Cybersecurity Engineer | SIEM, SOAR, Security Operations & Cloud Security

Indotronix International Corporation•Richmond, VA
•Onsite

About The Position

Join a forward-thinking organization committed to modernizing and elevating its cybersecurity posture. As a Cybersecurity Engineer, you will play a pivotal role in strengthening security engineering and operations, enhancing SIEM, SOAR, EDR, and SOC capabilities, and supporting a mature, future-ready cybersecurity program. This position offers an exciting opportunity to drive real impact across cloud, identity, and enterprise security landscapes in a highly collaborative, growth-driven environment.

Requirements

  • 10+ years in security engineering, security operations, or systems engineering with direct cybersecurity responsibilities.
  • Advanced hands-on experience with SIEM platforms (Splunk, LogRhythm, Microsoft Sentinel, or similar).
  • Strong detection engineering, log onboarding, and security monitoring expertise.
  • Deep knowledge of identity security including IAM, privileged access, SSO, and role-based access controls.
  • Experience securing Windows, Linux, network infrastructure, and cloud workloads.
  • Proven ability to implement secure configuration baselines (CIS, DISA STIG, etc.).
  • Proficiency in scripting and automation (PowerShell, Python).
  • Understanding of incident response engineering, forensic readiness, and data access controls.
  • Experience in regulated environments and security compliance frameworks (NIST CSF, RMF, CJIS, etc.).

Nice To Haves

  • Experience in large enterprise or public sector environments.
  • Familiarity with SOAR platforms and security automation architecture.
  • Experience with vulnerability management tools and workflow engineering.
  • Exposure to hybrid security operations models.
  • Relevant certifications (CISSP, GSEC, GCIA, GCED, GCSA, AWS/Azure Security certifications).

Responsibilities

  • Design and implement security controls across identity, network, endpoint, and cloud environments to close visibility gaps and elevate operational maturity.
  • Lead SIEM/SOAR integrations, including log onboarding, parsing, normalization, and automation enablement for core security tools.
  • Develop and tune detection use cases prioritized by risk and threat exposure, supporting a robust security operations roadmap.
  • Engineer secure configuration baselines for critical infrastructure, servers, workstations, and cloud assets using leading frameworks.
  • Build and maintain comprehensive logging pipelines for enhanced visibility across endpoints, networks, identity platforms, and cloud services.
  • Support vulnerability management engineering, asset classification, scanner integration, and remediation workflow design.
  • Partner with IT, application, and SOC teams to develop detection rules, enrich alerts, and strengthen response processes.
  • Implement cryptographic management practices and key lifecycle controls for sensitive systems.
  • Identify and drive security automation opportunities using scripting and SOAR tools to streamline response workflows.
  • Participate in incident investigations and root-cause analysis, providing engineering solutions to prevent recurrence.
  • Prepare technical documentation, operational runbooks, and knowledge transfer materials for internal teams.

Benefits

  • Long-term contract with potential for extension and ongoing career growth.
  • Exposure to leading-edge cloud and security technologies.
  • Opportunity to drive security modernization and automation.
  • Collaborative, cross-functional work environment.
  • Direct impact on the organization's security posture and operational excellence.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service