Novalink Solutions LLC logo

Security Architect - Consultant

Novalink Solutions LLC

  • Columbia, SC
  • 4 days ago
  • Remote

    Highlights

    THIS POSITION WILL SERVE AS A CONTRACT SECURITY ENGINEER WITHIN THE DEPARTMENT OF ADMINISTRATION’S DIVISION OF INFORMATION SECURITY. THE SUCCESSFUL CANDIDATE WILL SHOW EXTENSIVE EXPERIENCE SUPPORTING SECURITY AUTOMATION, CUSTOM TOOL DEVELOPMENT, IDENTITY AND ACCESS MANAGEMENT, LINUX SYSTEMS AND A BROAD RANGE OF ENTERPRISE SEC...

    Numbers & Facts

    LocationColumbia, SC (
    Remote
    )
    IndustryStaffing/Employment Agencies
    Company Size20 to 49 employees
    Year Founded2004
    Websitehttp://www.novalink-solutions.com/

    Description

    THIS POSITION WILL SERVE AS A CONTRACT SECURITY ENGINEER WITHIN THE
    DEPARTMENT OF ADMINISTRATION’S DIVISION OF INFORMATION SECURITY.
    THE SUCCESSFUL CANDIDATE WILL SHOW EXTENSIVE EXPERIENCE
    SUPPORTING SECURITY AUTOMATION, CUSTOM TOOL DEVELOPMENT,
    IDENTITY AND ACCESS MANAGEMENT, LINUX SYSTEMS AND A BROAD RANGE
    OF ENTERPRISE SECURITY TECHNOLOGIES. THIS CONTRACTOR WILL WORK
    WITH A LARGE ENTERPRISE SECURITY TEAM AND ASSIST THE SECURITY
    AUTOMATIONS ARCHITECT, SECURITY ARCHITECTS, ENGINEERS, ANALYSTS
    AND INCIDENT RESPONDERS WITH THE DESIGN, DEVELOPMENT,
    IMPLEMENTATION, INTEGRATION AND CONTINUOUS IMPROVEMENT OF
    SECURITY TOOLS, AUTOMATIONS, SYSTEMS AND SERVICES SUPPORTING
    MULTIPLE STATE AGENCIES.
    SUCCESSFUL CANDIDATE: THIS CONTRACTOR WILL BE PRIMARILY FOCUSED
    ON SECURITY ENGINEERING, AUTOMATION, SCRIPTING, TOOL DEVELOPMENT,
    SYSTEM INTEGRATION AND OPERATIONAL SUPPORT WHILE ALSO PROVIDING
    IMPORTANT SUPPORT FOR IAM, LINUX-BASED SECURITY SENSORS, DSPM, ASM,
    VULNERABILITY MANAGEMENT, SIEM, XDR, LOGGING, MONITORING AND
    OTHER EVOLVING SECURITY TECHNOLOGIES. THE ROLE REQUIRES HANDS-ON
    EXPERIENCE SUPPORTING BOTH SECURITY ENGINEERING AND SECURITY
    OPERATIONS, INCLUDING INTERNAL APPLICATIONS, APIS, SDKS, DASHBOARDS,
    COMMAND-LINE TOOLS, INCIDENT RESPONSE AUTOMATIONS, CVE ANALYSIS,
    ACCESS CONTROLS, PLATFORM TROUBLESHOOTING, SYSTEM
    ADMINISTRATION, DOCUMENTATION AND ANALYST ENABLEMENT. THE
    CANDIDATE MUST BE ABLE TO SUPPORT STRATEGIC PLANNING, SOLUTION
    DESIGN, DEVELOPMENT, IMPLEMENTATION, HSTR, TROUBLESHOOTING,
    PERFORMANCE OPTIMIZATION AND CONTINUOUS IMPROVEMENT OF SECURE
    SYSTEMS AND SERVICES IN A RAPIDLY CHANGING ENVIRONMENT.
    MANDATORY SCREENING REQUIREMENTS: THESE REQUIREMENTS ARE
    STRICTLY ENFORCED AND NON-NEGOTIABLE. NO EXCEPTIONS CAN BE
    GRANTED. CANDIDATES WHO CANNOT PASS THESE REQUIREMENTS WILL NOT
    BE ELIGIBLE FOR HIRE. ALL APPLICANTS MUST SUCCESSFULLY PASS A FULL
    CREDIT CHECK AND CRIMINAL BACKGROUND CHECK DURING THE INITIAL
    HIRING PROCESS. ONCE ONBOARD, THEY MUST OBTAIN AND RETAIN ANNUAL
    CJIS CERTIFICATION AS PART OF THE ONGOING EMPLOYMENT PROCESS.
    OTHER: THIS POSITION IS 100% REMOTE AND WILL PARTICIPATE IN AN ON-CALL
    ROTATION SUPPORTING THE 24X7 SOC. AFTER-HOURS MAINTENANCE,
    INCIDENT ESCALATION SUPPORT AND OPERATIONAL HANDOFFS WILL BE
    REQUIRED AS NEEDED. PREFERENCE WILL BE SHOWN FOR CANDIDATES
    PRESENTLY RESIDING INSIDE THE STATE OF SOUTH CAROLINA THAT CAN
    PHYSICALLY ASSIST WITH EQUIPMENT AND HARDWARE MAINTENANCE AS
    NEEDED.
    Daily Duties / Responsibilities:
    THIS POSITION IS 100% REMOTE AND WILL PARTICIPATE IN AN ON-CALL ROTATION
    SUPPORTING A 24X7 SECURITY OPERATIONS CENTER SERVING MULTIPLE STATE
    AGENCIES. OTHER AFTER-HOURS WORK MAY BE REQUIRED AS NEEDED.
    PRIMARY RESPONSIBILITIES:
    PRIMARILY ASSIST IN THE PLANNING, DESIGN, DEVELOPMENT, DEPLOYMENT,
    ADMINISTRATION AND OPERATIONAL SUPPORT OF ENTERPRISE SECURITY
    AUTOMATIONS AND CUSTOM SECURITY TOOLS, INCLUDING:
    PYTHON-BASED AUTOMATIONS, INTERNAL WEB APPLICATIONS, APIS, SDKS, SCRIPTS,
    DASHBOARDS, COMMAND-LINE UTILITIES AND SYSTEM INTEGRATIONS
    AUTOMATED WORKFLOWS FOR ALERT ENRICHMENT, TRIAGE, INCIDENT RESPONSE,
    CASE MANAGEMENT, NOTIFICATIONS, CONTAINMENT, ESCALATION AND REPORTING
    CUSTOM TOOLS TO ASSIST WITH CVE VETTING, VULNERABILITY ENRICHMENT,
    PRIORITIZATION, TRACKING AND SECURITY DECISION SUPPORT
    SECONDARY RESPONSIBILITIES:
    -- SECONDARILY ASSIST IN THE PLANNING, DESIGN, DEPLOYMENT AND OPERATIONAL
    SUPPORT OF A BROAD RANGE OF SECURITY PLATFORMS, INCLUDING: DSPM, ASM,
    IAM, VULNERABILITY MANAGEMENT, EMAIL SECURITY, ENDPOINT SECURITY, SIEM,
    XDR, SOAR, LOGGING, MONITORING, NETWORK SECURITY, CLOUD SECURITY AND
    THREAT INTELLIGENCE TECHNOLOGIES INTEGRATIONS WITH TICKETING, CASE
    MANAGEMENT, NOTIFICATION, IDENTITY, DATA SOURCES, APIS, SDKS AND OTHER
    ENTERPRISE SYSTEMS AS NEEDED SUPPORT FOR TECHNOLOGIES SUCH AS PALO ALTO
    NETWORKS, PROOFPOINT, TENABLE, CRIBL, WHATSUP GOLD AND OTHER CURRENT
    OR FUTURE SECURITY PRODUCTS
    -- DEVELOP, TEST, DEPLOY AND MAINTAIN AUTOMATED SECURITY WORKFLOWS,
    APPLICATIONS AND SCRIPTS USING PYTHON, POWERSHELL, BASH, REST APIS, JSON,
    YAML, VENDOR SDKS AND OTHER APPROPRIATE TECHNOLOGIES.
    -- ASSIST WITH IDENTITY AND ACCESS MANAGEMENT FUNCTIONS, INCLUDING USER
    PROVISIONING, DEPROVISIONING, ACCESS REVIEWS, ROLE-BASED ACCESS CONTROL,
    SERVICE ACCOUNTS, API CREDENTIALS, AUTHENTICATION, AUTHORIZATION AND
    IDENTITY-BASED SYSTEM INTEGRATIONS.
    -- DEPLOY, CONFIGURE, PATCH, MONITOR, OPTIMIZE AND TROUBLESHOOT LINUX
    SYSTEMS SUPPORTING SECURITY SENSORS, COLLECTORS, CONNECTORS,
    APPLICATIONS, CONTAINERS AND DATA-PROCESSING SERVICES, INCLUDING DOCKER-
    BASED ENVIRONMENTS.
    -- SUPPORT SECURITY ARCHITECTS, ENGINEERS, SOC ANALYSTS, INCIDENT
    RESPONDERS AND AGENCY CUSTOMERS THROUGH PLATFORM TROUBLESHOOTING,
    AUTOMATION DEVELOPMENT, SYSTEM INTEGRATION, TECHNICAL ESCALATION,
    KNOWLEDGE TRANSFER AND OPERATIONAL HANDOFFS.
    -- MONITOR AND REPORT ON AUTOMATION HEALTH, APPLICATION AVAILABILITY,
    SYSTEM PERFORMANCE, SENSOR STATUS, INTEGRATION FAILURES, API ERRORS,
    VULNERABILITY STATUS, PLATFORM ISSUES AND OTHER SECURITY ENGINEERING AND
    OPERATIONAL METRICS.
    -- ENSURE HIGH AVAILABILITY, RESILIENCE, BACKUP, RECOVERY, PATCHING, LIFECYCLE
    MANAGEMENT, SECURE CONFIGURATION AND CONTROLLED CHANGE PROCESSES
    FOR SECURITY TOOLS, LINUX SYSTEMS, APPLICATIONS, AUTOMATIONS AND
    SUPPORTING SERVICES.
    -- COLLABORATE WITH SECURITY ARCHITECTS, ENGINEERS, ANALYSTS, INCIDENT
    RESPONDERS AND AGENCY STAKEHOLDERS TO ALIGN SOLUTIONS WITH BUSINESS
    GOALS, INDUSTRY-STANDARD FRAMEWORKS, REGULATORY REQUIREMENTS AND
    ORGANIZATIONAL RISK TOLERANCE.
    Required Skills
    (Ranked by Importance):
    -- BROAD HANDS-ON SECURITY
    ENGINEERING EXPERIENCE
    SUPPORTING MULTIPLE
    CYBERSECURITY TECHNOLOGIES,
    SYSTEMS, INTEGRATIONS AND
    OPERATIONAL FUNCTIONS.
    -- Experience developing security
    automations, scripts, integrations, utilities
    and custom tools using Python.
    -- Strong experience troubleshooting
    complex technical issues across
    applications, security platforms, operating
    systems, networks, identity services and
    integrations.
    -- LINUX SYSTEM DEPLOYMENT,
    CONFIGURATION, PATCHING,
    SCRIPTING, SERVICE MANAGEMENT,
    MONITORING, TROUBLESHOOTING AND
    LIFECYCLE MANAGEMENT
    -- Experience developing automation and
    response workflows using Python,
    PowerShell, Bash, REST APIs, JSON,
    YAML and vendor SDKs.
    Preferred Skills
    (Ranked by Importance):
    -- HANDS-ON EXPERIENCE
    SERVING AS A SECURITY
    ENGINEERING GENERALIST IN A
    LARGE, MULTI-TENANT, SHARED-
    SERVICES OR MANAGED-SERVICE
    ENVIRONMENT.
    -- Hands-on Linux, Docker, security
    sensor, monitoring, scripting and
    platform administration
    experience.
    -- Experience supporting SOC
    analysts, security engineers,
    incident responders, agency
    customers and rapidly changing
    operational priorities.
    -- Familiarity with Palo Alto
    Networks, Proofpoint, Tenable,
    Cribl, WUG or other enterprise
    security technologies and
    experience developing playbooks,
    runbooks, procedures and
    technical documentation
    -- Experience supporting IAM, DSPM, ASM,
    vulnerability management, email security,
    endpoint security, SIEM, SOAR, logging,
    monitoring, cloud security and other
    enterprise security technologies.
    -- Strong understanding of enterprise
    security architecture, incident response,
    networking, access control, secure software
    development, systems administration and
    industry-standard cybersecurity frameworks.
    Required Education:
    -- BACHELOR'S DEGREE IN AN INFORMATION
    TECHNOLOGY, COMPUTER SCIENCE, SOFTWARE
    ENGINEERING OR INFORMATION SECURITY
    RELATED FIELD
    -- EIGHT YEARS OF RELEVANT WORK EXPERIENCE
    (EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF
    EDUCATION)
    -- FIVE YEARS OF EXPERIENCE IN SUPPORTING
    LARGE IT ENVIRONMENTS, SECURITY SYSTEMS,
    SOFTWARE DEVELOPMENT AND/OR SYSTEM
    DEPLOYMENTS
    Preferred Certifications:
    CISSP, Security+, GIAC OR OTHER
    RELEVANT CYBERSECURITY
    CERTIFICATION
    LINUX, PYTHON, CLOUD, IAM OR
    OTHER RELEVANT SECURITY
    ENGINEERING OR PLATFORM
    CERTIFICATION
    Work Address: Choose an item.
    Identify on-site, hybrid or fully remote?
    • If hybrid, provide telecommuting
    schedule.
    • Fully remote
    THIS POSITION IS HOUSED 100% REMOTE AND WILL
    PARTICIPATE IN A MONTHLY ON-CALL ROTATION
    SUPPORTING THE 24X7 SOC. AFTER-HOURS
    MAINTENANCE, INCIDENT ESCALATION SUPPORT AND
    OPERATIONAL HANDOFFS MAY BE REQUIRED AS
    NEEDED. ALL WORK MUST BE PERFORMED WITHIN
    THE CONTIGUOUS UNITED STATES. PREFERENCE
    WILL BE GIVEN TO LOCAL SOUTH CAROLINA
    BASED CANDIDATES CAPABLE OF FIELDING
    SERVICES IN-STATE. CORE HOURS OF 0830-
    0500 ET.
    VPN or state equipment?
    VPN
    Additional Skills/Duties:
    -- Experience integrating
    enterprise technologies using
    APIs, SDKs, web services,
    structured data formats,
    authentication methods and
    vendor-supported interfaces.
    --Experience developing or
    supporting internal web
    applications, APIs, dashboards,
    databases, command-line tools
    and related software
    components.
    -- Advanced Python development
    experience and familiarity with
    full-stack development, internal
    web applications, APIs, databases,
    source control, testing and
    software deployment practices.

    Requirements

    Required Skills

    Skill Type
    Skill Name
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Bachelors Degree in an Information Technology, Computer Science, Software Engineering or Information Security related field; 8+ years of relevant experience may be substituted in lieu of education
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • 5+ years of experience in supporting large IT environments, security systems, software development, and/or system deployments
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions.
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Experience developing security automations, scripts, integrations, utilities and custom tools using Python
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting and lifecycle management
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise security technologies
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks

    Preferred Skills

    Skill Type
    Skill Name
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • CISSP, Security+, GIAC or other relevant cybersecurity certification
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Linux, Python, Cloud, IAM or other relevant security engineering or platform certification
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared services, or managed service environment
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities.
  •   Certification
  •   Education
  •   License
  •   Other
  •   Skill
  •  
  • Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation


    About Company

    Novalink, founded in 2003 , is a leading consulting and staffing company serving clients in public and private sectors in Information Technology, Telecommunications (IT/Telecom), Technical Networks, Finance, and Administration. With government agencies as our primary clientele, our team has a proven track record of success in providing temporary personnel solutions and managing government deliverables-based projects over the past 20 years.

    Similar Jobs