Senior Cybersecurity Engineer - SIEM & Cloud Security
Job Description
VHC Health is seeking a Senior Cybersecurity Engineer (SIEM & Cloud Security) in Alexandria, VA. In this onsite role, you will help strengthen security visibility and protect hybrid on-premises and cloud environments as clinical applications transition to AWS and/or Azure. You will serve as a technical lead across SIEM program work, cloud security engineering, and secure migration planning.
What you’ll do
- Lead the Security Information and Event Management (SIEM) program and the associated cloud security engineering activities.
- Design, build, and secure hybrid on-premises and cloud environments.
- Enable comprehensive enterprise-wide security visibility as clinical applications move to AWS and/or Azure.
- Support secure migration of enterprise and clinical applications to AWS and/or Azure.
What you bring
- Deep SIEM engineering expertise with platform-agnostic experience (for example: Splunk, Microsoft Sentinel, QRadar, or similar).
- Hands-on experience onboarding applications and data sources to a SIEM.
- Proven background securely migrating enterprise/clinical applications to AWS and/or Azure.
- Experience integrating log sources, building parsing pipelines, and creating SIEM use cases for applications, infrastructure, and cloud workloads.
- Working familiarity with EDR platforms.
- Working familiarity with network and security monitoring tools.
- Solid understanding of security logging, detection engineering, and incident response fundamentals.
- Experience in regulated environments (healthcare, HIPAA, HITRUST, or similar) is strongly preferred.
- Healthcare or hospital system experience is preferred.
- Experience with identity and access management, network segmentation, or DLP tooling.
- Familiarity with IoMT/OT security considerations in a clinical environment.
Tools and technologies
- SIEM: Splunk (or equivalents such as Sentinel, QRadar, LogRhythm)
- EDR: CrowdStrike (or equivalent)
- Cloud security: AWS security services, Azure security services
- Network/Security monitoring: Firewall/IDS/IPS platforms and network monitoring tools
- Other: Active Directory, familiarity with SSO/LDAP integrations
Education and certification
Bachelor’s degree in a related field is preferred.
- Relevant certification(s) are preferred: CISSP, CCSP, GCIA, GCED, AWS Security Specialty, or Azure Security Engineer Associate.
Compensation and benefits
Salary: USD 110,406 - 209,768 per year.
- Comprehensive benefits package including medical, dental, and vision coverage (subject to eligibility requirements)
- Additional wellness and retirement benefits