This position is located in Tallahassee, FL. The Cybersecurity Engineer will be responsible for the configuration, integration, and lifecycle management of security tools and integrations. They will support the deployment, updates, and lifecycle management of detections, data sources, and platform components. The role also involves assisting in integrating new telemetry sources and security capabilities into existing platforms, and following established change management and configuration management processes. The engineer will configure, maintain, and support enterprise security tools, including SIEM, data platforms, SOAR, and related detection and telemetry systems. This includes supporting the ingestion, parsing, normalization, and retention of security telemetry to ensure data usability for detection and investigation. The position requires monitoring the performance and availability of security tooling, identifying issues impacting SOC operations, and evaluating telemetry sources for relevance, quality, and operational usefulness. Additionally, the engineer will develop, implement, and maintain SIEM detections using structured detection logic and defined standards, support tuning and validation of detection rules to improve accuracy and reduce false positives, and assist in translating detection requirements into platform-specific implementations. Support for testing and validation of detections and telemetry pipelines in development and production environments is also a key responsibility. The role involves supporting day-to-day engineering operations that enable SOC detection, response, and analytic workflows, troubleshooting and resolving technical issues related to security tools, integrations, and telemetry pipelines, and assisting in root-cause analysis of detection failures, data gaps, or platform issues. Technical support during incident response activities where tooling or telemetry expertise is required is also part of the role. The position also supports enterprise-wide incident response leadership, leverages cyber intelligence and advanced analytics to proactively identify emerging risks, and guides improvements in detection and response capabilities. The engineer will act as an executive liaison to agency leadership and external partners, coordinate cross-functional initiatives, advise agencies on technical investments, modernization, and security priorities, and establish a security and modernization advisory capability. Program management responsibilities include providing guidance, performance management, professional development, and succession planning for SOC, engineering, and architecture teams, managing program budgets, resource allocation, and operational performance metrics, and fostering a culture of accountability, collaboration, operational excellence, and continuous improvement. Other duties as assigned.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior