IT - ADMIN - Security Architect - Consultant - 10794

Info Way Solutions LLC

Columbia, SC(remote)

JOB DETAILS
SKILLS
Application Programming Interface (API), Automation, Bash Scripting, CISA - Certified Information Systems Auditor, CISSP - Certified Information Systems Security Professional, Communication Skills, Computer Security, Customer Support/Service, Firewalls, GPEN - GIAC Penetration Tester, IR (Infrared), Identify Issues, Incident Response, Information Systems/Technology IS/IT Administration, Information Technology & Information Systems, Information/Data Security (InfoSec), JSON, Project Estimates, Python Programming/Scripting Language, REST (Representational State Transfer), Reporting Dashboards, Reporting Skills, Scripting (Scripting Languages), Security Architecture, Security Consulting, Security Information and Event Management (SIEM), Security Monitoring, Technical Support, Telecommunications, Use Cases, Windows PowerShell
LOCATION
Columbia, SC(remote)
POSTED
30+ days ago

JOB_DESCRIPTION

Client : State of South Carolina (SOSC)

Job Title : IT - ADMIN - Security Architect - Consultant - 10794

Location : Fully Remote



Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed
Duration of the Contract: 12 months
Possibility for Extension: Yes


SCOPE OF THE PROJECT: THE POSITION WILL WORK AS A CONSULTING SECURITY ORCHESTRATION, AUTOMATION, AND RESPONSE ENGINEER WITHIN THE DIVISION OF INFORMATION SECURITY. THIS ROLE WILL FOCUS ON PLAYBOOK DEVELOPMENT AND ORCHESTRATION, WORKFLOW AUTOMATION, AND LOGIC OPTIMIZATION WITHIN THE STATE

SOAR PLATFORM. THEY WILL ALSO BUILD AND MAINTAIN INTEGRATIONS BETWEEN THE STATE SOAR PLATFORM, SIEM, EDR, FIREWALLS, AND OTHER NECESSARY SECURITY TOOLS.
ENGAGING DIRECTLY WITH STATE AGENCIES TO PROMOTE, SUPPORT, AND IMPROVE ADOPTION OF CENTRALIZED SECURITY SERVICES IS A KEY FOCUS. THE ENGAGEMENT IS EXPECTED TO BE NEEDED FOR 12 MONTHS WITH THE POSSIBILITY OF EXTENSION.

POSITION TITLE: SECURITY ARCHITECT – CONSULTANT
PRE-EMPLOYMENT CHECKS (drug, credit, criminal, motor vehicle)?
DRUG, DRIVING, CREDIT, CRIMINAL, E-VERIFY, SLED

DAILY DUTIES / RESPONSIBILITIES:
PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER
HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).
• PROVIDE TECHNICAL EXPERTISE AND EXPERIENCE IN CREATING EFFICIENT AUTOMATION WORKFLOWS.
• DEVELOP, IMPLEMENT AUTOMATIONS AND OPTIMIZE EXISTING AUTOMATIONS IN RESPONSE TO SECURITY ALERTS AND INCIDENTS.
• BUILD AND MAINTAIN INTEGRATIONS WITH THE SOAR PLATFORM.
• CREATE CUSTOM SCRIPTS WHEN REQUIRED TO PROVIDE FUNCTIONALITY NOT SUPPORTED OUT OF THE BOX INTEGRATIONS.
• DOCUMENT PROCESSES, RUNBOOKS, AND TROUBLESHOOTING STEPS RELATED TO THE SOAR AND INTEGRATIONS.
• PROACTIVELY COORDINATE WITH ENGINEERING, SOC, AND IR SUPPORT AS NEEDED TO MEET GOALS.
• OTHER DUTIES AS NEEDED.

ADDITIONAL SKILLS/DUTIES:
• EXPERIENCE WITH DASHBOARD CREATION AND REPORTING.
• EXCELLENT COMMUNICATION AND CUSTOMER SERVICE SKILLS FOR AGENCY-FACING ENGAGEMENT.

PREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE):
• EXPERIENCE CREATING AUTOMATIONS WITHIN THE CORTEX XSOAR PLATFORM.
• KNOWLEDGE OF SECURITY MONITORING USE CASES AND INCIDENT RESPONSE SUPPORT.
• RESOURCES LOCAL TO COLUMBIA, SOUTH CAROLINA OR SURROUNDING CITY IN SOUTH CAROLINA ARE PREFERRED

REQUIRED EDUCATION/CERTIFICATIONS:
• BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
• EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
• FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
• 5+ YEARS OF EXPERIENCE WITH AUTOMATION PLATFORMS OR SOAR SOLUTIONS.
• STRONG SCRIPTING AND AUTOMATION SKILLS (PYTHON, BASH, POWERSHELL, OR SIMILAR).
• UNDERSTANDING OF REST APIS, JSON, AND YAML.
• FAMILIARITY WITH MITRE Telecommunication & CK FRAMEWORK
• EXPERIENCE IN WORKING IN MULTI- TENANCY ENVIRONMENT; EXPERIENCE IN MULTI-AGENCY OR ENTERPRISE SERVICE PROJECTS.

PREFERRED EDUCATION/CERTIFICATIONS:
• CISSP, CISA, CISO OR EQUIVALENT ADVANCED SECURITY CERTIFICATION.
• ADDITIONAL RELEVANT CERTIFICATIONS (E.G., CEH, OSCP, GPEN).
• VENDOR CERTIFICATIONS IN SOAR OR AUTOMATION TECHNOLOGIES.

About the Company

I

Info Way Solutions LLC