We are seeking a Cyber Security Engineer to join our Ansys Government Initiatives (AGI) team. As a Cyber Security Engineer, you will be responsible for configuring, implementing, and maintaining host-based firewalls, intrusion prevention systems (IPS), anti-virus software, SELinux, network firewalls, SIEMs, and proxies across diverse environments.
Your responsibilities will also include developing, updating, and documenting Standard Operating Procedures (SOPs) for security tools and maintaining accurate network diagrams. You will create and deploy host and network countermeasures based on open source intelligence (OSINT), behavioral analysis, and evolving threat landscapes.
Additionally, you will monitor, tune, and implement security controls in tools such as McAfee ePO and Palo Alto to ensure optimal protection. You will manage and troubleshoot Security Information and Event Management (SIEM) feeds, ensuring timely detection and response to security events.
You will design and implement custom dashboards to visualize and analyze critical security datasets. You will lead incident response efforts, ensuring chain of custody is maintained and investigations are thoroughly documented.
You will characterize and analyze network and host traffic to identify anomalous activity and mitigate potential threats. You will develop and deploy custom Data Loss Prevention (DLP) signatures within Microsoft O365, Palo Alto, Crowdstrike, Elastic, and ZScaler environments.
As a Cyber Security Engineer, you will strengthen the security posture of Ansys Government Initiatives (AGI) by proactively defending against emerging threats. You will ensure compliance with rigorous federal and organizational security standards, supporting government and commercial initiatives.
You will reduce risk of data breaches and operational disruptions through robust countermeasure development and incident response. You will enhance operational readiness by keeping security documentation, SOPs, and network diagrams current and actionable.
You will empower internal teams and stakeholders by providing clear security guidance, training, and technical leadership. You will contribute to a culture of continuous improvement, innovation, and collaboration within the security team and broader organization.
To be successful in this role, you will need a minimum of two (2) years performing system administrator duties for Windows and/or Linux environments. You will also need SEC+ or equivalent industry-recognized certification.
Additionally, you will have at least two (2) years of experience in an Enterprise Security Operation Center (SOC) or similar response team. You will have a strong technical understanding of current hardware and software technologies, including security tools and platforms.
This position requires a government security clearance and you must be a U.S. Person for consideration.
XML job scraping automation by YubHub