Cybersecurity Engineer

County of Roanoke Virginia•Roanoke, VA

About The Position

The County of Roanoke's Department of Information Technology (IT) is seeking a Cybersecurity Engineer to join its Cybersecurity Division. This role is responsible for designing, implementing, maintaining, and continuously improving the County’s cybersecurity infrastructure and defense systems. The Cybersecurity Engineer plays a critical role in protecting the confidentiality, integrity, and availability of County information systems and data assets by engineering security solutions, performing threat and vulnerability management, and ensuring compliance with federal, state, and local security standards. This position serves as a technical subject matter expert in cybersecurity architecture, endpoint protection, threat detection, network defense, identity and access management (IAM), and incident response. The role supports the County’s mission by ensuring the confidentiality, integrity, and availability of technology resources across all departments and contributes to strategic initiatives aligned with the County’s Cybersecurity Policy and NIST Cybersecurity Framework (CSF 2.0).

Requirements

  • Bachelor’s degree in a computer-related field or equivalent combination of education and experience.
  • Five or more years of progressively responsible experience in IT or information security.
  • Valid Virginia driver’s license with a good driving record.
  • COMPTIA Security+ and ISC2- CISSP or equivalent Cybersecurity Certification.
  • In-depth knowledge of TCP/IP, DNS, VPNs, firewalls, proxies, and routing/switching concepts.
  • Advanced understanding of Windows, Linux, and cloud environments (AWS, Azure, GCP).
  • Familiarity with NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK, and regulatory requirements (HIPAA, PCI-DSS, CJIS, etc.).
  • Knowledge of malware, ransomware, phishing, social engineering, insider threats, and advanced persistent threats (APTs).
  • Understanding of encryption, hashing, PKI, TLS/SSL, and key management.
  • Awareness of tools (Nessus, Qualys, Tenable) and methodologies for risk assessments.
  • Knowledge of digital forensics, evidence collection, and post-incident analysis.
  • Principles of least privilege, defense-in-depth, and secure coding practices.
  • Skilled in configuring and managing SIEMs, IDS/IPS, EDR, DLP, firewalls, and WAFs.
  • Ability to automate tasks using Python, PowerShell, or Bash.
  • Skilled in using penetration testing tools (Metasploit, Burp Suite, Wireshark, Nmap).
  • Skilled in securing cloud workloads, implementing IAM, and designing cloud-native security controls.
  • Proficient in analyzing large volumes of logs to detect anomalies.
  • Ability to configure operating systems, applications, and networks for maximum security.
  • Skilled in planning, executing, and documenting security projects.
  • Strong written and verbal communication to explain technical risks to non-technical stakeholders.
  • Ability to identify, analyze, and resolve complex cybersecurity issues.
  • Ability to respond quickly to emerging threats and shifting security landscapes.
  • Ability to work effectively in cross-functional teams and mentor junior staff.
  • Ability to design long-term security strategies aligned with business goals.
  • Ability to spot subtle anomalies and ensure precision in configurations and documentation.
  • Ability to make quick, sound decisions during security incidents.
  • Ability to keep pace with rapidly evolving technologies and threat environments.
  • Ability to work alone and in teams.
  • Must be a United States citizen or a lawful permanent resident of the United States and eligible for naturalization.
  • Employment is subject to a complete criminal history background search with acceptable results.
  • Must be able to perform the job as described in the Physical and Environmental Demands section of this job description.
  • Must be available to provide after-hours emergency support as needed.

Nice To Haves

  • Master’s degree in a computer-related field or equivalent combination of education and experience.
  • Certifications.

Responsibilities

  • Ensure security requirements are included in enterprise architecture, system design, and IT projects; collaborate with teams to embed secure configurations and best practices.
  • Design, implement, and optimize with other IT teams to secure network and system architectures, including firewalls, Intrusion Detection Systems (IDS)/(IPS) Intrusion Prevention Systems, endpoint security, encryption, and authentication mechanisms.
  • Perform regular security assessments, penetration testing, configuration reviews, and vulnerability management; analyze logs and security data to detect and mitigate threats.
  • Assess the effectiveness of security controls, recommend risk mitigation strategies, and ensure systems operate within acceptable risk levels and comply with policies and standards.
  • Coordinate with the Information Security Leadership and the external security operations center (SOC) to respond to cyber incidents, conduct root cause analysis, support containment activities, and contribute to improving incident response processes.
  • Enforce and maintain security policies, procedures, standards, and documentation; provide reporting on security posture, vulnerabilities, and incidents.
  • Assist in security integration, testing, monitoring, maintenance, privileged account management, and system hardening activities to support secure operations.
  • Work with information security leadership to develop and implement cybersecurity awareness efforts.
  • Stay current on emerging threats and technologies, research new security solutions, and continuously improve security processes and automation.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service