Cybersecurity Engineer | SIEM, SOAR, Security Operations & Cloud Security

Richmond, VA, US • Posted 2 hours ago • Updated 1 hour ago
Full Time
On-site
$65 - $75 per hour
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Cloud Security
  • Screening
  • PASS
  • Endpoint Protection
  • Enterprise Architecture
  • System On A Chip
  • Adaptability
  • Process Improvement
  • Normalization
  • Security Architecture
  • Design Review
  • Hardening
  • Servers
  • Root Cause Analysis
  • FOCUS
  • Threat Analysis
  • Orchestration
  • Roadmaps
  • IT Operations
  • Management
  • Security Controls
  • Reporting
  • Strategic Planning
  • Technical Writing
  • Knowledge Transfer
  • Security Engineering
  • Systems Engineering
  • Cyber Security
  • Splunk
  • LogRhythm
  • Microsoft
  • Onboarding
  • SSO
  • Multi-factor Authentication
  • Identity Management
  • Microsoft Windows
  • Linux
  • Network Design
  • STIG
  • Scripting
  • Windows PowerShell
  • Python
  • Regulatory Compliance
  • RMF
  • Risk Management Framework
  • Public Sector
  • Vulnerability Management
  • Workflow
  • Security Operations
  • CISSP
  • GSEC
  • GCIA
  • Amazon Web Services
  • Microsoft Azure
  • SIEM
  • Use Cases
  • Network
  • Cloud Computing
  • Incident Management
  • Procurement
  • Documentation
  • IT Service Management
  • Innovation
  • Collaboration
  • Recruiting
  • Artificial Intelligence
  • Privacy
  • Insurance
  • Finance
  • Professional Development
  • Training
  • Leadership
  • CompTIA
  • Customer Service
  • Career Counseling
  • SAP BASIS
  • Law
  • ADA
  • Apex
  • Oracle Application Express

Summary

Job#: 3052876

Job Description:
Cybersecurity Engineer (Contractor)
Location

North Chesterfield, VA (Hybrid)
Engagement

12-month contract with option to extend
Reports To

Director of Security Engineering & Operations
Screening

Must be able to pass a background investigation
Position Overview

Our client is strengthening and modernizing its Security Engineering & Operations capabilities as part of a broader effort to mature its cybersecurity posture. The organization is expanding its engineering depth, enhancing existing SIEM, EDR, and SOC practices, and evaluating the optimal team model for future growth. This initiative focuses on elevating current capabilities, closing visibility gaps, and evolving the tools, processes, and operational practices that will support a mature cybersecurity program.

The Cybersecurity Engineer will help broaden and strengthen core engineering functions that enable an effective SOC model, including SIEM/SOAR integration, identity and endpoint security engineering, secure configuration baselines, and cloud and enterprise architecture support. This role partners with IT operations, application teams, and SOC analysts while operating within an evolving security organization. Success in this role requires adaptability, process improvement experience, strong documentation habits, and a hands-on technical mindset.
Key Responsibilities
Security Engineering & Architecture
  • Design and implement security controls across identity, network, endpoint, and cloud environments.
  • Lead SIEM/SOAR integrations, including log onboarding, parsing, normalization, and automation readiness.
  • Implement secure configuration and baseline management for critical infrastructure, servers, workstations, and cloud assets.
  • Support enterprise security architecture development, including secure-by-design reviews with application and infrastructure teams.
  • Develop and tune detection use cases aligned with the security operations roadmap, prioritized by risk and threat exposure.
  • Engineer identity security controls, including IAM/PAM hardening, role-based access validation, and integration with monitoring solutions.
  • Implement cryptographic management practices, key lifecycle controls, and validation processes for sensitive systems.
Security Operations Enablement
  • Build and maintain logging pipelines to ensure visibility across endpoints, servers, network devices, identity platforms, and cloud services.
  • Support vulnerability management engineering, including scanner integration, asset classification, and remediation workflow design.
  • Partner with security operations personnel to develop and tune detection rules, correlation logic, and enrichment processes.
  • Participate in incident investigations and root-cause analysis with a focus on implementing engineering solutions that prevent recurring issues.
  • Implement threat intelligence ingestion pipelines and integrate intelligence feeds into detection and response processes.
Automation & Modernization
  • Identify and implement high-impact opportunities for security automation, including alert enrichment, ticket creation, and response workflow orchestration.
  • Evaluate tool health, tuning opportunities, and integration gaps; provide recommendations to support the cybersecurity modernization roadmap.
  • Support emerging AI-assisted capabilities designed to improve security operations and analyst effectiveness.
Collaboration & Cross-Functional Coordination
  • Work closely with IT operations, infrastructure, endpoint management, and application teams to drive secure configurations and optimize security controls.
  • Participate in governance meetings and contribute to progress reporting and strategic planning efforts.
  • Develop technical documentation, operational runbooks, and knowledge transfer materials for internal teams.
Required Qualifications
  • 10+ years of experience in security engineering, security operations, or systems engineering with cybersecurity responsibilities.
  • Hands-on experience with SIEM platforms such as Splunk, LogRhythm, Microsoft Sentinel, or similar technologies.
  • Experience with log onboarding, security monitoring, and detection engineering.
  • Strong understanding of identity security, including IAM, SSO, MFA, privileged access management, and role-based access design.
  • Experience securing Windows and Linux environments, network infrastructure, and cloud workloads.
  • Experience implementing secure configuration baselines using CIS, DISA STIG, or comparable frameworks.
  • Proficiency in scripting and automation using PowerShell, Python, or similar languages.
  • Understanding of incident response engineering requirements, including visibility, forensic readiness, and data access considerations.
  • Experience working within regulated environments and security compliance frameworks such as NIST CSF, RMF, CJIS, or similar standards.
Preferred Qualifications
  • Experience supporting large enterprise or public-sector environments.
  • Familiarity with SOAR platforms and security automation architecture.
  • Experience with vulnerability management tools and remediation workflow engineering.
  • Experience supporting hybrid security operations models involving internal teams and external service providers.
  • Relevant certifications such as CISSP, GSEC, GCIA, GCED, GCSA, AWS Security Specialty, or Azure Security certifications.
Expected Deliverables - Year One
  • Develop a SIEM/SOAR engineering plan with integration of at least 80% of core security tools.
  • Deploy 20-50 tuned, risk-based detection use cases.
  • Document logging and visibility improvements across identity, network, endpoint, and cloud environments.
  • Support development of incident response runbooks and cross-functional operational documentation.
  • Conduct a baseline assessment of security tools and provide recommendations for future enhancements.
  • Deliver complete documentation for implemented controls, configurations, and integrations.
Engagement Structure
  • Hybrid work model requiring four days onsite in North Chesterfield, VA.
  • May support technical evaluations, product assessments, procurement activities, and contributions to solution documentation.


Everforth Apex is a world-class IT services company that serves thousands of clients across the globe. When you join Everforth Apex, you become part of a team that values innovation, collaboration, and continuous learning. We offer quality career resources, training, certifications, development opportunities, and a comprehensive benefits package. Our commitment to excellence is reflected in many awards, including ClearlyRateds Best of Staffing in Talent Satisfaction in the United States and Great Place to Work in the United Kingdom and Mexico.

Everforth Apex uses a virtual recruiter as part of the application process. Click for more details. By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Everforth Apex and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at

Everforth Apex Benefits Overview: Everforth Apex offers a range of supplemental benefits, including medical, dental, vision, life, disability, and other insurance plans that offer an optional layer of financial protection. We offer an ESPP (employee stock purchase program) and a 401K program which allows you to contribute typically within 30 days of starting, with a company match after 12 months of tenure. Everforth Apex also offers a HSA (Health Savings Account on the HDHP plan), a SupportLinc Employee Assistance Program (EAP) with up to 8 free counseling sessions, a corporate discount savings program and other discounts. In terms of professional development, Everforth Apex hosts an on-demand training program, provides access to certification prep and a library of technical and leadership courses/books/seminars once you have 6+ months of tenure, and certification discounts and other perks to associations that include CompTIA and IIBA. Everforth Apex has a dedicated customer service team for our Consultants that can address questions around benefits and other resources, as well as a certified Career Coach. You can access a full list of our benefits, programs, support teams and resources within our 'Welcome Packet' as well, which an Everforth Apex team member can provide.

Everforth Apex Systems is an equal opportunity employer. We do not discriminate or allow discrimination on the basis of race, color, religion, creed, sex (including pregnancy, childbirth, breastfeeding, or related medical conditions), age, sexual orientation, gender identity, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, disability, status as a crime victim, protected veteran status, political affiliation, union membership, or any other characteristic protected by law. Everforth Apex will consider qualified applicants with criminal histories in a manner consistent with the requirements of applicable law.

If you require an accommodation under the Americans with Disabilities Act to participate in an interview with a virtual recruiter or to use our website for a search or application, please contact our Benefits Department at or . Please note that this contact information is strictly to be used for medical ADA accommodations and that no other inquiries will be answered.

UnitedHealthcare creates and publishes the Transparency in Coverage Machine-Readable Files on behalf of Everforth Apex Systems.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: apexsan
  • Position Id: BHJOB2374_3052876
  • Posted 2 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Richmond, Virginia

Today

Easy Apply

Contract

Depends on Experience

Richmond, Virginia

Today

Easy Apply

Contract

80 - 85

Remote

Today

Full-time

Remote

Today

Full-time

USD 110,755.00 per year

Search all similar jobs