Why This Role Stands Out
This hybrid Cloud Security Engineer role at MANTECH offers a fantastic opportunity to leverage your AWS, scripting, and SIEM expertise to significantly impact cloud incident response posture within a reputable technology firm. You'll thrive here if you're a proactive problem-solver passionate about continuous learning, automation, and mentoring others in a collaborative environment.
Quick Overview
Job Description
MANTECH seeks a highly technical Cloud Security Engineer to join our team in Herndon, VA. Join a dedicated team of cybersecurity experts focused on enhancing the customer’s cloud incident response posture. The ideal candidate brings a strong background in Amazon Web Services (AWS), cyber development, scripting, and automation, coupled with deep expertise in Security Information and Event Management (SIEM) tools.
Responsibilities include, but are not limited to:
- Systems Design & Architecture: Consult on the design, architecture, and implementation of cloud security monitoring systems at enterprise scale.
- Development and Scripting: Develop and maintain scripts and automation tools using Python or similar programming languages.
- Automation and Orchestration: Design and implement automated incident response playbooks to streamline CSOC processes.
- Collaboration and Mentorship: Work closely with CSOC team members to share insights and coordinate response efforts. Provide technical expertise and mentorship to junior staff; plan and implement cyber exercises and drills to sharpen team skills; and prepare reference and training materials for cloud and incident response.
- Continuous Improvement: Stay current on cybersecurity trends, threats, and technologies. Identify opportunities for process improvement and implement best practices. Maintain up-to-date knowledge of relevant AI concepts pertaining to cloud and incident response security.
- Splunk Detection Development: Develop, tune, and optimize detection rules for AWS and other cloud-based platforms using Splunk Query Language.
Minimum Qualifications:
- 7+ years of experience with cloud security or cyber operations
- 7+ years of experience with Operating Systems, Network Infrastructure, Security Principles or System Architecture
- 5+ years of experience with AWS
- 3+ years of experience coding and scripting in Python
Preferred Qualifications:
- Bachelor’s degree in Computer Science, Information Technology, or a related technical field
- Experience with automation and SOAR platforms
- Experience in one of the following: incident response, threat hunt, or detection engineering
- Experience with Azure/OCI
- Relevant certifications (e.g., CISSP, GIAC, CEH)
Clearance Requirements: Active/current TS/SCI with Polygraph is required for this position
Physical Requirements: Must be able to remain in a stationary position 50% of the time
Similar jobs
- TS
Lead Systems Cloud Engineer-2
NewTechgene Solutions LLC
United States🇺🇸HybridYesterdayShellAWSSAML+8Technology - UC
Azure cloud Architect
NewUnivEdge Consulting LLC
Rockville, MD🇺🇸HybridYesterdayAzureDNSGit+7Technology - MA
Senior Cloud Engineer with Security Clearance
NewMANTECH
Crane, IN🇺🇸On-siteYesterdayGCPMicroservicesAWS+8Technology - AM
Network Development Engineer, ADC Network Design, Engineering, a with Security Clearance
Amazon
Arlington, VA🇺🇸$136k - $184k/yrHybrid7 weeks agoShellAWSBash+6 - AM
Network Deployment Engineer, Amazon Dedicated Cloud (NIDD) with Security Clearance
NewAmazon
Culpeper, VA🇺🇸$33 - $58/hrHybridYesterdayFiberAWSHTTPSTechnology - QT
AWS Cloud Engineer
NewQUANTUM TECHNOLOGIES LLC
Indianapolis, IN🇺🇸$89/hrHybridYesterdayAWSAgileJava+3Technology