Threat Emulation Engineer - Blue/Purple Team
Threat Emulation Engineer
General Description
We are looking for a skilled Threat Emulation Engineer to support service delivery and be a product subject-matter expert, working independently on small projects and collaboratively on large-scale enterprise deployments. This role will engage in large internal support group with extensive experience and benefit from our internal training program designed to increase your skills and keep pace with technology changes. We focus on enabling our engineers to become complete security professionals able to analyze security solutions, not just install and configure products. You'll gain a broad spectrum of knowledge and skills that allow you to give advice and direction relevant to today's threats.
No Prior Experience with Automated Security Validation Required: While experience with Mandiant Security Validation Tool would be great, we'll train you on the tool if you have a solid foundation in cybersecurity. We're vendor neutral security engineers providing services that meet customer needs, not our own or that of vendors.
About the Federal Region
GuidePoint Security is the trusted partner that defense and civilian government agencies rely on to lead their cybersecurity efforts and protect their organizations. We help solve their most complex security challenges, mature security architectures, and proactively reduce risk. Our purpose-built solutions ensure compliance, safeguard critical assets, and align security with organizational objectives. Backed by deep expertise, strong partnerships, and advanced technologies, we deliver scalable, adaptive capabilities that evolve with the threat landscape so Federal agencies can lead with confidence and protect what’s next.
Roles and Responsibilities
Complete internal training for Automated Security Validation (ASV).
Lead complex ASV deployments and partner with customers to address diverse security use cases.
Assess customer security posture and requirements to guide solution design.
Maximize ASV value by enabling customers and supporting their cybersecurity strategy.
Collaborate with internal product and technical teams to deliver solutions and drive innovation.
Apply prior experience, share best practices, and develop creative approaches to increase adoption.
Empower customers to independently address future security questions.
Required Experience and Education
Candidates MUST have an active Top Secret/SCI clearance with a CI Poly within 10 years for consideration.
5–10 years of security systems engineering and troubleshooting experience.
Active DoD 8570 IAT Level II+ certification (e.g., Security+, CEH).
Strong understanding of cyber threat techniques, intelligence analysis, and adversary TTPs.
Familiarity with MITRE ATT&CK and similar threat frameworks.
Experience designing log ingestion and aggregation strategies.
Knowledge of key security events across common IT platforms.
Proficiency with Windows, macOS, and Linux systems.
Experience with networking and security troubleshooting (firewalls, routing, NAT, etc.).
Ability to manage and deliver multiple projects independently.
Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes
Preferred Experience and Education
Bachelor’s degree in a relevant field or equivalent experience.
Experience configuring and utilizing enterprise SIEM platforms.
Understanding of OS auditing (Syslog, Windows Event Logs).
Experience with Mandiant Security Validation or other Breach and Attack Simulation (BAS) tools.
Red or purple team experience.
Experience developing SOC runbooks, workflows, and policy documentation.
Familiarity with various scripting languages (bash, python, powershell, perl)
Travel Requirements:
This position requires 100% onsite support in Chantilly, VA
Physical Requirements
Sedentary work
Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day
Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day
If you have additional physical requirements/changes, please discuss with HR first
“Applicants selected will be subject to a security investigation and must meet eligibility requirements for access to classified information.”