State of Wyoming

The State of Wyoming is the 44th American territory inducted into the United States in 1890, just seven days after Idaho. Nicknamed the "Equality State" for its

Principal Cyber Security Engineer

Location

United States

Posted

9 days ago

Salary

$7.2K - $8.0K / year

Seniority

Lead

Job Description

Principal Cyber Security Engineer

State of Wyoming

Role Description The Principal Cyber Security Engineer is the state's primary technical authority for advanced endpoint defense, Zero Trust Architecture (ZTA), overarching cybersecurity architecture, and the resolution of high-complexity security incidents across a unique hybrid ecosystem. This position functions as a senior technical specialist responsible for engineering the enterprise security stack to protect both a progressive Google cloud environment (Google Workspace, GCP) and a robust Windows enterprise infrastructure. The role handles "hard" incidents requiring advanced forensics and malware analysis, developing bespoke Python scripts and API integrations to bridge the gap between Google Workspace/GCP telemetry, CrowdStrike Falcon, and Active Directory. This position ensures a unified, compliant defensive posture, enabling the state to neutralize sophisticated threats across diverse operating environments, and provides strategic architectural guidance for all state agencies. Essential Functions - Architectural Leadership & CISO Advisory: Serves as the state’s lead security architect, defining overarching cybersecurity architecture across all domains, advising the CISO on emerging threats, evaluating enterprise-wide security investments, and setting state-wide technical standards. - Endpoint & Zero Trust Engineering: Leads engineering for CrowdStrike Falcon and enterprise Zero Trust frameworks, architecting conditional access policies that securely bridge Google Environments with Active Directory. - Infrastructure Optimization: Optimizes sensor and log ingestion across Windows servers, cloud-native workloads, and multi-cloud (GCP/Azure/AWS) environments to ensure 100% visibility. - Tier 4 Incident Response: Serves as the final escalation point for the most complex security breaches, performing deep-dive forensics spanning memory analysis on obfuscated Windows malware to anomalous behavioral tracking within Google Workspace audit logs. - Containment & Remediation: Reconstructs attack timelines, identifies persistence, and leads technical containment for state-level crises. - Security Automation: Utilizes Python, PowerShell, and Bash to automate complex security workflows and builds custom API bridges utilizing Google Workspace Admin SDK, GCP Security Command Center, and CrowdStrike APIs to orchestrate automated response actions. - Compliance-as-Code: Designs infrastructure security using IaC (Terraform/Ansible) to ensure all systems meet CJIS, IRS Pub 1075, and NIST 800-53 requirements by default. - Infrastructure Hardening: Implements hardening baselines tailored for both cloud-native workloads and Windows systems based on emerging threat intelligence. - Threat Modeling & Mentorship: Performs proactive threat modeling on new enterprise systems before deployment and provides technical mentorship to CSOC Analysts and junior engineers. Qualifications - Preference may be given to candidates with a proven track record of handling high-stakes breaches and managing enterprise-scale security platforms across hybrid Windows/Cloud environments. - Preference may be given to candidates with verifiable project history in custom security tooling and integration. - Mastery of general cybersecurity architecture, enterprise defense strategies, and unified threat management. - Expert knowledge of the CrowdStrike Falcon platform, Real Time Response (RTR), sensor deployment, Windows kernel hardening, and Active Directory security. - Deep expertise in securing Google Environments (Google Workspace, Google Cloud Platform (GCP) IAM, Security Command Center) and bridging cloud environments with Active Directory. - Expert proficiency in Python and PowerShell for security automation and REST API interaction (especially Google Admin SDK and CrowdStrike APIs). - Advanced knowledge of memory forensics, malware analysis, and cloud telemetry hunting via the MITRE ATT&CK framework. - Working knowledge of applying CJIS, IRS Pub 1075, and NIST 800-53 controls to both cloud and local assets. - Ability to translate complex technical risks into business terms for executive leadership. Requirements - Education: Bachelor's Degree (typically in Computer Technology). - Experience: 1-3 years of progressive work experience (typically in Computer Technology) OR 4-7 years of progressive work experience (typically in Computer Technology) as a substitution. - Certificates, Licenses, Registrations: None. Physical Working Conditions - Typically, the employee may sit comfortably to perform the work; however, there may be some walking, standing, bending, carrying light items, driving an automobile, etc. - Special physical demands are not required to perform the work. Notes - FLSA: Nonexempt. - Successful applicants must pass a comprehensive fingerprint-based background check to comply with CJIS and IRS Pub 1075 access requirements. - Must be available for 24/7 on-call rotation and immediate emergency response during state-level cyber incidents.

Related Categories

Related Job Pages

More Security Engineer Jobs

Carrot Fertility logo

Medical Records Coordinator

Carrot Fertility

Carrot Fertility is one of the leading global healthcare companies for health plans and employers. The global team of 300+ designers, engineers, and operators works with a collecti

Role Description The Medical Records Coordinator plays a critical role in helping our fertility benefits platform capture and organize the clinical data that powers patient outcomes and customer reporting. In this role, you will be responsible for: - Receiving, logging, and organizing incoming medical records from fertility clinics and healthcare partners - Contacting clinics by phone or email using established scripts to request or clarify records - Entering and updating patient records accurately in internal systems - Following standard operating procedures (SOPs) to ensure data quality and compliance - Identifying missing or unclear information and escalating issues to the appropriate team members - Tracking and documenting communication and record status to support timely follow-up This is an excellent opportunity for someone early in their career to gain exposure to healthcare operations, fertility care, and data-driven health outcomes in a fast-growing startup. This part-time, contract opportunity is project-based with set weekly deliverables, a 6-month minimum time commitment is required. Qualifications - Education: Associate’s Degree or College Student pursuing a Bachelor’s degree - Experience: 6-12 months of experience in an administrative, operations, healthcare, or data-entry role - Enjoy working in a fast-paced, process-driven environment - Strong attention to detail and ability to follow written procedures - Comfortable using basic technology (email, spreadsheets, databases) - Ability to communicate clearly and professionally by phone and in writing - Ability to manage repetitive tasks with consistency and accuracy Requirements - Bachelor’s Degree preferred - Experience working in a healthcare, medical records, or insurance environment - Familiarity with HIPAA or handling sensitive health information - Interest in women’s health, fertility, or healthcare technology Benefits - Holistic Total Rewards package designed to support employees in all aspects of their life inside and outside of work - Health and wellness benefits - Retirement savings plans - Short- and long-term incentives - Parental leave - Family-forming assistance - Competitive compensation package - Starting base salary for this position will range from $17-$20/hr Company Description Carrot is the leading global fertility and family care platform, built on intelligent care orchestration: the right clinical guidance, at the right moment, in the context of each member’s life. More than a thousand multinational employers, health plans, and health systems trust Carrot to support millions of members across 195 countries – from pre-pregnancy through menopause and major life moments in between. Carrot is widely regarded as a defining force in healthcare innovation as a recipient of several top-tier awards, including Fast Company's 'Most Innovative Companies' and CNBC's '100 Barrier Breaking Startups'. The company is regularly cited by leading global outlets — including The Economist, Bloomberg, The Wall Street Journal, NPR, ABC News, and Harvard Business Review — as a leading voice on digital health, the future of work, and family health.

Worldwide
$17 - $20 / year
Peraton Corporation logo

Cyber Security Engineer

Peraton Corporation

Peraton Corporation, a national security company headquartered in Herndon, Virginia, supplies solutions for mission-critical programs and systems. Founded in 20

Role Description The Office of Space Weather Observations (SWO) under NESDIS is responsible for advancing space weather observational capabilities to meet NOAA programmatic needs. NOAA’s Space Weather Next (SWX) program maintains and extends space weather observations from various vantage points, selected to most efficiently provide comprehensive knowledge of the Sun and the near-Earth space environment needed to protect our technological infrastructure. The Space Weather Ground Services (SWGS) is responsible for comprehensive ground services for all SWX projects, ensuring successful implementation and operation of observing assets and ensuring the continuity of space weather measurements made by SWFO-L1 and the GOES-R series satellites. The SWGS Mission Operations Services (MOS) program must provide a full mission satellite command and control solution to support the L1 Series with two new independently launched observatories. Peraton is seeking a Cyber Systems Engineer to support cybersecurity activities across a new satellite ground system development program supporting the National Oceanic and Atmospheric Administration (NOAA). This position will support all cybersecurity design and implementation activities throughout the full system lifecycle—from architecture and design through integration, assessment, authorization, operational deployment, and sustainment. The selected candidate will be responsible for supporting the program’s cybersecurity architecture to include: - Implementing security controls and processes for a FISMA High-impact system in a cloud-based environment. - Close collaboration with other program functional elements including Systems Engineering Integration and Test (SEIT), Software Engineering, Networks, Infrastructure, Architecture, Operations, Quality, and program leadership. - Designing and developing new systems, applications, and solutions for enterprise-wide cyber systems and networks in support of CI/CD pipelines, DevSecOps frameworks, and Zero Trust Architecture implementations. - Integrating new architectural features into existing infrastructures, designing cyber security architectural artifacts, providing architectural analysis of cyber security features, and relating existing systems to future needs and trends. - Embedding advanced forensic tools and techniques for attack reconstruction, providing engineering recommendations, and resolving integration and testing issues. - Providing technical expertise for NOAA FISMA High system applications, computers, and networks including cybersecurity tool management and implementing NIST 800-53 high-impact security control configurations. - Supporting the NOAA cyber security mission by building, configuring, troubleshooting, and updating the network security capabilities that protect NOAA core networks and information. - Managing complex vulnerability remediations and developing novel patch and vulnerability management solutions. - Monitoring secure network connectivity and ensuring high-quality data transmission using standard network tools. - Creating and establishing network security processes, configuration guides, and architecture diagrams. - Providing technical expertise to large or complex projects. - Establishing and maintaining standard operating procedures for operations team members. This position is contingent on contract award. Qualifications - Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD. - 4 years of relevant experience will be considered in lieu of a Bachelor’s degree. - Ability to obtain and maintain a Public Trust clearance – US Citizenship is required. - Experience with Information Assurance (IA) hardening and compliance, i.e., DISA STIG & NIST 800-53 compliance, documentation. - Experience deploying and maintaining cybersecurity tools including vulnerability scanning/management, SIEM, PAM, WAF, endpoint protection, and cloud security applications. - Must have network and firewall engineering experience with designing, implementation, and maintaining layer 2 and 3 networking devices and/or firewall devices. - Strong knowledge of the OSI 7-layer model, TCP/IP, and common application layer protocols. - Experience working with the Atlassian tool suite, including Jira, Asset Manager, Confluence, Risk Register, Crucible, etc. Requirements - Strong interpersonal skills with a willingness to foster strong relationships with coworkers and vendors. - AWS certification or similar CSP certifications. - Experience with scripting to automate tasks and manage workflows using Python, Bash, or PowerShell. - Experience with Infrastructure as Code (IaC) tools like Terraform, CloudFormation, and Ansible. - Experience with multiple cybersecurity vendors and products such as F5 Big-IP, Delinea, Tenable SC, BigFix, and PaloAlto VM-Series or equivalent technologies. - Highly organized with strong attention to detail. - Outstanding verbal and written communication skills with the ability to dynamically tailor communications effectively to different levels of the organization. - Experience supporting NOAA, NASA, or national space mission programs, particularly ground systems. - Experience leading projects and process improvement activities to completion with successful outcomes and delivery of desired results. - Active Public Trust clearance. Benefits - Target Salary Range: $104,000 - $166,000. - Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. - Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay. Company Description Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

United States
$104K - $166K / year
Job Closed
Full TimeRemoteTeam 51-200Since 1999H1B No Sponsor

• Conducting in-depth research on tools or services that prevent the free collection of public web data. • Building and improving HTTP client solutions to guarantee the success of Bright's Data collection efforts. • Identifying new standards and technologies that could impact our data collection capabilities. • Reverse engineering adversary solutions to prevent fingerprinting solutions from stopping us. • There’s much more…

Worldwide

Role Description Design cloud security controls, own threat response patterns and mentor engineers across the platform organisation. Qualifications - AWS security - Kubernetes - SIEM - Incident response - Secure SDLC Requirements - Architectural Overlordship: Design, implement, destroy, and rebuild next-generation micro-frontend-monoliths. - Data Pipeline Wrangling: Process exabytes of un-indexed, corrupted JSON, XML, YAML, and CSV files simultaneously without losing a single trailing comma. - Legacy Archaeology: Maintain, refactor, and pray over a COBOL codebase written in 1974 that runs our entire global payroll system. - Cross-Functional Chaos: Act as a bridge between Engineering, Product, Marketing, Legal, and the local coffee machine. - Edge-Case Guarding: Write test cases that capture things that shouldn't mathematically happen but will anyway because users are creative. - Frontend Mastery: Must have 15 years of experience in React. - Deep understanding of Vanilla JS quirks. - Backend Robustness: Proficient in Rust, Go, C++, Python, Brainfuck, and Whitespace. - Ability to exit vim on the first attempt without disconnecting the server. - Cloud & DevOps: AWS, Azure, GCP, IBM Cloud, Oracle Cloud, and a private server running under a desk in Ohio. - Experience managing a minimum of $10^5$ concurrent Docker containers. Benefits - 100% medical coverage for you, your dependents, your pets, and your digital avatars. - Infinite PTO (with a mandatory minimum of -5 days per year). - A 128-core workstation with 2TB of RAM, a mechanical keyboard with extra-loud blue switches, and a single, slightly wobbly ergonomic stool. - Free artisanal water, kombucha on tap, and oxygen molecules.

Worldwide
₹4,200K - ₹5,200K / year
Job Closed