> Markdown version of [/jobs/ext/3587115-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/3587115-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - **Company:** Indotronix Avani Group - **Location:** Bon Air, VA, United States - **Experience:** Expert - **Contract:** Temporary to permanent - **Skills:** Microsoft Windows, Amazon Web Services, Systems Engineering, Microsoft Azure, Cyber Security, Linux, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Network Architecture, Windows PowerShell, Cloud Services, Security Information and Event Management, Software Vulnerability Management, National Institute of Standards and Technology Cybersecurity Framework, Microsoft Sentinel, Splunk, Security Orchestration, Automation & Response - **Published:** October 5, 2026 - **Apply:** https://candidateportal.ceipal.com/job-details/OBrZ5PMWssmVcKek2uI6noAcUFpt8BF_IOcRIofN_cE ## About the Role 10+ years in security engineering, security operations, or systems engineering with direct cybersecurity responsibilities. - Advanced hands-on experience with SIEM platforms (Splunk, LogRhythm, Microsoft Sentinel, or similar). - Strong detection engineering, log onboarding, and security monitoring expertise. - Deep knowledge of identity security including IAM, privileged access, SSO, and role-based access controls. - Experience securing Windows, Linux, network infrastructure, and cloud workloads. - Proven ability to implement secure configuration baselines (CIS, DISA STIG, etc.). - Proficiency in scripting and automation (PowerShell, Python). - Understanding of incident response engineering, forensic readiness, and data access controls. - Experience in regulated environments and security compliance frameworks (NIST CSF, RMF, CJIS, etc.). Preferred Skills - Experience in large enterprise or public sector environments. - Familiarity with SOAR platforms and security automation architecture. - Experience with vulnerability management tools and workflow engineering. - Exposure to hybrid security operations models. - Relevant certifications (CISSP, GSEC, GCIA, GCED, GCSA, AWS/Azure Security certifications)., Qualified candidates authorized to work in the US (no sponsorship available) are encouraged to submit their resume and a brief cover letter outlining relevant experience. Candidates must be able to pass a background check and participate in a face-to-face interview., Hand on experience with SIEM Engineering & Detection EngineeringSecurity Engineering + Identity SecurityAutomation & Security Engineering (powershell Python SOAR) ## Description Job Summary: Cybersecurity Engineer | SIEM, SOAR, Security Operations & Cloud Security (Contractor), Join a forward-thinking organization committed to modernizing and elevating its cybersecurity posture. As a Cybersecurity Engineer, you will play a pivotal role in strengthening security engineering and operations, enhancing SIEM, SOAR, EDR, and SOC capabilities, and supporting a mature, future-ready cybersecurity program. This position offers an exciting opportunity to drive real impact across cloud, identity, and enterprise security landscapes in a highly collaborative, growth-driven environment., Design and implement security controls across identity, network, endpoint, and cloud environments to close visibility gaps and elevate operational maturity. - Lead SIEM/SOAR integrations, including log onboarding, parsing, normalization, and automation enablement for core security tools. - Develop and tune detection use cases prioritized by risk and threat exposure, supporting a robust security operations roadmap. - Engineer secure configuration baselines for critical infrastructure, servers, workstations, and cloud assets using leading frameworks. - Build and maintain comprehensive logging pipelines for enhanced visibility across endpoints, networks, identity platforms, and cloud services. - Support vulnerability management engineering, asset classification, scanner integration, and remediation workflow design. - Partner with IT, application, and SOC teams to develop detection rules, enrich alerts, and strengthen response processes. - Implement cryptographic management practices and key lifecycle controls for sensitive systems. - Identify and drive security automation opportunities using scripting and SOAR tools to streamline response workflows. - Participate in incident investigations and root-cause analysis, providing engineering solutions to prevent recurrence. - Prepare technical documentation, operational runbooks, and knowledge transfer materials for internal teams.