EngineerJobs.io
← Back to all jobs

Job Description

VHC Health is seeking a Senior Cybersecurity Engineer to lead the SIEM program and drive cloud security engineering. This onsite role in Alexandria, VA will focus on designing and securing hybrid on-premises and cloud environments while delivering enterprise-wide security visibility as clinical applications move to AWS and/or Azure.

Role Overview

The Senior Cybersecurity Engineer will serve as a technical leader for Security Information and Event Management (SIEM) and cloud security engineering. Responsibilities include building secure hybrid environments, ensuring comprehensive visibility across the enterprise, and supporting secure migrations of enterprise and clinical applications to AWS and/or Azure.

Key Responsibilities

  • Act as the technical lead for the Security Information and Event Management (SIEM) program and cloud security engineering.
  • Design, build, and secure hybrid on-premises and cloud environments.
  • Provide comprehensive security visibility across the enterprise.
  • Support securely migrating enterprise and clinical applications to AWS and/or Azure.

Required Qualifications

  • Deep SIEM engineering expertise with platform-agnostic experience such as Splunk, Microsoft Sentinel, QRadar, or similar.
  • Hands-on experience onboarding applications and data sources to a SIEM.
  • Proven experience securely migrating enterprise and clinical applications to AWS and/or Azure.
  • Experience onboarding applications, infrastructure, and cloud workloads to a SIEM, including log source integration, parsing, and use case creation.
  • Working familiarity with EDR platforms.
  • Working familiarity with network and security monitoring tools.
  • Solid understanding of security logging, detection engineering, and incident response fundamentals.
  • Experience working in regulated environments (healthcare, HIPAA, HITRUST, or similar) strongly preferred.
  • Experience in a healthcare or hospital system environment preferred.
  • Experience with identity and access management, network segmentation, or DLP tooling.
  • Familiarity with IoMT/OT security considerations in a clinical environment.

Preferred Education

  • Bachelor’s degree in a related field (preferred).

Tools and Technologies

  • SIEM: Splunk (or equivalent such as Sentinel, QRadar, LogRhythm).
  • EDR: CrowdStrike (or equivalent).
  • Cloud security: AWS security services, Azure security services.
  • Network and security monitoring: Firewall/IDS/IPS platforms, network monitoring tools.
  • Other: Active Directory; familiarity with SSO/LDAP integrations a plus.

Certifications (Preferred)

  • Relevant certification(s) preferred: CISSP, CCSP, GCIA, GCED, AWS Security Specialty, or Azure Security Engineer Associate.

Benefits

  • Comprehensive benefits package including medical, dental, and vision coverage (subject to eligibility requirements).
  • Additional wellness and retirement benefits.

Similar Jobs