CybersecurityJobs.io
← Back to all jobs

Job Description

Aivanta Tech Inc. is seeking a Senior Cybersecurity Engineer to design, implement, and oversee security capabilities across IT infrastructure and cloud environments. This role focuses on protecting digital assets through strong engineering, incident response readiness, and security policy enforcement, with close collaboration across cross-functional teams.

Key Responsibilities

  • Design, implement, and maintain cybersecurity architectures using tools such as firewalls, IDS (Intrusion Detection Systems), SIEM (Security Information and Event Management), and endpoint detection solutions.
  • Perform vulnerability assessments and security risk analyses aligned with industry standards including ISO 27001, ISO 27002, NIST frameworks, and FISMA guidelines to identify threats and vulnerabilities.
  • Manage network security components across LAN, WAN, routing protocols such as OSPF and BGP, VPNs, IPsec tunnels, Cisco ASA firewalls, and Cisco ISE for identity management, including network architecture design.
  • Lead incident response by investigating security events using SIEM tools such as Splunk or SolarWinds, coordinating incident recovery, and performing system hardening along with threat detection and response.
  • Oversee security system administration across Windows, Linux (including Debian and CentOS), macOS, and UNIX variants; implement system security plans and conduct regular vulnerability research.
  • Collaborate on cloud security engineering for AWS, Azure, and Google Cloud Platform, ensuring cloud infrastructure follows best practices including high availability and disaster recovery planning.
  • Develop, enforce, and support information security policies for compliance with PCI DSS, FedRAMP, and COBIT; contribute to IT governance initiatives using risk management frameworks such as RMF and DIACAP.

Required Qualifications

  • Proven cybersecurity engineering experience with strong computer networking fundamentals, including LAN/WAN design, network protocols (TCP/IP, DNS, DHCP), load balancing, and general network support.
  • Hands-on experience with security tools including SIEM platforms (Splunk or similar), IDS/IPS, and EDR (Endpoint Detection and Response); knowledge of Nmap for network scanning, Burp Suite for web application testing, and Fiddler for traffic analysis.
  • Automation experience using Terraform or Ansible.
  • Strong understanding of information security standards, including the ISO 27001/27002/27000 series, NIST standards such as SP 800-53, FIPS compliance requirements, and risk management frameworks.
  • Knowledge of encryption technologies (SSL/TLS), PKI (Public Key Infrastructure), system hardening approaches such as SELinux, and open-source tooling for vulnerability research.
  • Experience managing enterprise IT infrastructure such as SAN storage systems (Storage Area Network), VMware vSphere virtualization, and cloud architecture concepts across IaaS/PaaS, supported by solid network engineering principles.
  • Strong analytical capability for security assessment and vulnerability management, including threat intelligence analysis; proficiency in scripting languages such as Python or Bash.
  • Relevant certifications including CISSP, CISA, CEH, or Cisco certifications are highly desirable.

Technologies and Tools

  • Security and monitoring: firewalls, IDS (Intrusion Detection Systems), SIEM (Security Information and Event Management), endpoint detection solutions, IDS/IPS, EDR (Endpoint Detection & Response), SIEM tools (Splunk), SolarWinds
  • Network and identity: LAN, WAN, OSPF, BGP, VPNs, IPsec tunnels, Cisco ASA firewalls, Cisco ISE, TCP/IP, DNS, DHCP, load balancing
  • Platforms and systems: Windows, Linux (Debian, CentOS), macOS, UNIX variants, VMware vSphere, SAN storage systems (Storage Area Network)
  • Cloud and governance: AWS, Azure, Google Cloud Platform, high availability, disaster recovery planning, IaaS/PaaS, PCI DSS, FedRAMP, COBIT, RMF, DIACAP
  • Standards and security concepts: ISO 27001, ISO 27002, ISO 27000 series, NIST frameworks, SP 800-53, FISMA, FIPS, encryption technologies (SSL/TLS), PKI, SELinux
  • Assessment and automation: Nmap, Burp Suite, Fiddler, Terraform, Ansible, threat intelligence analysis, Python, Bash

Location and Compensation

Location: Covington, LA (onsite)

Compensation: USD 18 - 100 per hourly

Benefits

  • 401(k)
  • Dental insurance
  • Employee assistance program
  • Flexible schedule
  • Parental leave
  • Retirement plan
  • Tuition reimbursement

Similar Jobs