EngineerJobs.io
← Back to all jobs

Job Description

Nexigen is hiring a Senior Cybersecurity Engineer to provide hands-on leadership across digital forensics, penetration testing, and compliance support. Based in Newport, KY, this hybrid role blends incident investigation and control mapping with direct technical involvement on client engagements, including support for sales calls, proposals, and RFP responses.

The position focuses on reconstructing attacks from evidence, validating security posture through real-world testing, and producing clear results that stand up to technical, legal, and executive scrutiny. You will also help keep compliance artifacts current and support audit and certification activities across multiple frameworks as applicable.

What you’ll do

  • Lead forensic investigations of security incidents, including evidence acquisition, chain-of-custody documentation, and root-cause analysis.
  • Analyze compromised systems, network traffic, and logs to reconstruct attack timelines and identify indicators of compromise.
  • Produce clear, defensible incident reports for technical, legal, and executive audiences.
  • Plan and execute penetration tests and vulnerability assessments across networks, applications, and cloud environments.
  • Simulate real-world attack techniques to identify exploitable weaknesses before adversaries do.
  • Deliver findings with prioritized, actionable remediation guidance for internal teams and clients.
  • Support audits and certification efforts for frameworks such as SOC 2, ISO 27001, NIST, HIPAA, or PCI DSS as applicable.
  • Maintain security policies, control documentation, and evidence for internal and external audits.
  • Track remediation of compliance gaps and advise stakeholders on regulatory risk.
  • Provide support to internal teams and Nexigen’s clients on cyber security related topics and engagements.
  • Serve as a technical subject-matter expert during client and prospect calls, translating security capabilities into business value.
  • Contribute to proposals, RFP responses, and security questionnaires with accurate technical content.
  • Partner with the sales team to scope security engagements and set realistic client expectations.

Required qualifications

  • 5+ years of experience in cyber security, including direct experience in forensics and penetration testing.
  • Bachelor’s degree in Cyber Security or a related Computer Science or Information Systems degree (listed as “Batchlor’s degree” in the source).
  • Working knowledge of at least one major compliance framework: SOC 2, ISO 27001, CMMC, NIST 800-171, or NIST 800-53.
  • Hands-on experience using forensic and penetration testing tools including EnCase, FTK, Autopsy, Burp Suite, Metasploit, and Nmap.
  • Strong written and verbal communication skills, with the ability to explain technical risk to non-technical audiences.
  • Strong understanding of advanced networking and secure network architecture including 802.1x, Radius Configurations, and MFA.
  • Sound judgment and discretion when handling sensitive investigations and client data.
  • Strong problem-solving skills and the ability to stay calm and methodical under incident-response pressure.
  • Ability to collaborate across engineering, legal, and sales stakeholders.
  • Self-motivated with the ability to manage multiple engagements and priorities independently.
  • Client-facing comfort building trust and rapport with prospects and customers.
  • Comfort engaging directly with clients or prospects in a pre-sales or advisory capacity.

Additional skills and working requirements

  • Interpersonal skills including telephony skills, communication skills, active listening, and customer-care.
  • Diagnosis skills of technical issues, ability to multi-task and adapt quickly, and technical awareness for matching resources to technical issues appropriately.
  • Service awareness of key IT services being supported, including understanding support tools and how technology is used to provide IT services.
  • Typing skills for quick and accurate entry of service request details, requiring finger and wrist dexterity in repetitive motion.
  • Must be able to remain in a stationary position 80% of the working day; occasionally move within the office and up and down stairs to access hardware storage rooms and office machinery.
  • Frequently position self to maintain computers in the lab, including under desks and in the server closet.
  • Frequently communicate with co-workers, clients, and contractors, exchanging accurate information.
  • Must be able to detect and/or recognize software, hardware, and operating systems used on or to operate computers.

Salary and location

  • Location: Newport, KY (hybrid)
  • Compensation: USD 90,000 - 115,000 per year

Tools and frameworks

  • Forensics and testing: EnCase, FTK, Autopsy, Burp Suite, Metasploit, Nmap
  • Compliance and standards: SOC 2, ISO 27001, NIST, CMMC, NIST 800-171, NIST 800-53, HIPAA, PCI DSS
  • Networking and identity: 802.1x, Radius Configurations, MFA
  • Certifications mentioned: GCFA, GCFE, OSCP, CEH, CISSP, CISA

Benefits

  • 401(k) and 401(k) matching
  • Dental insurance
  • Health insurance
  • Life insurance
  • Paid time off
  • Referral program
  • Vision insurance

Similar Jobs