Cybersecurity Data Engineer
- Location: Charlotte (United States of America)
- Work arrangement: on site
- Employment type: Contract
- Seniority: middle
- Posted:
Job description
AWS Cybersecurity Data Engineer
Charlotte, NC
Position Overview
Seeking an experienced AWS Cybersecurity Data Engineer to support a Cyber Security Operations Center (CSOC). This role will design and develop cloud-based data pipelines, security analytics solutions, and applications that improve cyber investigations and security monitoring.
The ideal candidate will have strong AWS engineering, cloud architecture, Terraform, GitHub, security logging, and data engineering experience, with exposure to SIEM platforms such as Splunk.
Key Responsibilities
- Design and build security data pipelines from third-party tools into AWS environments.
- Develop and configure AWS services, including IAM roles, permissions, and security configurations.
- Build cloud infrastructure and security applications using Terraform, GitHub, and Infrastructure as Code (IaC).
- Design scalable frameworks for collecting, normalizing, enriching, and analyzing security logs.
- Partner with cloud engineers, database architects, cybersecurity engineers, and technical SMEs.
- Develop scalable data interfaces and software components across cloud and on-premise environments.
- Integrate security data from Splunk, AWS, Azure, SIEM platforms, and data lakes.
- Develop and optimize queries, scripts, analytics, and automation supporting cyber investigations.
- Validate data quality, troubleshoot pipeline issues, and identify optimization opportunities.
- Perform CSOC investigations to understand analyst workflows and evolving security data requirements.
- Conduct root-cause analysis across large structured and unstructured datasets.
- Identify new data sources and opportunities to improve security monitoring and threat analysis.
Required Qualifications
- Strong hands-on AWS engineering experience, including cloud architecture, configuration, and application development.
- Experience designing and developing large-scale data pipelines.
- Strong knowledge of AWS IAM roles, permissions, and configurations.
- Experience with Terraform and Infrastructure as Code.
- Experience using GitHub for source control and development.
- Experience with security logs, SIEM platforms, and security analytics.
- Knowledge of security technologies such as firewalls, authentication systems, antivirus/endpoint tools, audit logs, and databases.
- Experience with data normalization, transformation, and enrichment.
- Programming/scripting experience for data integration and automation.
- Strong troubleshooting, analytical, and root-cause analysis skills.
- Ability to collaborate effectively across cybersecurity, cloud, engineering, and architecture teams.
Preferred Qualifications
- Experience with Splunk and SIEM query languages.
- AWS and/or Azure security experience.
- Experience working with security data lakes and large unstructured datasets.
- Previous SOC/CSOC or cyber investigation experience.
- Knowledge of security monitoring, detection engineering, and threat analytics.
Top Skills
AWS Engineering | Cloud Architecture | Terraform | IAM | Security Data Pipelines | GitHub | Splunk/SIEM | Cybersecurity Analytics
Skills
- automation
- aws
- databases
- firewalls
- github
- infrastructure_as_code
- programming
- scripting
- siem
- splunk
- terraform
Languages
EN
Apply
Open this job in our interactive board to apply, save it, or sign up for matched alerts on similar roles.
View & apply