Get more replies from employers
Send a job-specific resume in minutes.
MANTECH seeks a highly technical Cloud Security Engineer to join our team in Herndon, VA. The ideal candidate brings a strong background in AWS, scripting, automation, and SIEM expertise to strengthen cloud incident response posture.
Responsibilities include designing cloud security monitoring systems, developing Python scripts, and implementing automated incident response playbooks. Collaboration with CSOC, mentoring staff, and staying current on AI trends are key parts of the role.
MANTECH seeks a highly technical Cloud Security Engineer to join our team in Herndon, VA . Join a dedicated team of cybersecurity experts focused on enhancing the customer’s cloud incident response posture. The ideal candidate brings a strong background in Amazon Web Services (AWS), cyber development, scripting, and automation, coupled with deep expertise in Security Information and Event Management (SIEM) tools.
Systems Design & Architecture: Consult on the design, architecture, and implementation of cloud security monitoring systems at enterprise scale.
Development and Scripting: Develop and maintain scripts and automation tools using Python or similar programming languages.
Automation and Orchestration: Design and implement automated incident response playbooks to streamline CSOC processes.
Collaboration and Mentorship: Work closely with CSOC team members to share insights and coordinate response efforts. Provide technical expertise and mentorship to junior staff; plan and implement cyber exercises and drills to sharpen team skills; and prepare reference and training materials for cloud and incident response.
Continuous Improvement: Stay current on cybersecurity trends, threats, and technologies. Identify opportunities for process improvement and implement best practices. Maintain up-to-date knowledge of relevant AI concepts pertaining to cloud and incident response security.
Splunk Detection Development: Develop, tune, and optimize detection rules for AWS and other cloud-based platforms using Splunk Query Language.
7+ years of experience with cloud security or cyber operations
7+ years of experience with Operating Systems, Network Infrastructure, Security Principles or System Architecture
5+ years of experience with AWS
3+ years of experience coding and scripting in Python
Bachelor’s degree in Computer Science, Information Technology, or a related technical field
Experience with automation and SOAR platforms
Experience in one of the following: incident response, threat hunt, or detection engineering
Experience with Azure/OCI
Relevant certifications (e.g., CISSP, GIAC, CEH)
Active/current TS/SCI with Polygraph is required for this position
Must be able to remain in a stationary position 50% of the time
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.