Cybersecurity Engineer
մարտի 04, 2026
About Us
The Information Systems Agency of Armenia is supporting the creation of the Armenian e-society. In leadership with the Government and the Central Bank of Armenia, our mission is to implement key standards for how public services and digital projects should be delivered. Our guiding standard is the Digital Architecture of Armenia, a Government approved approach that places interoperability, security, and high-quality service delivery as its core pillars. Our team is made up of technology and policy making specialists from a wide variety of sectors, and our aim is to work transparently, and with the participation of the public and private sector, to support Armenia in its ambitions to become a truly electronic society.
About You
You will engineer and operate the security tooling and infrastructure used by the SOC and AM-CERT, with a focus on automation, observability, and resilience. The role blends systems engineering with security engineering: hardening platforms, integrating telemetry, and ensuring services remain available during high-pressure incidents.
Because ISAA is growing, you will also support cross-department initiatives (e.g., secure infrastructure patterns, cloud enablement, service delivery standards) as priorities evolve.
Job Responsibilities
· Design, deploy, and operate secure Linux- and container-based platforms (Docker; Kubernetes is a plus) for security operations and cyber threat intelligence tools.
· Deploy and maintain security platforms and services such as MISP, OpenCTI, and related integrations/APIs and threat feeds.
· Implement secure configuration, patching, vulnerability management, and secrets management across the platform stack.
· Build and maintain logging and telemetry pipelines (system, network, application) and integrate with SIEM and monitoring tools.
· Engineer core infrastructure services: TLS, reverse proxies, load balancing, DNS, VPN access, and secure remote administration.
· Implement backups, disaster recovery and business continuity measures, and regularly test restoration procedures.
· Automate provisioning and operations using infrastructure-as-code and configuration management tools.
· Support incident response by providing technical investigation support, rapid containment actions, and post-incident hardening improvements.
· Maintain clear documentation, runbooks, and operational standards for long-term maintainability.
Qualifications
· 2+ years of hands-on experience in Linux systems administration or platform engineering (Debian/Ubuntu/CentOS/AlmaLinux or similar).
· Practical experience with Docker (building images, docker-compose, security and performance tuning).
· Strong understanding of networking fundamentals (TCP/IP, DNS, HTTP/S, proxies, VPN concepts).
· Scripting skills in Bash and at least basic Python for automation and working with APIs.
· Experience implementing hardening, least privilege access control, and secure remote access.
· Ability to troubleshoot complex issues under time pressure and communicate clearly with SOC/IR teams and service owners.
Preferred experience
· Experience with SIEM/log processing stacks (e.g., ELK/OpenSearch) and security event pipelines.
· Experience with virtualization and/or cloud environments (VMware; AWS/Azure/GCP).
· Familiarity with security tools such as IDS/IPS, EDR, firewalls, and network monitoring.
· Experience with configuration management and infrastructure-as-code (e.g., Ansible, Terraform).
· Hands-on experience with Kubernetes and container runtime security.
· Understanding of SOC processes and incident response workflows.
Certifications we value
Certifications are an advantage (not required). Examples include:
· CompTIA Security+ or CySA+
· Linux certifications (e.g., Linux+, RHCSA/RHCE)
· Cloud security certifications (AWS/Azure)
· GIAC, OSCP, or equivalent security certifications aligned to your focus area
To Apply
Please send your CV to hr@isaa.am, ensuring you mention the position name in the subject line of the email.