Senior Cyber Infrastructure Engineer & Architect; Security Platforms SME
Listed on 2026-07-27
-
IT/Tech
Cybersecurity, Systems Engineer
Senior Cyber Infrastructure Engineer & Architect (Security Platforms SME)
VT-ARC is seeking a Senior Cyber Infrastructure Engineer & Architect (Security Platforms SME) to support cybersecurity platform engineering, security infrastructure modernization, automation, and operationalization for mission-critical enterprise communications, network modernization, and secure infrastructure programs within TS/SCI environments.
This role is focused on hands-on security infrastructure engineering across the full implementation lifecycle, from requirements interpretation and architecture input through detailed design, deployment, integration, tuning, automation, validation, documentation, and transition to operations.
The selected candidate will help architect, deploy, integrate, and sustain security operations platforms such as SIEM, EDR/XDR, enterprise vulnerability scanning, security telemetry pipelines, log collection infrastructure, compliance and configuration monitoring, and API-driven security workflows. The role requires strong system administration instincts, scripting depth, and the ability to make complex security platforms operationally supportable.
Active Top Secret/SCI clearance is required.
VT-ARC offers a competitive signing bonus for qualified candidates.
Duties/Responsibilities:
- Architect, deploy, integrate, tune, maintain, and modernize core cybersecurity operations platforms, including SIEM, EDR/XDR, enterprise vulnerability scanning, log collection, telemetry, compliance monitoring, and related security infrastructure capabilities.
- Engineer security data flows across endpoints, servers, network devices, firewalls, identity systems, cloud services, mission applications, vulnerability scanners, management platforms, and operational support tools.
- Configure and maintain complex log ingestion pipelines, including data source onboarding, parser and field mapping support, normalization, enrichment, indexing, retention, storage sizing, source health monitoring, and data quality validation.
- Support SIEM and detection engineering teams by ensuring reliable data coverage, correlation readiness, dashboard support, alert quality, use-case enablement, and operational visibility across enterprise and mission environments.
- Support EDR/XDR deployment and sustainment activities, including sensor rollout, policy configuration, telemetry validation, exclusions, health monitoring, upgrade planning, and endpoint coverage reporting.
- Support enterprise vulnerability management infrastructure, including scanner placement, credentialed scanning, agent-based coverage, asset inventory alignment, scan policy configuration, results validation, remediation tracking support, and rescanning workflows.
- Develop scripts, API integrations, and automation in Python, Power Shell, Bash, or similar languages to automate platform administration, data source onboarding, reporting, enrichment, ticketing, remediation support, and repetitive operational tasks.
- Integrate cyber platforms with Active Directory/LDAP, PKI, identity and access management, endpoint management, CMDB, ticketing, SOAR, Dev Sec Ops , monitoring, and enterprise management systems.
- Tune platform performance, storage utilization, retention policies, indexing, alert volume, job scheduling, resource allocation, high availability, backup, recovery, and monitoring to support mission-scale operations.
- Coordinate technical dependencies with cybersecurity, systems engineering, network engineering, cloud, identity, infrastructure, COMSEC, operations, vendors, integrators, and Government stakeholders.
- Support lab validation, proof-of-concept activities, integration events, operational testing, troubleshooting, deployment planning, cutovers, and transition to operations.
- Develop architecture diagrams, data flow diagrams, port/protocol matrices, integration plans, implementation guides, SOPs, runbooks, configuration records, test procedures, and operational handoff documentation.
- Support RMF, ATO, STIG, continuous monitoring, security control implementation, vulnerability remediation, and compliance evidence activities as they relate to cybersecurity infrastructure platforms.
- Mentor technical staff on security platform administration, automation practices, logging architecture, operational sustainment, troubleshooting, and secure infrastructure implementation.
Required Education, Certification, Skills, Capabilities:
- Senior-level experience as a cyber infrastructure engineer, security platform engineer, cyber systems architect, cyber systems administrator, security tools engineer, or equivalent role supporting classified, DoD, IC, federal, or high-assurance enterprise environments.
- Proven hands-on experience architecting, deploying, integrating, and continuously maintaining core cybersecurity operations platforms, such as SIEM, EDR/XDR, enterprise vulnerability scanning, log collection, telemetry, or compliance monitoring systems.
- High proficiency in scripting and automation using Python, Power Shell,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).