Haystack
← Back to Jobs
Full time
Technology
MA

Cloud Security Engineer

MANTECHHerndon, VA🇺🇸United StatesPosted 22 Aug 2026

Why This Role Stands Out

This hybrid Cloud Security Engineer role at MANTECH offers a fantastic opportunity to leverage your AWS, scripting, and SIEM expertise to significantly impact cloud incident response posture within a reputable technology firm. You'll thrive here if you're a proactive problem-solver passionate about continuous learning, automation, and mentoring others in a collaborative environment.

Quick Overview

Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Herndon, VA, United States
Posted
1 week ago
AWSSplunkAzurePython

Job Description

MANTECH seeks a highly technical Cloud Security Engineer to join our team in Herndon, VA. Join a dedicated team of cybersecurity experts focused on enhancing the customer’s cloud incident response posture. The ideal candidate brings a strong background in Amazon Web Services (AWS), cyber development, scripting, and automation, coupled with deep expertise in Security Information and Event Management (SIEM) tools.

Responsibilities include, but are not limited to:

  • Systems Design & Architecture: Consult on the design, architecture, and implementation of cloud security monitoring systems at enterprise scale.
  • Development and Scripting: Develop and maintain scripts and automation tools using Python or similar programming languages.
  • Automation and Orchestration: Design and implement automated incident response playbooks to streamline CSOC processes.
  • Collaboration and Mentorship: Work closely with CSOC team members to share insights and coordinate response efforts. Provide technical expertise and mentorship to junior staff; plan and implement cyber exercises and drills to sharpen team skills; and prepare reference and training materials for cloud and incident response.
  • Continuous Improvement: Stay current on cybersecurity trends, threats, and technologies. Identify opportunities for process improvement and implement best practices. Maintain up-to-date knowledge of relevant AI concepts pertaining to cloud and incident response security.
  • Splunk Detection Development: Develop, tune, and optimize detection rules for AWS and other cloud-based platforms using Splunk Query Language.

Minimum Qualifications:

  • 7+ years of experience with cloud security or cyber operations
  • 7+ years of experience with Operating Systems, Network Infrastructure, Security Principles or System Architecture
  • 5+ years of experience with AWS
  • 3+ years of experience coding and scripting in Python

Preferred Qualifications:

  • Bachelor’s degree in Computer Science, Information Technology, or a related technical field
  • Experience with automation and SOAR platforms
  • Experience in one of the following: incident response, threat hunt, or detection engineering
  • Experience with Azure/OCI
  • Relevant certifications (e.g., CISSP, GIAC, CEH)

Clearance Requirements: Active/current TS/SCI with Polygraph is required for this position

Physical Requirements: Must be able to remain in a stationary position 50% of the time

Similar jobs