Cybersecurity Engineer
ABOUT THE ROLE
The Cybersecurity Engineer is responsible for independently executing defined security engineering and operational work across Accela’s endpoints, identities, cloud platforms, and enterprise systems. This role applies established security standards and practices to troubleshoot issues, maintain technical controls, analyze findings, implement solutions, and identify opportunities to improve how the team operates.
The Cybersecurity Engineer partners with IT, Engineering, DevOps, IAM, Compliance, and other teams to maintain effective technical safeguards while supporting business continuity. The role is expected to independently manage routine and moderately complex work, make sound decisions within established practices, and escalate highly complex or unfamiliar matters to senior engineers or security leadership as appropriate.
The ideal candidate brings strong enterprise IT experience, hands-on exposure to security technologies, and the ability to take ownership of assigned work from identification through resolution. This individual is also expected to identify recurring issues, recommend process or automation improvements, and continue building technical depth across security tooling, cloud platforms, and enterprise systems.
SPECIFIC RESPONSIBILITIES
Independently manage endpoint security and compliance activities across Windows, macOS, and Linux environments, including security baselines, EDR and antivirus agents, disk encryption, MDM, and operating system hardening.
Administer and troubleshoot identity and access controls, including account provisioning and deprovisioning, SSO, MFA, conditional access, and authentication issues.
Monitor and analyze alerts and logs within SIEM, EDR, and related platforms, perform initial triage, take appropriate action within established procedures, and escalate complex findings when necessary.
Conduct initial technical investigations by gathering and analyzing evidence, documenting findings, and recommending appropriate next steps.
Manage assigned vulnerability-management activities, including reviewing scan results, evaluating severity and exploitability, coordinating remediation with system owners, and tracking work through completion.
Perform periodic access reviews, recertification activities, privileged-access reviews, and third-party access validation to support least-privilege practices.
Own defined workstreams within security technology implementations, including planning, testing, configuration, pilot deployments, documentation, and rollout support.
Maintain assigned technical controls and support evidence collection and control activities associated with SOC 2, HIPAA, ISO 27001, NIST CSF, and other applicable frameworks.
Develop and maintain scripts or automation using tools such as PowerShell, Bash, or Python to reduce manual effort and improve operational consistency.
Independently troubleshoot routine and moderately complex technical issues and coordinate with appropriate teams to drive issues through resolution.
Partner with IT, Engineering, DevOps, IAM, and Platform teams to validate technical findings, test configuration changes, and provide security guidance before broader deployment.
Identify recurring operational issues and recommend improvements to processes, tooling, configurations, automation, or documentation.
Create and maintain technical documentation, runbooks, workflows, and knowledge resources that enable consistent execution and effective knowledge sharing.
Use operational data and technical findings to identify trends and recommend improvements to security practices and processes.
Contribute to continuous improvement of team workflows by identifying opportunities to simplify work, improve consistency, and reduce repetitive manual activities.
Maintain current knowledge of evolving security technologies, cloud platforms, industry practices, and emerging technical threats.
REQUIRED QUALIFICATIONS
3+ years of experience in enterprise IT, endpoint operations, identity and access management, security operations, systems administration, or a related technical field.
Hands-on experience maintaining and troubleshooting endpoint technologies across Windows, macOS, and Linux, including EDR or antivirus agents, MDM, disk encryption, and operating system configurations.
Working knowledge of identity and access management technologies and practices, including Active Directory, SSO, MFA, conditional access, and account lifecycle management.
Experience reviewing technical logs, troubleshooting alerts, conducting initial investigations, or supporting vulnerability-management activities.
Experience working with enterprise platforms such as Microsoft 365, Google Workspace, Salesforce, or similar SaaS environments and understanding their identity and access models.
Experience using PowerShell, Bash, Python, or similar scripting and command-line tools for troubleshooting or automating routine tasks.
Demonstrated ability to independently manage assigned technical work, determine appropriate next steps, and escalate when issues exceed established scope or expertise.
Ability to identify recurring issues and recommend practical improvements to tools, workflows, documentation, or technical processes.
Strong analytical and problem-solving skills with the ability to evaluate technical information and make sound decisions.
Strong documentation skills, including experience creating and maintaining runbooks, workflows, technical procedures, or knowledge resources.
Ability to balance technical requirements with operational and business needs.
Strong written and verbal communication skills with demonstrated ability to collaborate effectively across technical and business teams.
DESIRED QUALIFICATIONS
Experience securing SaaS platforms in regulated, public-sector, or customer-trust-driven environments.
Experience supporting SOC 2, HIPAA, ISO 27001, GovRAMP, PCI DSS, NIST 800-53, or similar compliance frameworks.
Experience partnering directly with security, IAM, DevOps, CloudOps, or platform engineering teams in a complex enterprise environment.
Hands-on experience with SIEM and EDR platforms, log analysis, alert triage, and vulnerability-management tools.
Familiarity with Azure, AWS, or GCP and cloud security concepts such as IAM roles, network controls, logging, and configuration management.
Experience implementing or supporting security technology deployments and technical configuration changes.
Experience participating in an on-call or security operations rotation.
Relevant certifications such as CompTIA Security+, SSCP, Microsoft SC-200, AZ-500, or equivalent technical certifications.
ABOUT ACCELA
For nearly 20 years, Accela has been an industry leader in designing and delivering government software to improve efficiency, increase citizen engagement and enable the development of thriving communities. Today, citizens are savvy to how services should be delivered, and expect a consistently convenient, openly transparent view into their local government. While government agencies struggle to do more with less, our mission has never been more critical. Accela provides a robust, cloud-based platform of government software solutions that accelerate growth, efficiency, and transparency in communities of all sizes. From planning, to building, to service request management and more, Accela’s SaaS offerings level the playing field for small and medium governments and enable smaller agencies to leverage larger city technologies. Our open and flexible technology helps agencies address specific needs today, while ensuring they are well prepared for the emerging challenges of the future.
OUR COMMITMENT TO DIVERSITY, EQUITY, AND INCLUSION
Accela believes in developing and nurturing a workplace community where our differences are celebrated, and everyone feels a sense of psychological safety and belonging. Accela is committed to putting resources and attention towards evolving our practices, policies, and philosophies to enable diversity to thrive and to support equity in opportunity for everyone.
COMPENSATION AND WELL-BEING
The annual base salary range for this full-time position is $90,000-$110,000 (less applicable taxes). The actual annual base salary offered may be adjusted based on a variety of factors, including but not limited to, location, education, skills, training, and experience. In addition to an annual base salary, this position is eligible for an annual bonus target. This is a discretionary bonus awarded based on company and individual goal achievement.