Role: Cyber Security Engineer with SIEM Experience
Location: Austin, TX (Need Locals, Onsite position)
Duration: 12+ Months + extensions
In-Person Interview
Security Engineering & Development
- Design and develop secure software components, APIs, and microservices to support penetration testing workflows and security automation.
- Build custom integrations between penetration testing platforms, vulnerability scanning tools, and enterprise SIEM platforms.
- Develop data ingestion pipelines to normalize and forward security telemetry into Splunk and other SIEM platforms.
- Create automation scripts to orchestrate security testing, evidence collection, and reporting processes.
- Support integration of security testing results into governance, risk, and compliance (GRC) platforms.
Penetration Testing Enablement
- Build and maintain Kali Linux-based penetration testing infrastructure, including virtualized and cloud-hosted environments.
- Configure and manage penetration testing toolchains, frameworks, and supporting services.
- Develop custom exploit scripts, test harnesses, and proof-of-concept code to validate security findings.
- Support red team and application penetration testing engagements through automation and tool development.
SIEM & Security Operations Integration
- Develop APIs and connectors to integrate security tools with enterprise SIEM platforms.
- Implement log parsing, enrichment, and normalization logic to improve detection fidelity.
- Automate alert enrichment, correlation, and reporting workflows.
- Collaborate with CSOC teams to align development efforts with detection and monitoring requirements.
Scripting & Automation
- Develop scripts using Python, PowerShell, Bash, or similar languages to automate security operations and testing processes.
- Implement CI/CD pipelines for security tooling and integration code.
- Maintain version control repositories and documentation for developed solutions.
Security & Compliance Alignment
- Ensure developed solutions comply with HHSC security standards, DIR security control requirements, and NIST-based frameworks.
- Participate in architecture reviews, risk assessments, and technical design sessions.
- Produce technical documentation, configuration guides, and operational runbooks.
Required Qualifications Software Developer III
- Bachelor s degree in Computer Science, Information Technology, or related field (or equivalent experience).
- 3 5 years of professional software development experience.
- Proficiency in one or more programming languages: Python, Java, JavaScript, or C#.
- Experience developing REST APIs and integrating enterprise platforms.
- Hands-on scripting experience (Python, Bash, PowerShell).
- Experience deploying and administering Linux systems.
- Familiarity with SIEM platforms (Splunk, Sentinel, or equivalent).
- Knowledge of cybersecurity fundamentals and secure coding practices.
Additional Qualifications Software Developer III
- 5 8 years of professional software development experience.
- Advanced experience building security automation and platform integrations.
- Hands-on experience with penetration testing tools and Kali Linux environments.
- Experience developing security data pipelines and SIEM integrations.
- Experience with containerization and virtualization (Docker, VMware, cloud-hosted labs).
- Ability to design scalable and resilient security tool architectures.
- Experience working in regulated or government environments preferred.
Preferred Certifications
- OSCP, CEH, or equivalent penetration testing certification.
- Splunk Certified Developer or SIEM integration experience.
- Security+, CISSP, or equivalent security certification.
- Linux administration certification.
Key Competencies
- Secure software development
- API and systems integration
- Security automation and orchestration
- Penetration testing toolchain engineering
- SIEM and log pipeline development
- Linux server administration
- Technical documentation and collaboration
Engagement Type
- ITSAC Contract Resource
- Works under HHSC Office of the CISO
- Supports enterprise cybersecurity modernization initiatives
Business Value to the Client
This role enables Client to:
- Scale penetration testing operations through automation
- Integrate security testing outputs into continuous monitoring
- Strengthen threat detection through enriched SIEM telemetry
- Reduce manual security operations effort
- Support Zero Trust and continuous compliance objectives
Candidate Qualifications
Minimum Requirements: Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity. |
Actual Years Experience | Years Experience Needed | Required/ Preferred | Skills/Experience |
| 8 | Required | Advanced experience building security automation and platform integrations. |
| 8 | Required | Hands-on experience with penetration testing tools and Kali Linux environments. |
| 8 | Required | PLEASE CHECK THE JOB DESCRIPTION FOR ADDITIONAL REQUIRED SKILLS AND EXPERIENCE |
| 3 | Preferred | Proficiency in one or more programming languages: Python, Java, JavaScript, or C#. |
| 3 | Preferred | Experience developing REST APIs and integrating enterprise platforms. |
| 3 | Preferred | Experience developing security data pipelines and SIEM integrations. |
| 3 | Preferred | Ability to design scalable and resilient security tool architectures. |
| 3 | Preferred | PLEASE CHECK THE JOB DESCRIPTION FOR ADDITIONAL REQUIRED SKILLS AND EXPERIENCE |