Why This Role Stands Out
Advance your career in cloud security with a leading technology firm, where you'll design and implement cutting-edge solutions to bolster incident response for a high-profile client. This hybrid role offers significant growth potential and the opportunity to mentor junior staff, making it ideal for experienced AWS and SIEM professionals with a passion for automation and continuous learning. Join a collaborative team and make a tangible impact on national security.
Quick Overview
Job Description
MANTECH seeks a highly technical AWS Engineer to join our team in Herndon, VA. Join a dedicated team of cybersecurity experts focused on enhancing the customer's cloud incident response posture. The ideal candidate brings a strong background in Amazon Web Services (AWS), cyber development, scripting, and automation, coupled with deep expertise in Security Information and Event Management (SIEM) tools. Responsibilities include, but are not limited to:
- Systems Design & Architecture: Consult on the design, architecture, and implementation of cloud security monitoring systems at enterprise scale.
- Development and Scripting: Develop and maintain scripts and automation tools using Python or similar programming languages.
- Automation and Orchestration: Design and implement automated incident response playbooks to streamline CSOC processes.
- Collaboration and Mentorship: Work closely with CSOC team members to share insights and coordinate response efforts. Provide technical expertise and mentorship to junior staff; plan and implement cyber exercises and drills to sharpen team skills; and prepare reference and training materials for cloud and incident response.
- Continuous Improvement: Stay current on cybersecurity trends, threats, and technologies. Identify opportunities for process improvement and implement best practices. Maintain up-to-date knowledge of relevant AI concepts pertaining to cloud and incident response security.
- Splunk Detection Development: Develop, tune, and optimize detection rules for AWS and other cloud-based platforms using Splunk Query Language.
Minimum Qualifications
- 7+ years of experience with cloud security or cyber operations
- 7+ years of experience with Operating Systems, Network Infrastructure, Security Principles or System Architecture
- 5+ years of experience with AWS
- 3+ years of experience coding and scripting in Python Preferred Qualifications:
- Bachelor's degree in Computer Science, Information Technology, or a related technical field
- Experience with automation and SOAR platforms
- Experience in one of the following: incident response, threat hunt, or detection engineering
- Experience with Azure/OCI
- Relevant certifications (e.g., CISSP, GIAC, CEH) Clearance Requirements: Active/current TS/SCI with Polygraph is required for this position Physical Requirements: Must be able to remain in a stationary position 50% of the time
Similar jobs
- NA
Applied Mechanics Engineer (3986)
NewNavarro Inc.
Idaho Falls, Idaho🇺🇸Remote13 hours agoLinearRisk AssessmentEngineering - NA
Applied Mechanical Engineer (3985)
NewNavarro Inc.
Idaho Falls, Idaho🇺🇸Remote13 hours agoAssemblyComplianceProcurementEngineering - IB
Quality Engineer (27636)
NewiMPact Business Group
Wyoming, MI🇺🇸HybridYesterdayEngineering - AM
Quality Engineer
NewAdvics Manufacturing Ohio, Inc
Lebanon, OH🇺🇸HybridYesterdayEngineering - PA
Supplier Quality Engineer - Mechanical
NewPanelmatic
Houston, Texas🇺🇸On-site2 days agoERPComplianceContinuous Improvement+3Engineering - H&
Structural Engineer
NewH&H
Annapolis, Maryland🇺🇸On-siteYesterdayCADTechnical SupportEngineering