Jobs · Information Technology · Virginia

Cybersecurity Engineer

Roanoke County, Virginia · Roanoke, VA · 2 days ago
Information TechnologyFull-time

About the role

The Roanoke County Cybersecurity Engineer is responsible for designing, implementing, maintaining, and continuously improving the County’s cybersecurity infrastructure and defense systems. This position protects the confidentiality, integrity, and availability of County information systems and data assets by engineering security solutions, performing threat and vulnerability management, and ensuring compliance with federal, state, and local security standards. The engineer serves as a technical subject‑matter expert in cybersecurity architecture, endpoint protection, threat detection, network defense, identity and access management (IAM), and incident response, working closely with information security leadership, County IT teams, and external cybersecurity partners.

Responsibilities

  • Ensure security requirements are included in enterprise architecture, system design, and IT projects; collaborate with teams to embed secure configurations and best practices.
  • Design, implement, and optimize secure network and system architectures, including firewalls, IDS/IPS, endpoint security, encryption, and authentication mechanisms.
  • Perform regular security assessments, penetration testing, configuration reviews, and vulnerability management; analyze logs and security data to detect and mitigate threats.
  • Assess the effectiveness of security controls, recommend risk mitigation strategies, and ensure systems operate within acceptable risk levels and comply with policies and standards.
  • Coordinate with Information Security Leadership and the external Security Operations Center (SOC) to respond to cyber incidents, conduct root cause analysis, support containment activities, and improve incident response processes.
  • Enforce and maintain security policies, procedures, standards, and documentation; provide reporting on security posture, vulnerabilities, and incidents.
  • Assist in security integration, testing, monitoring, maintenance, privileged account management, and system hardening activities to support secure operations.
  • Work with information security leadership to develop and implement cybersecurity awareness efforts.
  • Stay current on emerging threats and technologies, research new security solutions, and continuously improve security processes and automation.

Requirements

  • Education: Required – Bachelor’s degree in a computer‑related field or equivalent combination of education and experience. Preferred – Master’s degree in a computer‑related field or equivalent combination of education and experience and certifications.
  • Experience: Five or more years of progressively responsible experience in IT or information security.
  • Certifications/Licenses: Valid Virginia driver’s license with a good driving record; CompTIA Security+ and ISC² CISSP or equivalent cybersecurity certification.
  • Additional Requirements: Must be a United States citizen or lawful permanent resident eligible for naturalization; subject to a complete criminal history background search; able to perform the job as described in the Physical and Environmental Demands section; available for after‑hours emergency support and on‑call status; ability to work occasional nights, weekends, and holidays.

Skills and Abilities

  • Networking & Protocols – In‑depth knowledge of TCP/IP, DNS, VPNs, firewalls, proxies, and routing/switching concepts.
  • Operating Systems & Platforms – Advanced understanding of Windows, Linux, and cloud environments (AWS, Azure, GCP).
  • Cybersecurity Frameworks & Standards – Familiarity with NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK, and regulatory requirements (HIPAA, PCI‑DSS, CJIS, etc.).
  • Threats & Attack Vectors – Knowledge of malware, ransomware, phishing, social engineering, insider threats, and advanced persistent threats (APTs).
  • Cryptography & Data Protection – Understanding of encryption, hashing, PKI, TLS/SSL, and key management.
  • Vulnerability & Risk Management – Awareness of tools (Nessus, Qualys, Tenable) and methodologies for risk assessments.
  • Incident Response & Forensics – Knowledge of digital forensics, evidence collection, and post‑incident analysis.
  • Secure Systems & Software Design – Principles of least privilege, defense‑in‑depth, and secure coding practices.
  • Security Tool Proficiency – Skilled in configuring and managing SIEMs, IDS/IPS, EDR, DLP, firewalls, and WAFs.
  • Scripting & Automation – Ability to automate tasks using Python, PowerShell, or Bash.
  • Vulnerability Assessment & Pen Testing – Skilled in using penetration testing tools (Metasploit, Burp Suite, Wireshark, Nmap).
  • Cloud Security Engineering – Skilled in securing cloud workloads, implementing IAM, and designing cloud‑native security controls.
  • Log & Event Analysis – Proficient in analyzing large volumes of logs to detect anomalies.
  • System Hardening – Ability to configure operating systems, applications, and networks for maximum security.
  • Project Management – Skilled in planning, executing, and documenting security projects.
  • Communication – Strong written and verbal skills to explain technical risks to non‑technical stakeholders.
  • Problem‑Solving & Analytical Thinking – Ability to identify, analyze, and resolve complex cybersecurity issues.
  • Adaptability – Ability to respond quickly to emerging threats and shifting security landscapes.
  • Collaboration & Leadership – Ability to work effectively in cross‑functional teams and mentor junior staff.
  • Strategic Thinking – Ability to design long‑term security strategies aligned with business goals.
  • Attention to Detail – Ability to spot subtle anomalies and ensure precision in configurations and documentation.
  • Decision‑Making Under Pressure – Ability to make quick, sound decisions during security incidents.
  • Continuous Learning – Ability to keep pace with rapidly evolving technologies and threat environments.
  • Ability to work alone and in teams; willingness to be on emergency on‑call status for network problems.

Similar jobs

Cybersecurity Engineer

VisaAustin, TX· 3 days ago
Information Technology$124k–$191k/yrapply on visa.wd5.myworkdayjobs.com

Cybersecurity Engineer

Applied Network Solutions, Inc.San Antonio, TX· 2 wk ago
Information Technology$150k–$200k/yrapply on recruiting.paylocity.com

Cybersecurity Engineer

MITREChase City, VA· 1 mo ago
Information Technology$129k–$162k/yrapply on careers.mitre.org

Cybersecurity Engineer

Booz Allen HamiltonAnnapolis Junction, MD· 1 mo ago
$62k–$141k/yrapply on careers.boozallen.com

Cybersecurity Engineer

Life Cycle EngineeringCharleston, SC· 2 mo ago
Information Technologyapply on www2.jobdiva.com