Senior Cybersecurity Engineer
Company Background and Position Summary
Vaylent is a Cerberus-backed aerospace and defense manufacturing platform building the enterprise infrastructure, capabilities, and operational foundation to support a growing network of manufacturing companies, including Votaw Precision Technologies. Through its operating companies, Vaylent supports demanding aerospace, defense, and industrial programs by combining advanced manufacturing expertise with scalable business and technology infrastructure.
This position reports directly to the Chief Information Officer and carries platform-wide technical scope across all Vaylent operating environments. It is a senior individual-contributor role with meaningful technical ownership and direct access to decision-making. This is an engineering role. You will spend your time inside the technology — identifying weaknesses, designing controls, implementing them and validating that they work. It is not a SOC analyst role, and it is not a GRC or documentation role.
You own security requirements, architecture, standards, baselines, and technical validation. Infrastructure and network engineering owns operation of the underlying infrastructure. In shared areas — firewall policy, segmentation, secure remote access, identity, cloud — the teams design and sustain controls jointly. You will spend your time inside the technology — identifying weaknesses, designing controls, implementing them and validating that they work.
What You Will Work On
- Security engineering across Microsoft 365, Entra ID, Defender, Intune, Active Directory, and Windows environments.
- Conditional Access, MFA, privileged access, identity protection, and device compliance.
- Security architecture and controls in Microsoft 365 GCC High and AWS GovCloud.
- Technical ownership of the vulnerability-management lifecycle, from identification and prioritization through remediation coordination and validation.
- Secure configuration standards and hardening for Windows, Linux, network devices, endpoints, and cloud services.
- Technical partnership with a 24×7 managed SOC/MDR provider. The provider handles continuous monitoring and initial alert triage; you own internal escalation, investigation, containment coordination, and remediation.
- Security requirements for network segmentation, firewall policy, and secure remote access, in partnership with infrastructure and network engineering.
- Cybersecurity across manufacturing, OT, IoT, and CNC environments, balanced against production availability and safety.
- Technical controls supporting NIST SP 800-171 and CMMC Level 2.
- Secure integration of newly acquired companies, facilities, and networks.
- Close partnership with infrastructure and network engineering, platform systems administration, enterprise applications, and site IT support.