton Icims Com
TitleCyber Software Engineer
Normalized title-
Department / teamInformation Technology
LocationFort Gordon, GA, United States
Work model-
Employment typeFull Time
Salary$104,000–$166,000 / day
Statusactive
ATS provideriCIMS
Posted / first seen2026-05-04 / 2026-05-31
Changed / last seen2026-06-01 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Careers Peraton Icims Com.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through iCIMS.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Fort Gordon.Open
Department jobsActive postings in Information Technology.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyCareers Peraton Icims Com
Source944b3981-c90b-4379-a0d8-7cc8e4e36cf3
ATS provideriCIMS

Description

Responsibilities Peraton seeks a Cyber Software Engineer to support Army Cyber Command Defensive Cyberspace Operations (DCO). Location: Fort Gordon, GA This is a hands-on, code-forward technical role. The selected candidate will author custom detection analytics and hunt tooling, execute proactive threat hunting operations across the DoDIN-A, and translate threat intelligence into operationalized detection logic — all in direct support of Defensive Cyberspace Operations. The primary focus of this position is building and executing: writing Python-based analytics, developing Sigma rules, crafting complex SQL queries, and running those signatures against live telemetry to identify adversarial activity that evades traditional security boundaries. The candidate will also query and synthesize reporting from Cyber Threat Intelligence (CTI) repositories — including government, OSINT, and commercial-leased CTI platforms — to source and vector threat hunting analytics. Findings must be documented and communicated at a level suitable for senior leadership and general officer briefings. Tasks Include: Threat Hunting & Detection Engineering Design, build, and implement advanced detection analytics using Python; integrate SQL queries into Python-based logic to correlate real-time telemetry with original threat research and adversarial TTPs as described by MITRE ATT&CK®. Execute proactive cyber threat hunting operations across the DoDIN-A using custom-developed analytics; actively search for and identify adversarial artifacts, anomalies, Indicators of Attack (IOAs), and Indicators of Compromise (IOCs) that evade traditional security boundaries. Translate threat reporting into high-fidelity detection logic; develop and maintain Sigma rules and translate those rules into complex SQL queries tailored to specific data repositories. Develop SIEM-based analytics to identify adversaries' behaviors, goals, and methods; pinpoint gaps within the DoDIN-A security boundary that adversaries may be exploiting. Review and analyze data feeds to ensure relevance and synchronization with DCO priorities. CTI Synthesis & Reporting Query and synthesize technical cybersecurity reporting from government, OSINT, IC, and commercial-leased CTI repositories to identify specific technical indicators and behaviors that correlate with assigned ATT&CK Techniques, sourcing and vectoring analytic development. Draft comprehensive operational notes and hunt findings; articulate complex technical data and cybersecurity risks at a level appropriate for senior leadership and general officer briefings. Use advanced data visualization techniques to distill complex technical datasets into clear, actionable presentations for audiences with varied levels of understanding of complex technical topics. Communicate complex cybersecurity insights through briefings, reports, and visualization tools. Create and maintain continuity documents necessary for team members to produce contractual deliverables. Qualifications Required: Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD. Will consider 10 years with Associates degree or 12 years with HS. Advanced coding fluency in Python, with demonstrated ability to build data-driven security analytics and custom hunt tooling. High proficiency in data querying and logic development using SQL, and Sigma rule creation. Intimate, practical knowledge of MITRE ATT&CK Enterprise framework and its application in mapping adversarial TTPs to defensive analytics. Demonstrated ability to query, navigate, and extract actionable intelligence from CTI repositories — including commercial-leased platforms — to source and inform threat hunting operations. Deep understanding of cyber attack vectors, vulnerability exploitation, and network defense principles to support continuous DCO priorities. Exceptional professional writing capabilities; must be able to synthesize highly technical hunt findings into clear, concise, and academically rigorous reports for executive-level (Army Cyber Command) consumption. Effective communication and collaboration skills to ensure team responsiveness and data feed relevance to DCO priorities. Requires at least one of the following: CCNA-Security, CySA+, GICSP, GSEC, Security+, CND, or SSCP. Requires at least one of the following: CEH, CFR, CCNA Cyber Ops, CCNA-Security, CySA+, GCIA, GCIH, GICSP, Cloud+, SCYBER, or PenTest+. U.S. Citizenship required. Active TS SCI with the ability to obtain/maintain CI Polygraph and MEAD. Flexibility to support surge operations and adapt to rapidly shifting mission requirements as dictated by Army Cyber Command. Preferred: Highly desired: Ability to author solutions within the Microsoft Power Platform — including Power BI dashboards and reports, Power Automate workflows, Power Apps applications, and Power Query (M-code) data transformations — to support operational reporting, data visualization, and workflow automation for leadership consumption. Knowledge of data science methodologies — including statistical analysis, anomaly detection, and machine learning — to process large cybersecurity datasets and identify deviations indicative of advanced threats. Experience authoring formal, in-depth research papers (college-level or IC analytic publication level) focusing on cybersecurity trends or threat actor profiling. Familiarity with Artificial Intelligence (AI) and Large Language Models (LLMs); ability to leverage command-provided AI capabilities to enhance workflows. A Master's or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering OR o ne of the following certifications: CBROPS, CFR, CySA+, GCFA, GCIA, or GICSP. Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure. Target Salary Range $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Full job record

Job IDda4e6d83cac27d66b0c8780ebd4de9431d6e89a1
Org IDb88db125-2f81-4362-9897-a29d0e7de670
Source ID944b3981-c90b-4379-a0d8-7cc8e4e36cf3
Board ID944b3981-c90b-4379-a0d8-7cc8e4e36cf3
Providericims
Provider Job Key166331
TitleCyber Software Engineer
Normalized Title
Statusactive
Activeyes
Location TextFort Gordon, GA, US
DepartmentInformation Technology
Team
Employment Typefull_time
Workplace Type
Remote Policy
CountryUnited States
RegionGA
CityFort Gordon
Salary RawResponsibilities Peraton seeks a Cyber Software Engineer to support Army Cyber Command Defensive Cyberspace Operations (DCO). Location: Fort Gordon, GA This is a hands-on, code-forward technical role. The selected candidate will author custom detection analytics and hunt tooling, execute proactive threat hunting operations across the DoDIN-A, and translate threat intelligence into operationalized detection logic — all in direct support of Defensive Cyberspace Operations. The primary focus of this position is building and executing: writing Python-based analytics, developing Sigma rules, crafting complex SQL queries, and running those signatures against live telemetry to identify adversarial activity that evades traditional security boundaries. The candidate will also query and synthesize reporting from Cyber Threat Intelligence (CTI) repositories — including government, OSINT, and commercial-leased CTI platforms — to source and vector threat hunting analytics. Findings must be documented and communicated at a level suitable for senior leadership and general officer briefings. Tasks Include: Threat Hunting & Detection Engineering Design, build, and implement advanced detection analytics using Python; integrate SQL queries into Python-based logic to correlate real-time telemetry with original threat research and adversarial TTPs as described by MITRE ATT&CK®. Execute proactive cyber threat hunting operations across the DoDIN-A using custom-developed analytics; actively search for and identify adversarial artifacts, anomalies, Indicators of Attack (IOAs), and Indicators of Compromise (IOCs) that evade traditional security boundaries. Translate threat reporting into high-fidelity detection logic; develop and maintain Sigma rules and translate those rules into complex SQL queries tailored to specific data repositories. Develop SIEM-based analytics to identify adversaries' behaviors, goals, and methods; pinpoint gaps within the DoDIN-A security boundary that adversaries may be exploiting. Review and analyze data feeds to ensure relevance and synchronization with DCO priorities. CTI Synthesis & Reporting Query and synthesize technical cybersecurity reporting from government, OSINT, IC, and commercial-leased CTI repositories to identify specific technical indicators and behaviors that correlate with assigned ATT&CK Techniques, sourcing and vectoring analytic development. Draft comprehensive operational notes and hunt findings; articulate complex technical data and cybersecurity risks at a level appropriate for senior leadership and general officer briefings. Use advanced data visualization techniques to distill complex technical datasets into clear, actionable presentations for audiences with varied levels of understanding of complex technical topics. Communicate complex cybersecurity insights through briefings, reports, and visualization tools. Create and maintain continuity documents necessary for team members to produce contractual deliverables. Qualifications Required: Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD. Will consider 10 years with Associates degree or 12 years with HS. Advanced coding fluency in Python, with demonstrated ability to build data-driven security analytics and custom hunt tooling. High proficiency in data querying and logic development using SQL, and Sigma rule creation. Intimate, practical knowledge of MITRE ATT&CK Enterprise framework and its application in mapping adversarial TTPs to defensive analytics. Demonstrated ability to query, navigate, and extract actionable intelligence from CTI repositories — including commercial-leased platforms — to source and inform threat hunting operations. Deep understanding of cyber attack vectors, vulnerability exploitation, and network defense principles to support continuous DCO priorities. Exceptional professional writing capabilities; must be able to synthesize highly technical hunt findings into clear, concise, and academically rigorous reports for executive-level (Army Cyber Command) consumption. Effective communication and collaboration skills to ensure team responsiveness and data feed relevance to DCO priorities. Requires at least one of the following: CCNA-Security, CySA+, GICSP, GSEC, Security+, CND, or SSCP. Requires at least one of the following: CEH, CFR, CCNA Cyber Ops, CCNA-Security, CySA+, GCIA, GCIH, GICSP, Cloud+, SCYBER, or PenTest+. U.S. Citizenship required. Active TS SCI with the ability to obtain/maintain CI Polygraph and MEAD. Flexibility to support surge operations and adapt to rapidly shifting mission requirements as dictated by Army Cyber Command. Preferred: Highly desired: Ability to author solutions within the Microsoft Power Platform — including Power BI dashboards and reports, Power Automate workflows, Power Apps applications, and Power Query (M-code) data transformations — to support operational reporting, data visualization, and workflow automation for leadership consumption. Knowledge of data science methodologies — including statistical analysis, anomaly detection, and machine learning — to process large cybersecurity datasets and identify deviations indicative of advanced threats. Experience authoring formal, in-depth research papers (college-level or IC analytic publication level) focusing on cybersecurity trends or threat actor profiling. Familiarity with Artificial Intelligence (AI) and Large Language Models (LLMs); ability to leverage command-provided AI capabilities to enhance workflows. A Master's or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering OR o ne of the following certifications: CBROPS, CFR, CySA+, GCFA, GCIA, or GICSP. Peraton Overview Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure. Target Salary Range $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. EEO EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Salary Min104,000
Salary Max166,000
Salary CurrencyUSD
Salary Periodday
Source URLhttps://careers-peraton.icims.com/jobs/166331/cyber-software-engineer/job
Apply URLhttps://careers-peraton.icims.com/jobs/166331/cyber-software-engineer/job
First Seen At2026-05-31 18:45:22Z
Last Seen At2026-06-06 08:30:31Z
Last Checked At2026-06-06 08:30:31Z
Last Changed At2026-06-01 13:53:09Z
Inactive At
Source Posted At2026-05-04 04:00:00Z
Source Updated At2026-05-11 18:54:49Z
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=icims/board=careers-peraton.icims.com/date=2026-06-06/2026-06-06T08-29-11-585Z-62c6aa17ff46c56fb91a34c45fc7003d905a4242cf4e51d0ad09795febd21c98.json
Event Fields
{
  "content_hash": "6cfdea58a04c7019dbd5ab21ca69ac0bab2c06ce191c6b42c00bc27efe328ee0",
  "source_hash": "0ac14fbf0c03927a4d8e5aa3818f3965ffb21eac7ec12f0dfba35b3e59ce9bf1",
  "last_changed_at": "2026-06-01T13:53:09.581Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "Fort Gordon, GA, US",
    "city": "Fort Gordon",
    "region": "GA",
    "country": "United States",
    "is_remote": false,
    "confidence": 0.8
  },
  "salary_max": 166000,
  "salary_min": 104000,
  "inferred_at": "2026-06-06T08:30:31.447Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "Fort Gordon, GA, US",
      "city": "Fort Gordon",
      "region": "GA",
      "country": "United States",
      "is_remote": false,
      "confidence": 0.8
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": null,
  "salary_period": "day",
  "workplace_type": null,
  "salary_currency": "USD"
}
Extensions
{}
Native Structured
{
  "json_ld": {
    "url": "https://careers-peraton.icims.com/jobs/166331/cyber-software-engineer/job",
    "@type": "JobPosting",
    "title": "Cyber Software Engineer",
    "@context": "http://schema.org",
    "datePosted": "2026-05-04T04:00:00.000Z",
    "description": "<h2>Responsibilities</h2>\n<p>Peraton seeks a <strong>Cyber Software Engineer </strong>to support Army Cyber Command Defensive Cyberspace Operations (DCO).  Location: Fort Gordon, GA </p>\n<p> </p>\n<p>This is a hands-on, code-forward technical role. The selected candidate will author custom detection analytics and hunt tooling, execute proactive threat hunting operations across the DoDIN-A, and translate threat intelligence into operationalized detection logic — all in direct support of Defensive Cyberspace Operations. </p>\n<p>The primary focus of this position is building and executing: writing Python-based analytics, developing Sigma rules, crafting complex SQL queries, and running those signatures against live telemetry to identify adversarial activity that evades traditional security boundaries. The candidate will also query and synthesize reporting from Cyber Threat Intelligence (CTI) repositories — including government, OSINT, and commercial-leased CTI platforms — to source and vector threat hunting analytics. Findings must be documented and communicated at a level suitable for senior leadership and general officer briefings. </p>\n<p>Tasks Include:</p>\n<ul>\n <li>Threat Hunting & Detection Engineering \n  <ul>\n   <li>Design, build, and implement advanced detection analytics using Python; integrate SQL queries into Python-based logic to correlate real-time telemetry with original threat research and adversarial TTPs as described by MITRE ATT&CK®. </li>\n   <li>Execute proactive cyber threat hunting operations across the DoDIN-A using custom-developed analytics; actively search for and identify adversarial artifacts, anomalies, Indicators of Attack (IOAs), and Indicators of Compromise (IOCs) that evade traditional security boundaries. </li>\n   <li>Translate threat reporting into high-fidelity detection logic; develop and maintain Sigma rules and translate those rules into complex SQL queries tailored to specific data repositories. </li>\n   <li>Develop SIEM-based analytics to identify adversaries' behaviors, goals, and methods; pinpoint gaps within the DoDIN-A security boundary that adversaries may be exploiting. </li>\n   <li>Review and analyze data feeds to ensure relevance and synchronization with DCO priorities. </li>\n  </ul></li>\n <li>CTI Synthesis & Reporting \n  <ul>\n   <li>Query and synthesize technical cybersecurity reporting from government, OSINT, IC, and commercial-leased CTI repositories to identify specific technical indicators and behaviors that correlate with assigned ATT&CK Techniques, sourcing and vectoring analytic development. </li>\n   <li>Draft comprehensive operational notes and hunt findings; articulate complex technical data and cybersecurity risks at a level appropriate for senior leadership and general officer briefings. </li>\n   <li>Use advanced data visualization techniques to distill complex technical datasets into clear, actionable presentations for audiences with varied levels of understanding of complex technical topics. </li>\n   <li>Communicate complex cybersecurity insights through briefings, reports, and visualization tools. </li>\n   <li>Create and maintain continuity documents necessary for team members to produce contractual deliverables. </li>\n  </ul></li>\n</ul>\n<h2>Qualifications</h2>\n<p>Required:</p>\n<ul>\n <li>Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD. Will consider 10 years with Associates degree or 12 years with HS.  </li>\n <li>Advanced coding fluency in Python, with demonstrated ability to build data-driven security analytics and custom hunt tooling.</li>\n <li>High proficiency in data querying and logic development using SQL, and Sigma rule creation. </li>\n <li>Intimate, practical knowledge of MITRE ATT&CK Enterprise framework and its application in mapping adversarial TTPs to defensive analytics. </li>\n <li>Demonstrated ability to query, navigate, and extract actionable intelligence from CTI repositories — including commercial-leased platforms — to source and inform threat hunting operations. </li>\n <li>Deep understanding of cyber attack vectors, vulnerability exploitation, and network defense principles to support continuous DCO priorities.</li>\n <li>Exceptional professional writing capabilities; must be able to synthesize highly technical hunt findings into clear, concise, and academically rigorous reports for executive-level (Army Cyber Command) consumption.</li>\n <li>Effective communication and collaboration skills to ensure team responsiveness and data feed relevance to DCO priorities.</li>\n <li>Requires at least <strong>one </strong>of the following: CCNA-Security, CySA+, GICSP, GSEC, Security+, CND, or SSCP.</li>\n <li>Requires at least <strong>one </strong>of the following: CEH, CFR, CCNA Cyber Ops, CCNA-Security, CySA+, GCIA, GCIH, GICSP, Cloud+, SCYBER, or PenTest+.</li>\n <li>U.S. Citizenship required. </li>\n <li>Active TS SCI with the ability to obtain/maintain CI Polygraph and MEAD. </li>\n <li>Flexibility to support surge operations and adapt to rapidly shifting mission requirements as dictated by Army Cyber Command. </li>\n</ul>\n<p>Preferred:</p>\n<ul>\n <li>Highly desired: Ability to author solutions within the Microsoft Power Platform — including Power BI dashboards and reports, Power Automate workflows, Power Apps applications, and Power Query (M-code) data transformations — to support operational reporting, data visualization, and workflow automation for leadership consumption. </li>\n <li>Knowledge of data science methodologies — including statistical analysis, anomaly detection, and machine learning — to process large cybersecurity datasets and identify deviations indicative of advanced threats. </li>\n <li>Experience authoring formal, in-depth research papers (college-level or IC analytic publication level) focusing on cybersecurity trends or threat actor profiling. </li>\n <li>Familiarity with Artificial Intelligence (AI) and Large Language Models (LLMs); ability to leverage command-provided AI capabilities to enhance workflows.</li>\n <li>A Master's or Ph.D. in Computer Science, Cybersecurity, Data Science, Information Systems, Information Technology, or Software Engineering <strong>OR o</strong>ne of the following certifications: CBROPS, CFR, CySA+, GCFA, GCIA, or GICSP. </li>\n</ul>\n<h2>Peraton Overview</h2>\n<p>Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.</p>\n<h2>Target Salary Range</h2>$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.\n<h2>EEO</h2>EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.",
    "directApply": true,
    "jobLocation": [
      {
        "@type": "Place",
        "address": {
          "@type": "PostalAddress",
          "postalCode": "UNAVAILABLE",
          "addressRegion": "GA",
          "streetAddress": "UNAVAILABLE",
          "addressCountry": "US",
          "addressLocality": "Fort Gordon",
          "postOfficeBoxNumber": "UNAVAILABLE"
        }
      }
    ],
    "validThrough": "2027-05-04T04:00:00.000Z",
    "employmentType": "FULL_TIME",
    "hiringOrganization": {
      "name": "Peraton",
      "@type": "Organization",
      "sameAs": "UNAVAILABLE"
    },
    "occupationalCategory": "Information Technology"
  },
  "detail_meta": {
    "url": "https://careers-peraton.icims.com/jobs/166331/cyber-software-engineer/job?in_iframe=1",
    "http_status": 200,
    "content_type": "text/html;charset=UTF-8",
    "response_bytes": 44360,
    "compact_response_bytes": 9233,
    "original_response_bytes": 44360
  },
  "sitemap_job": {
    "id": "166331",
    "url": "https://careers-peraton.icims.com/jobs/166331/cyber-software-engineer/job",
    "slug": "cyber-software-engineer",
    "lastmod": "2026-05-11T14:54:49-04:00"
  },
  "detail_errors": []
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/da4e6d83cac27d66b0c8780ebd4de9431d6e89a1?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/b88db125-2f81-4362-9897-a29d0e7de670JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/944b3981-c90b-4379-a0d8-7cc8e4e36cf3JSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/da4e6d83cac27d66b0c8780ebd4de9431d6e89a1/eventsJSON