Cyber Platform Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+3 more
Job description
Day-to-day (~30% SIEM, ~30% Platform, ~30% AWS, ~10% Coordination):
Deploy and operate Elastic Security clusters across AWS GovCloud and on-prem environments
Build and maintain the underlying infrastructure-EKS clusters, Terraform modules, CI/CD
pipelines
Onboard log sources, build ingest pipelines, and create detection content that actually catches
things
Troubleshoot the full stack-from AWS networking to Kubernetes pods to Elasticsearch
performance
Work with SOC analysts to tune alerts, reduce noise, and improve detection coverage
Document architectures and participate in RMF/ATO activities (you won’t own this, but you’ll
contribute)
Coordinate with vendors, government stakeholders, and cross-functional teams
Requirements
Active clearance; experience in DoD IL4+ environments
Expert-level in 2 of 3 areas (working knowledge of the third):
AWS Engineering
Advanced VPC & IAM design; EC2, S3, EKS, CloudWatch/Trail, KMS
GovCloud preferred; network/API-level troubleshooting
Platform Engineering
Kubernetes administration (EKS/RKE2)
Helm, Terraform (modules/state), CI/CD pipelines
Container troubleshooting
Elastic SIEM Engineering
Elastic Stack administration
Detection rules, ingest pipelines, KQL
ILM and performance tuning
Python and/or Bash scripting
Strong communication and documentation skills
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on juju.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 120 - Apple and peers
Dev Digest 121 - AI goes offline
Highest Paying Tech Companies for Developers
Dev Digest 138 - Are you secure about this?