Cybersecurity Engineer

Roanoke County, Virginia
  • Roanoke, VA
  • $73,160.46–$96,022.99 Per Year
7 days ago

Job Description

Cybersecurity Engineer

Salary

$73,160.46 - $96,022.99 Annually

Location

Roanoke, VA

Job Type

Full Time

Job Number

201003749

Department

Information Technology

Opening Date

09/08/2026

Closing Date

10/20/2026 11:59 PM Eastern

  • Description
  • Benefits

GENERAL DESCRIPTION

Want to join a high-performing organization? Want to make a positive impact on the Roanoke County community by strengthening the security and reliability of the IT systems people depend on every day? The County of Roanokes nationally recognized and award-winning Department of Information Technology (IT) aligns the countys information technology infrastructure and systems to the needs of the community.

The Roanoke County Cybersecurity Engineer is responsible for designing, implementing, maintaining, and continuously improving the County's cybersecurity infrastructure and defense systems. This position plays a critical role in protecting the confidentiality, integrity, and availability of County information systems and data assets by engineering security solutions, performing threat and vulnerability management, and ensuring compliance with federal, state, and local security standards. The Cybersecurity Engineer is a key member of Roanoke County's Cybersecurity Division responsible for engineering, implementing, and maintaining advanced security controls to safeguard the County's information systems, data, and infrastructure. This role supports the County's mission by ensuring the confidentiality, integrity, and availability of technology resources across all departments. The Cybersecurity Engineer serves as a technical subject matter expert in cybersecurity architecture, endpoint protection, threat detection, network defense, identity and access management (IAM), and incident response. This role works closely with the information security leadership, County IT teams, and external cybersecurity partners to develop and sustain proactive defenses against cyber threats. The position also contributes to strategic initiatives that align with the County's overarching Cybersecurity Policy and National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF 2.0). Additional responsibilities include cyber-risk management, vulnerability management, system security assessments, incident response along with in-depth collaboration with the County's information security leadership in developing and deploying the overall Roanoke County cybersecurity strategy. Duties include assisting the information security leadership in building, deploying, and maturing a cybersecurity framework (CSF), disaster recovery and continuity of operations, along with secure network architecture designs, and cybersecurity monitoring solutions. Other duties may be assigned as needed.

ESSENTIAL JOB FUNCTIONS

~ Ensure security requirements are included in enterprise architecture, system design, and IT projects; collaborate with teams to embed secure configurations and best practices.

~ Design, implement, and optimize with other IT teams to secure network and system architectures, including firewalls, Intrusion Detection Systems (IDS)/(IPS) Intrusion Prevention Systems, endpoint security, encryption, and authentication mechanisms.

~ Perform regular security assessments, penetration testing, configuration reviews, and vulnerability management; analyze logs and security data to detect and mitigate threats.

~ Assess the effectiveness of security controls, recommend risk mitigation strategies, and ensure systems operate within acceptable risk levels and comply with policies and standards.

~ Coordinate with the Information Security Leadership and the external security operations center (SOC) to respond to cyber incidents, conduct root cause analysis, support containment activities, and contribute to improving incident response processes.

~ Enforce and maintain security policies, procedures, standards, and documentation; provide reporting on security posture, vulnerabilities, and incidents.

~ Assist in security integration, testing, monitoring, maintenance, privileged account management, and system hardening activities to support secure operations.

~ Work with information security leadership to develop and implement cybersecurity awareness efforts.

~ Stay current on emerging threats and technologies, research new security solutions, and continuously improve security processes and automation.

REQUIREMENTS/PREFERENCES

Education:

Required: Bachelor's degree in a computer-related field or equivalent combination of education and experience.

Preferred: Master's degree in a computer-related field or equivalent combination of education and experience and certifications.

Experience:

Required: Five or more years of progressively responsible experience in IT or information security.

Certifications/Licenses:

Required: Valid Virginia driver's license with a good driving record. COMPTIA Security+ and ISC2- CISSP or equivalent Cybersecurity Certification.

Knowledge, Skills and Abilities:

Networking & Protocols - In-depth knowledge of TCP/IP, DNS, VPNs, firewalls, proxies, and routing/switching concepts. Operating Systems & Platforms - Advanced understanding of Windows, Linux, and cloud environments (AWS, Azure, GCP). Cybersecurity Frameworks & Standards - Familiarity with NIST CSF, ISO 27001, CIS Controls, MITRE ATT&CK, and regulatory requirements (HIPAA, PCI-DSS, CJIS, etc.). Threats & Attack Vectors - Knowledge of malware, ransomware, phishing, social engineering, insider threats, and advanced persistent threats (APTs). Cryptography & Data Protection - Understanding of encryption, hashing, PKI, TLS/SSL, and key management. Vulnerability & Risk Management - Awareness of tools (Nessus, Qualys, Tenable) and methodologies for risk assessments. Incident Response & Forensics - Knowledge of digital forensics, evidence collection, and post-incident analysis. Secure Systems & Software Design - Principles of least privilege, defense-in-depth, and secure coding practices. Security Tool Proficiency - Skilled in configuring and managing SIEMs, IDS/IPS, EDR, DLP, firewalls, and WAFs. Scripting & Automation - Ability to automate tasks using Python, PowerShell, or Bash. Vulnerability Assessment & Pen Testing - Skilled in using penetration testing tools (Metasploit, Burp Suite, Wireshark, Nmap). Cloud Security Engineering - Skilled in securing cloud workloads, implementing IAM, and designing cloud-native security controls. Log & Event Analysis - Proficient in analyzing large volumes of logs to detect anomalies. System Hardening - Ability to configure operating systems, applications, and networks for maximum security. Project Management - Skilled in planning, executing, and documenting security projects. Communication Skills - Strong written and verbal communication to explain technical risks to non-technical stakeholders. Problem-Solving & Analytical Thinking - Ability to identify, analyze, and resolve complex cybersecurity issues. Adaptability - Ability to respond quickly to emerging threats and shifting security landscapes. Collaboration & Leadership - Ability to work effectively in cross-functional teams and mentor junior staff. Strategic Thinking - Ability to design long-term security strategies aligned with business goals. Attention to Detail - Ability to spot subtle anomalies and ensure precision in configurations and documentation. Decision-Making Under Pressure - Ability to make quick, sound decisions during security incidents. Continuous Learning - Ability to keep pace with rapidly evolving technologies and threat environments. Ability to work alone and in teams; work occasional nights, weekends, holidays and be on emergency on-call status for network problems.

Supervisory Responsibilities:

None.

Additional Requirements:

Must be a United States citizen or a lawful permanent resident of the United States and eligible for naturalization. Employment is subject to a complete criminal history background search with acceptable results. Must be able to perform the job as described in the Physical and Environmental Demands section of this job description. Must be available to provide after-hours emergency support as needed.

OTHER INFORMATION

Full-time employees are eligible for a comprehensive benefit package that includes:

  • Progressive Flexible Leave Plan with cash-in option
  • Twelve paid holidays
  • Short Term Disability Insurance
  • Long Term Disability Insurance
  • Health, Vision and Dental Insurance
  • Life Insurance
  • Flexible Spending Accounts - Medical and Dependent Care
  • Virginia Retirement System - Membership in VRS is automatic upon hire into a covered position. County contributes and employees pay their membership contribution.
  • Deferred Compensation Plan with County Match
  • Employee Assistance Program
  • Credit Union Membership

Employer County of Roanoke Virginia

Address 5204 Bernard Drive

Roanoke, Virginia, 24018

Phone 540-772-2018

Website http://www.roanokecountyva.gov

Numbers & Facts

LocationRoanoke, VA
Salary$73,160.46–$96,022.99 Per Year

Skills

  • Amazon Web Services (AWS)unmatched
  • Analysis Skillsunmatched
  • Authenticationunmatched
  • Automationunmatched
  • Bash Scriptingunmatched
  • Best Practicesunmatched
  • Business Continuity Planning (BCP)unmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • Communications Security (COMSEC)unmatched
  • Compensation and Benefitsunmatched
  • Computer Forensicsunmatched
  • Computer Network Defense (CND)unmatched
  • Computer Securityunmatched
  • Continuous Improvementunmatched
  • Cross-Functionalunmatched
  • Cryptographyunmatched
  • DNS (Domain Name System)unmatched
  • Defense in Depthunmatched
  • Dental Insuranceunmatched
  • Detail Orientedunmatched
  • Disability Insuranceunmatched
  • Disaster Recoveryunmatched
  • Documentationunmatched
  • Driver's Licenseunmatched
  • Emerging Technologyunmatched
  • Endpoint Securityunmatched
  • Enterprise Architectureunmatched
  • Firewallsunmatched
  • Forensic Scienceunmatched
  • GCP (Good Clinical Practices)unmatched
  • HIPAA (Health Insurance Portability and Accountability Act)unmatched
  • ISO (International Organization for Standardization)unmatched
  • Identity Data Managementunmatched
  • Incident Responseunmatched
  • Information Technology & Information Systemsunmatched
  • Information/Data Security (InfoSec)unmatched
  • Integration Testingunmatched
  • Internet Securityunmatched
  • Intrusion Detection Systemsunmatched
  • Intrusion Prevention Systemsunmatched
  • Leadershipunmatched
  • Linux Operating Systemunmatched
  • Maintain Complianceunmatched
  • Malwareunmatched
  • Mentoringunmatched
  • Metasploitunmatched
  • Microsoft Windows Azureunmatched
  • Microsoft Windows Operating Systemunmatched
  • NMapunmatched
  • Nessusunmatched
  • Network Architecture/Engineeringunmatched
  • Network Designunmatched
  • Network Protocolsunmatched
  • Network Routingunmatched
  • Network Securityunmatched
  • Network Switchingunmatched
  • Network Systemsunmatched
  • Operating Systemsunmatched
  • Operational Supportunmatched
  • Operations Security (OPSEC)unmatched
  • PCI-DSSunmatched
  • Penetration Testingunmatched
  • Phishingunmatched
  • Presentation/Verbal Skillsunmatched
  • Problem Solving Skillsunmatched
  • Process Improvementunmatched
  • Project/Program Managementunmatched
  • Public Key Infrastructure (PKI)unmatched
  • Python Programming/Scripting Languageunmatched
  • Ransomwareunmatched
  • Regulatory Requirementsunmatched
  • Reporting Skillsunmatched
  • Risk Analysisunmatched
  • Risk Managementunmatched
  • Root Cause Analysisunmatched
  • SSL-TLS (Secure Socket Layer - Transport Layer Security)unmatched
  • Sales Managementunmatched
  • Scripting (Scripting Languages)unmatched
  • Secure Codingunmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Social Engineeringunmatched
  • Software Designunmatched
  • Software Engineeringunmatched
  • Strategic Planningunmatched
  • System Architectureunmatched
  • System Operationsunmatched
  • Systems Administration/Managementunmatched
  • Systems Analysisunmatched
  • TCP/IP (Transmission Control Protocol/Internet Protocol)unmatched
  • Team Playerunmatched
  • Testingunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • United States Citizenunmatched
  • VPN (Virtual Private Network)unmatched
  • Vision Planunmatched
  • Windows PowerShellunmatched
  • Wireshark (Ethereal)unmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder