Cybersecurity Engineer
Indotronix Avani Group
Bon Air, VA, United States
2 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on candidateportal.ceipal.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Job source
Tech stack
Microsoft Windows
Amazon Web Services
Systems Engineering
Microsoft Azure
Cyber Security
Linux
Identity and Access Management
Intrusion Detection and Prevention
Python (Programming Language)
Network Architecture
Windows PowerShell
Cloud Services
+6 more
Security Information and Event Management
Software Vulnerability Management
National Institute of Standards and Technology Cybersecurity Framework
Microsoft Sentinel
Splunk
Security Orchestration, Automation & Response
Job description
| Job Summary: Cybersecurity Engineer | SIEM, SOAR, Security Operations & Cloud Security (Contractor), Join a forward-thinking organization committed to modernizing and elevating its cybersecurity posture. As a Cybersecurity Engineer, you will play a pivotal role in strengthening security engineering and operations, enhancing SIEM, SOAR, EDR, and SOC capabilities, and supporting a mature, future-ready cybersecurity program. This position offers an exciting opportunity to drive real impact across cloud, identity, and enterprise security landscapes in a highly collaborative, growth-driven environment., Design and implement security controls across identity, network, endpoint, and cloud environments to close visibility gaps and elevate operational maturity. |
- Lead SIEM/SOAR integrations, including log onboarding, parsing, normalization, and automation enablement for core security tools.
- Develop and tune detection use cases prioritized by risk and threat exposure, supporting a robust security operations roadmap.
- Engineer secure configuration baselines for critical infrastructure, servers, workstations, and cloud assets using leading frameworks.
- Build and maintain comprehensive logging pipelines for enhanced visibility across endpoints, networks, identity platforms, and cloud services.
- Support vulnerability management engineering, asset classification, scanner integration, and remediation workflow design.
- Partner with IT, application, and SOC teams to develop detection rules, enrich alerts, and strengthen response processes.
- Implement cryptographic management practices and key lifecycle controls for sensitive systems.
- Identify and drive security automation opportunities using scripting and SOAR tools to streamline response workflows.
- Participate in incident investigations and root-cause analysis, providing engineering solutions to prevent recurrence.
- Prepare technical documentation, operational runbooks, and knowledge transfer materials for internal teams.
Requirements
10+ years in security engineering, security operations, or systems engineering with direct cybersecurity responsibilities.
- Advanced hands-on experience with SIEM platforms (Splunk, LogRhythm, Microsoft Sentinel, or similar).
- Strong detection engineering, log onboarding, and security monitoring expertise.
- Deep knowledge of identity security including IAM, privileged access, SSO, and role-based access controls.
- Experience securing Windows, Linux, network infrastructure, and cloud workloads.
- Proven ability to implement secure configuration baselines (CIS, DISA STIG, etc.).
- Proficiency in scripting and automation (PowerShell, Python).
- Understanding of incident response engineering, forensic readiness, and data access controls.
- Experience in regulated environments and security compliance frameworks (NIST CSF, RMF, CJIS, etc.).
Preferred Skills
- Experience in large enterprise or public sector environments.
- Familiarity with SOAR platforms and security automation architecture.
- Experience with vulnerability management tools and workflow engineering.
- Exposure to hybrid security operations models.
- Relevant certifications (CISSP, GSEC, GCIA, GCED, GCSA, AWS/Azure Security certifications)., Qualified candidates authorized to work in the US (no sponsorship available) are encouraged to submit their resume and a brief cover letter outlining relevant experience. Candidates must be able to pass a background check and participate in a face-to-face interview., Hand on experience with SIEM Engineering & Detection EngineeringSecurity Engineering + Identity SecurityAutomation & Security Engineering (powershell Python SOAR)
Benefits & conditions
Long-term contract with potential for extension and ongoing career growth.
- Exposure to leading-edge cloud and security technologies.
- Opportunity to drive security modernization and automation.
- Collaborative, cross-functional work environment.
- Direct impact on the organization’s security posture and operational excellence.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on candidateportal.ceipal.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…