Senior Cybersecurity Engineer
Senior
Cybersecurity Tools
Endpoint Security
Ids/ips
Incident Response
Information Security
InfoSec
Network Security
Risk Governance
Security Compliance
Security Engineering
Security Information And Event Management
Security Operations
Security Standards
Solution Architecture
Splunk
Splunk Siem
Vulnerability Management
Job Description
Aivanta Tech Inc. is hiring a Senior Cybersecurity Engineer in Covington, LA (onsite) to lead efforts that protect digital assets across IT infrastructure and cloud environments. This role focuses on designing, implementing, and operating advanced security capabilities, including incident response and vulnerability management, while working closely with cross-functional teams.
In this position, you will build security architectures, assess risk against established frameworks, and help ensure that security policies are enforced across enterprise and cloud systems.
Responsibilities
- Design, implement, and maintain comprehensive cybersecurity architectures using tools such as firewalls, IDS (Intrusion Detection Systems), SIEM (Security Information and Event Management), and endpoint detection solutions.
- Perform vulnerability assessments and security risk analyses aligned with ISO 27001, ISO 27002, NIST frameworks, and FISMA guidelines.
- Manage network security components including LAN, WAN, routing protocols such as OSPF and BGP, VPNs, IPsec tunnels, Cisco ASA firewalls, Cisco ISE identity management, and network architecture design.
- Lead incident response by investigating security events using SIEM tools such as Splunk or SolarWinds, coordinating incident recovery efforts, and performing system hardening and threat detection and response.
- Oversee security system administration across Windows, Linux (Debian, CentOS), macOS, and UNIX variants, including implementing system security plans and conducting regular vulnerability research.
- Collaborate on cloud security engineering initiatives in AWS, Azure, and Google Cloud Platform, supporting best practices such as high availability and disaster recovery planning.
- Develop and enforce information security policies aligned to PCI DSS, FedRAMP, and COBIT, supporting IT governance initiatives using risk management frameworks including RMF and DIACAP.
Requirements
- Proven cybersecurity engineering experience with strong computer networking fundamentals, including LAN/WAN design, network protocols such as TCP/IP, DNS, and DHCP, plus knowledge of load balancing and network support.
- Hands-on experience with security tools including SIEM platforms (such as Splunk or similar), IDS/IPS, EDR (Endpoint Detection & Response), Nmap for network scanning, Burp Suite for web application testing, Fiddler for traffic analysis, and automation tooling such as Terraform or Ansible.
- Strong understanding of information security standards including the ISO 27000 series, NIST standards such as SP 800-53, FIPS compliance requirements, and risk management frameworks.
- Knowledge of encryption technologies such as SSL/TLS, PKI (Public Key Infrastructure), system hardening techniques including SELinux, and open-source tooling for vulnerability research.
- Experience managing enterprise IT infrastructure, including SAN storage systems (Storage Area Network), VMware vSphere virtualization environments, and cloud architecture across IaaS/PaaS.
- Strong analytical skills in security assessment and vulnerability management, including threat intelligence analysis, and proficiency in scripting languages such as Python or Bash for automation tasks.
- Relevant certifications such as CISSP, CISA, CEH, or Cisco certifications are highly desirable.
Technologies
- Firewalls, IDS (Intrusion Detection Systems), SIEM (Security Information and Event Management), endpoint detection solutions
- ISO 27001, ISO 27002, ISO 27000 series; NIST frameworks; FISMA
- LAN, WAN, OSPF, BGP, VPNs, IPsec tunnels, Cisco ASA firewalls, Cisco ISE
- SIEM tools: Splunk, SolarWinds
- Operating systems: Windows; Linux (Debian, CentOS); macOS; UNIX variants
- Cloud: AWS, Azure, Google Cloud Platform; high availability; disaster recovery planning
- Compliance and governance: PCI DSS, FedRAMP, COBIT, RMF, DIACAP
- Networking and security tools: TCP/IP, DNS, DHCP, load balancing, IDS/IPS, EDR, Nmap, Burp Suite, Fiddler, Terraform, Ansible
- Security and infrastructure: SP 800-53, FIPS, SSL/TLS, PKI, SELinux, SAN storage systems, VMware vSphere, IaaS/PaaS
- Threat intelligence analysis; Python; Bash; CISSP; CISA; CEH
Benefits
- 401(k)
- Dental insurance
- Employee assistance program
- Flexible schedule
- Parental leave
- Retirement plan
- Tuition reimbursement
Salary: USD 18 - 100 per hourly.