Principal Cyber Security Engineer 2026-01646

State of Wyoming

$86K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Technology or related field
  • 1-3 years of progressive work experience in cybersecurity
  • Expertise in CrowdStrike Falcon, Active Directory, and general cybersecurity principles
  • Proficiency in Python and PowerShell for security automation
  • Knowledge of compliance regulations including CJIS, IRS Pub 1075, and NIST 800-53

Responsibilities

  • Lead cybersecurity architecture across all domains for the state
  • Engineer endpoint defense and Zero Trust frameworks
  • Optimize sensor and log ingestion for visibility across environments
  • Respond to complex security incidents as the final escalation point
  • Develop attack timelines and lead crisis containment efforts
  • Automate security workflows through scripting and API integrations
  • Implement compliance-driven infrastructure security best practices

Benefits

  • Flexible remote work options
  • Opportunity to lead statewide cybersecurity initiatives
  • Access to advanced technology and enterprise environments
  • Continuous professional development and mentorship opportunities
  • Participation in a collaborative hybrid work environment
Full Job Description
Salary : $7,184.67 - $7,983.73 Monthly
Location : Cheyenne, WY
Job Type: Permanent Full-time
Remote Employment: Flexible/Hybrid
Job Number:
Department: Wyoming Department of Enterprise Technology Services
Division: Enterprise Technology Services
Opening Date: 06/24/2026
Closing Date: Continuous
FLSA: Determined by Position
Job Classification: CTMG11

Description and Functions
Open Until Filled
GENERAL DESCRIPTION:
The Principal Cyber Security Engineer is the state's primary technical authority for advanced endpoint defense, Zero Trust Architecture (ZTA), overarching cybersecurity architecture, and the resolution of high-complexity security incidents across a unique hybrid ecosystem. This position functions as a senior technical specialist responsible for engineering the enterprise security stack to protect both a progressive Google cloud environment (Google Workspace, GCP) and a robust Windows enterprise infrastructure.
The role handles "hard" incidents requiring advanced forensics and malware analysis, developing bespoke Python scripts and API integrations to bridge the gap between Google Workspace/GCP telemetry, CrowdStrike Falcon, and Active Directory. This position ensures a unified, compliant defensive posture, enabling the state to neutralize sophisticated threats across diverse operating environments, and provides strategic architectural guidance for all state agencies.
ESSENTIAL FUNCTIONS: The listed functions are illustrative only and are not intended to describe every function that may be performed at this job level.
  • Architectural Leadership & CISO Advisory: Serves as the state's lead security architect, defining overarching cybersecurity architecture across all domains, advising the CISO on emerging threats, evaluating enterprise-wide security investments, and setting state-wide technical standards.
  • Endpoint & Zero Trust Engineering: Leads engineering for CrowdStrike Falcon and enterprise Zero Trust frameworks, architecting conditional access policies that securely bridge Google Environments with Active Directory.
  • Infrastructure Optimization: Optimizes sensor and log ingestion across Windows servers, cloud-native workloads, and multi-cloud (GCP/Azure/AWS) environments to ensure 100% visibility.
  • Tier 4 Incident Response: Serves as the final escalation point for the most complex security breaches, performing deep-dive forensics spanning memory analysis on obfuscated Windows malware to anomalous behavioral tracking within Google Workspace audit logs.
  • Containment & Remediation: Reconstructs attack timelines, identifies persistence, and leads technical containment for state-level crises.
  • Security Automation: Utilizes Python, PowerShell, and Bash to automate complex security workflows and builds custom API bridges utilizing Google Workspace Admin SDK, GCP Security Command Center, and CrowdStrike APIs to orchestrate automated response actions.
  • Compliance-as-Code: Designs infrastructure security using IaC (Terraform/Ansible) to ensure all systems meet CJIS, IRS Pub 1075, and NIST 800-53 requirements by default.
  • Infrastructure Hardening: Implements hardening baselines tailored for both cloud-native workloads and Windows systems based on emerging threat intelligence.
  • Threat Modeling & Mentorship: Performs proactive threat modeling on new enterprise systems before deployment and provides technical mentorship to CSOC Analysts and junior engineers.


Qualifications
PREFERENCES:
Preference may be given to candidates with a proven track record of handling high-stakes breaches and managing enterprise-scale security platforms across hybrid Windows/Cloud environments.
Preference may be given to candidates with verifiable project history in custom security tooling and integration.
KNOWLEDGE:
  • Mastery of general cybersecurity architecture, enterprise defense strategies, and unified threat management.
  • Expert knowledge of the CrowdStrike Falcon platform, Real Time Response (RTR), sensor deployment, Windows kernel hardening, and Active Directory security.
  • Deep expertise in securing Google Environments (Google Workspace, Google Cloud Platform (GCP) IAM, Security Command Center) and bridging cloud environments with Active Directory.
  • Expert proficiency in Python and PowerShell for security automation and REST API interaction (especially Google Admin SDK and CrowdStrike APIs).
  • Advanced knowledge of memory forensics, malware analysis, and cloud telemetry hunting via the MITRE ATT&CK framework.
  • Working knowledge of applying CJIS, IRS Pub 1075, and NIST 800-53 controls to both cloud and local assets.
  • Ability to translate complex technical risks into business terms for executive leadership.

MINIMUM QUALIFICATIONS:
Education:

Bachelor's Degree (typically in Computer Technology)

Experience:

1-3 years of progressive work experience (typically in Computer Technology)

OR

Education & Experience Substitution:

4-7 years of progressive work experience (typically in Computer Technology)
Certificates, Licenses, Registrations:

None
Necessary Special Requirements
PHYSICAL WORKING CONDITIONS:
  • Typically, the employee may sit comfortably to perform the work; however, there may be some walking, standing, bending, carrying light items, driving an automobile, etc.
  • Special physical demands are not required to perform the work.


NOTES:
  • FLSA: Nonexempt
  • Successful applicants must pass a comprehensive fingerprint-based background check to comply with CJIS and IRS Pub 1075 access requirements.
  • Must be available for 24/7 on-call rotation and immediate emergency response during state-level cyber incidents.


Supplemental Information
Click to view the State of Wyoming Total Compensation Calculator.

Click to view the State of Wyoming Classification and Pay Structure.

URL:

01

(AA) Which of the following best describes your highest completed level of education to date or within the next three (3) months? (Transcripts may be required.)
  • High School Diploma/GED/or Equivalent
  • Some college Coursework, No Degree Received
  • Associate's Degree
  • Associate's Degree and additional coursework
  • Bachelor's Degree
  • Bachelor's Degree and additional coursework
  • Master's Degree
  • Master's Degree and additional coursework
  • Doctorate Degree
  • Doctorate Degree and additional coursework
  • None of the Above

02

(AA) Which of the following Quarter/Semester credit hours best describes your completed college education to date or within the next three (3) months? (Transcripts may be required.)
  • 45+ Quarter hours/30+ Semester hours
  • 90+ Quarter hours/60+ Semester hours
  • 136+ Quarter hours/91+ Semester hours
  • 180+ Quarter hours/120+ Semester hours
  • 225+ Quarter hours/150+Semester hours
  • N/A

03

(CTMG11)How many years of relevant work experience or transferable skills do you have related to the job description?
  • No relevant experience.
  • Less than two (2) years of relevant experience.
  • Two (2) to less than four (4) years of relevant experience.
  • Four (4) to less than six (6) years of relevant experience.
  • Six (6) or more years of relevant experience.

04

(AA) Describe your relevant experience below.
05

Please describe your experience handling high-stake breaches and managing enterprise-scale security platforms across hybrid Windows/Cloud environments.
  • No relevant experience.
  • Less than two (2) years of relevant experience.
  • Two (2) to less than four (4) years of relevant experience.
  • Four (4) to less than six (6) years of relevant experience.
  • Six (6) or more years of relevant experience.

06

Please describe your experience in custom security tooling and integration.
  • No relevant experience.
  • Less than two (2) years of relevant experience.
  • Two (2) to less than four (4) years of relevant experience.
  • Four (4) to less than six (6) years of relevant experience.
  • Six (6) or more years of relevant experience.

07

(A1) Where did you hear about this opportunity?
  • Government Jobs @www.governmentjobs.com/careers/wyoming
  • Indeed
  • LinkedIn
  • Zip Recruiter
  • Wyoming Workforce Center
  • Other job sites (Wyoming at Work, Monster, etc.)
  • Social Media (Facebook, Twitter, etc.)
  • Newspaper/Newsletter Advertisement
  • Career Fair
  • Human Resources Division
  • Friend or Acquaintance (Not State Employee)
  • Current State Employee
  • Other

08

(A1) If you selected "Current State Employee" please provide the employee's first and last name, and include the department they work for, if known. Please limit this response to only one employee. This employee may be eligible for a Referral Bonus.
09

(A1) If you selected Other, please tell us where you heard about this opportunity.
10

(AA) VETERANS' PREFERENCE DISCLOSURE: PER WYOMING STATUTE, current employees of the State of Wyoming are not eligible for veterans' preference. If you are not a current employee of the State of Wyoming, to be eligible to receive veterans' preference you MUST have been a resident of the State of Wyoming for a period of one (1) year or more at any time prior to submitting this application. I have read and understand the veterans' preference disclosure.
  • Yes
  • No
  • I am not a veteran

11

(AA) VETERANS' PREFERENCE: If you are a war veteran as defined in section 101, Title 38, United States Code or are the surviving spouse of a war veteran who receives survivor benefits from the federal government based on the veteran's military service, and wish to claim veterans' preference, please attach the appropriate documentation substantiating your claim. Indicate below your appropriate veterans' preference status. By requesting veterans' preference, you are certifying that you meet the statutory requirements as described in the above disclosure.
  • Current State Employee
  • Veteran - DD214 Attached
  • Disabled Veteran (10% or more) - DD214 and Veteran's Disability Determination Attached
  • Surviving Spouse of a Deceased Veteran - DD214 and proof of Survivor Benefit Attached
  • None of the above

12

(A2) Please be advised that an incomplete application WILL NOT be considered for employment. An attached resume' is not required and is not an acceptable substitution

Similar Jobs

More Jobs at State of Wyoming

More Information Technology Jobs

Find similar Principal Cyber Security Engineer 2026-01646 jobs: