Cybersecurity Engineer

Evolution Cloud Services (EVOCS)
$80,000 - $100,000Remote

About The Position

EVOCS is an IT consulting firm dedicated to helping businesses operate more effectively, solve complex challenges, and create opportunities for growth through practical expertise and technology solutions. We work with clients to understand their needs, identify the right technologies, and deliver solutions that improve performance and support their business objectives. EVOCS is a trusted technology partner to a growing number of organizations and industry leaders, combining technical expertise, business understanding, and a commitment to quality to deliver effective solutions and build lasting client relationships. This role is for a Cybersecurity Engineer who will join a team that is still building. The position involves hands-on work across detection, telemetry, and vulnerability analysis in live client environments. The engineer will be responsible for tuning detections, onboarding log sources, analyzing telemetry and configurations at scale, and translating scanner output and evidence into actionable findings for client security leadership.

Requirements

  • 3 to 5 years hands-on experience in cybersecurity (SOC, detection engineering, security engineering, or MSSP delivery team).
  • Real SIEM and SOAR experience on any platform (commercial or open source), including building and tuning detections.
  • Ability to write detection logic from scratch using languages like KQL, SPL, EQL, Lucene, Sigma, or equivalent.
  • Blue team background with alert triage and investigation experience, and applied knowledge of MITRE ATT&CK.
  • Network literacy: Ability to read firewall configurations and rule bases to understand zones, segmentation, and rule permissions.
  • Enterprise or data center IT experience in a production environment with change control and uptime pressure.
  • Scripting for analysis and automation (Python, Bash, PowerShell, or equivalent).
  • Writing skills sufficient for client-facing reports that survive light review.
  • Willingness to state conclusions supported only by data and avoid overstating findings.

Nice To Haves

  • Certifications: SC-200, AZ-500, CySA+, or GIAC or any other relevant cert.
  • Microsoft security stack experience (Defender, Entra, Azure security).
  • Fortinet exposure (FortiGate, FortiManager, FortiAnalyzer) or equivalent enterprise firewall platform experience.
  • Vulnerability management tooling (Tenable, Rapid7, Qualys).
  • Experience in data center, colocation, critical infrastructure, or OT-adjacent environments.
  • Threat hunting, SOAR, or automation development experience.

Responsibilities

  • Log source onboarding: Connect, parse, and validate telemetry sources into a SIEM, confirming data arrival, fidelity, and identifying missing information.
  • Telemetry and configuration analysis: Extract and analyze firewall configurations, log data, and device state at fleet scale to support security assessments and gather evidence for findings.
  • Detection engineering: Write and tune detection logic, reduce false positives, and build content for coverage gaps. Experience with various platforms is valued over specific product expertise.
  • Vulnerability analysis: Prioritize scanner output using exploitability and asset criticality, and track remediation to closure.
  • Evidence and documentation: Assemble traceable and defensible evidence behind findings.
  • First drafts: Prepare findings, report sections, and weekly status reports that require review rather than rewriting.
  • Automation: Build playbooks, scripts, and tooling to automate repetitive tasks.
  • Research: Conduct advisory and CVE analysis, platform and tooling comparisons, and technical research to inform client recommendations.

Benefits

  • Consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service