Cybersecurity Engineer

Indotronix Avani Group
Bon Air, VA, United States
2 days ago
Apply on candidateportal.ceipal.com
Prepare application

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services Systems Engineering Microsoft Azure Cyber Security Linux Identity and Access Management Intrusion Detection and Prevention Python (Programming Language) Network Architecture Windows PowerShell Cloud Services
+6 more
Security Information and Event Management Software Vulnerability Management National Institute of Standards and Technology Cybersecurity Framework Microsoft Sentinel Splunk Security Orchestration, Automation & Response

Job description

Job Summary: Cybersecurity Engineer SIEM, SOAR, Security Operations & Cloud Security (Contractor), Join a forward-thinking organization committed to modernizing and elevating its cybersecurity posture. As a Cybersecurity Engineer, you will play a pivotal role in strengthening security engineering and operations, enhancing SIEM, SOAR, EDR, and SOC capabilities, and supporting a mature, future-ready cybersecurity program. This position offers an exciting opportunity to drive real impact across cloud, identity, and enterprise security landscapes in a highly collaborative, growth-driven environment., Design and implement security controls across identity, network, endpoint, and cloud environments to close visibility gaps and elevate operational maturity.
  • Lead SIEM/SOAR integrations, including log onboarding, parsing, normalization, and automation enablement for core security tools.
  • Develop and tune detection use cases prioritized by risk and threat exposure, supporting a robust security operations roadmap.
  • Engineer secure configuration baselines for critical infrastructure, servers, workstations, and cloud assets using leading frameworks.
  • Build and maintain comprehensive logging pipelines for enhanced visibility across endpoints, networks, identity platforms, and cloud services.
  • Support vulnerability management engineering, asset classification, scanner integration, and remediation workflow design.
  • Partner with IT, application, and SOC teams to develop detection rules, enrich alerts, and strengthen response processes.
  • Implement cryptographic management practices and key lifecycle controls for sensitive systems.
  • Identify and drive security automation opportunities using scripting and SOAR tools to streamline response workflows.
  • Participate in incident investigations and root-cause analysis, providing engineering solutions to prevent recurrence.
  • Prepare technical documentation, operational runbooks, and knowledge transfer materials for internal teams.

Requirements

10+ years in security engineering, security operations, or systems engineering with direct cybersecurity responsibilities.

  • Advanced hands-on experience with SIEM platforms (Splunk, LogRhythm, Microsoft Sentinel, or similar).
  • Strong detection engineering, log onboarding, and security monitoring expertise.
  • Deep knowledge of identity security including IAM, privileged access, SSO, and role-based access controls.
  • Experience securing Windows, Linux, network infrastructure, and cloud workloads.
  • Proven ability to implement secure configuration baselines (CIS, DISA STIG, etc.).
  • Proficiency in scripting and automation (PowerShell, Python).
  • Understanding of incident response engineering, forensic readiness, and data access controls.
  • Experience in regulated environments and security compliance frameworks (NIST CSF, RMF, CJIS, etc.).

Preferred Skills

  • Experience in large enterprise or public sector environments.
  • Familiarity with SOAR platforms and security automation architecture.
  • Experience with vulnerability management tools and workflow engineering.
  • Exposure to hybrid security operations models.
  • Relevant certifications (CISSP, GSEC, GCIA, GCED, GCSA, AWS/Azure Security certifications)., Qualified candidates authorized to work in the US (no sponsorship available) are encouraged to submit their resume and a brief cover letter outlining relevant experience. Candidates must be able to pass a background check and participate in a face-to-face interview., Hand on experience with SIEM Engineering & Detection EngineeringSecurity Engineering + Identity SecurityAutomation & Security Engineering (powershell Python SOAR)

Benefits & conditions

Long-term contract with potential for extension and ongoing career growth.

  • Exposure to leading-edge cloud and security technologies.
  • Opportunity to drive security modernization and automation.
  • Collaborative, cross-functional work environment.
  • Direct impact on the organization’s security posture and operational excellence.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on candidateportal.ceipal.com
Prepare application

Good distractions

Loading talks and stories from around this role…