Security Architect - Consultant Job at Novalink Solutions LLC, Columbia, SC

R3JJSFVMN0RaRzRWdDIyekE3M1djWFA1SkE9PQ==
  • Novalink Solutions LLC
  • Columbia, SC

Job Description

THE POSITION WILL WORK AS A CONSULTING SECURITY

ORCHESTRATION, AUTOMATION, AND RESPONSE ENGINEER WITHIN THE DIVISION OF

INFORMATION SECURITY. THIS ROLE WILL FOCUS ON PLAYBOOK DEVELOPMENT AND

ORCHESTRATION, WORKFLOW AUTOMATION, AND LOGIC OPTIMIZATION WITHIN THE STATE

SOAR PLATFORM. THEY WILL ALSO BUILD AND MAINTAIN INTEGRATIONS BETWEEN THE

STATE SOAR PLATFORM, SIEM, EDR, FIREWALLS, AND OTHER NECESSARY SECURITY TOOLS.

ENGAGING DIRECTLY WITH STATE AGENCIES TO PROMOTE, SUPPORT, AND IMPROVE ADOPTION

OF CENTRALIZED SECURITY SERVICES IS A KEY FOCUS. THE ENGAGEMENT IS EXPECTED TO BE

NEEDED FOR 12 MONTHS WITH THE POSSIBILITY OF EXTENSION.

POSITION TITLE: SECURITY ARCHITECT – CONSULTANT

PRE-EMPLOYMENT CHECKS (drug, credit, criminal, motor vehicle)?

DRUG, DRIVING, CREDIT, CRIMINAL, E-VERIFY, SLED

DAILY DUTIES / RESPONSIBILITIES:

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER

HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

• PROVIDE TECHNICAL EXPERTISE AND EXPERIENCE IN CREATING EFFICIENT

AUTOMATION WORKFLOWS.

• DEVELOP, IMPLEMENT AUTOMATIONS AND OPTIMIZE EXISTING AUTOMATIONS IN

RESPONSE TO SECURITY ALERTS AND INCIDENTS.

• BUILD AND MAINTAIN INTEGRATIONS WITH THE SOAR PLATFORM.

• CREATE CUSTOM SCRIPTS WHEN REQUIRED TO PROVIDE FUNCTIONALITY NOT

SUPPORTED OUT OF THE BOX INTEGRATIONS.

• DOCUMENT PROCESSES, RUNBOOKS, AND TROUBLESHOOTING STEPS RELATED TO THE

SOAR AND INTEGRATIONS.

• PROACTIVELY COORDINATE WITH ENGINEERING, SOC, AND IR SUPPORT AS NEEDED

TO MEET GOALS.

• OTHER DUTIES AS NEEDED.

ADDITIONAL SKILLS/DUTIES:

• EXPERIENCE WITH DASHBOARD

CREATION AND REPORTING.

• EXCELLENT COMMUNICATION AND

CUSTOMER SERVICE SKILLS FOR

AGENCY-FACING ENGAGEMENT.

PREFERRED SKILLS (RANK IN ORDER OF

IMPORTANCE):

• EXPERIENCE CREATING

AUTOMATIONS WITHIN THE CORTEX

XSOAR PLATFORM.

• KNOWLEDGE OF SECURITY

MONITORING USE CASES AND

INCIDENT RESPONSE SUPPORT.

• RESOURCES LOCAL TO COLUMBIA,

SOUTH CAROLINA OR SURROUNDING

CITY IN SOUTH CAROLINA ARE

PREFERRED

REQUIRED EDUCATION/CERTIFICATIONS:

• BACHELOR'S DEGREE IN AN

INFORMATION TECHNOLOGY

OR INFORMATION SECURITY

RELATED FIELD

• EIGHT YEARS OF RELEVANT

WORK EXPERIENCE MAY BE

SUBSTITUTED IN LIEU OF

EDUCATION

• FIVE YEARS OF EXPERIENCE IN

SUPPORTING LARGE IT

ENVIRONMENTS AND/OR

SYSTEM DEPLOYMENTS

• 5+ YEARS OF EXPERIENCE WITH

AUTOMATION PLATFORMS OR SOAR

SOLUTIONS.

• STRONG SCRIPTING AND

AUTOMATION SKILLS (PYTHON,

BASH, POWERSHELL, OR SIMILAR).

• UNDERSTANDING OF REST APIS,

JSON, AND YAML.

• FAMILIARITY WITH MITRE ATT & CK

FRAMEWORK

• EXPERIENCE IN WORKING IN MULTI-

TENANCY ENVIRONMENT;

EXPERIENCE IN MULTI-AGENCY OR

ENTERPRISE SERVICE PROJECTS.

PREFERRED EDUCATION/CERTIFICATIONS:

• CISSP, CISA, CISO OR EQUIVALENT

ADVANCED SECURITY

CERTIFICATION.

• ADDITIONAL RELEVANT

CERTIFICATIONS (E.G., CEH, OSCP,

GPEN).

• VENDOR CERTIFICATIONS IN

SOAR OR AUTOMATION

TECHNOLOGIES.

Requirements

Required Skills

Skill Type

Skill Name

Certification Education License Other Skill  

Bachelors Degree in an Information Technology or Information Security related field; 8+ years of experience in security architecture may be substituted in lieu of education

Certification Education License Other Skill  

5+ years of experience with automation platforms or SOAR solutions

Certification Education License Other Skill  

5+ years of experience in supporting large IT environments and/or system deployments

Certification Education License Other Skill  

Experience with scripting and automation (Python, Bash, PowerShell, or similar)

Certification Education License Other Skill  

Experience with Rest API's, JSON, and YAML

Certification Education License Other Skill  

Familiarity with MITRE ATT & CK framework

Certification Education License Other Skill  

Experience working in multi-tenancy environment; multi-agency or enterprise service projects

Preferred Skills

Skill Type

Skill Name

Certification Education License Other Skill  

CISSP, CISA, CISO or equivalent advanced security certifications (CEH, OSCP, GPEN)

Certification Education License Other Skill  

Vendor certifications in SOAR or Automation technologies

Certification Education License Other Skill  

Experience creating automations within the Cortex XSOAR platform

Certification Education License Other Skill  

Knowledge of security monitoring use cases and incident response support.

Certification Education License Other Skill  

Resources local to Columbia, SC or surrounding city in South Carolina are preferred

Attachments


Job Tags

Full time, Work experience placement, Local area, Remote work

Similar Jobs

R2Net Inc - JamesAllen.com

Jeweler Job at R2Net Inc - JamesAllen.com

 ...opportunities available on our other career site pages. Click here to link to our careers page! Our banner is part of Signet Jewelers, a purpose-driven company who believes love inspires love and whose mission it is to enable all people to Celebrate Life and Express... 

Mayo Clinic

Vascular Interventional Radiologist Job at Mayo Clinic

 ...secure your future. Responsibilities Mayo Clinic in Rochester, MN seeks a CAQ or CAQ-eligible fellowship trained Interventional Radiologist who desires an advanced clinical practice with opportunities forresearch and education. Our 15 dedicated... 

Files.com

Recruiter Job at Files.com

 ...+ premium benefits Lets be honest: at most companies, recruiting means shuffling resumes, scheduling calls, and pushing candidates...  ...keeps you right in the action, close to the citys best restaurants, music, and energy. Our space offers a beautiful 26th floor roof... 

Portable Blowout

Customer Service Representative & Data Entry Job at Portable Blowout

Our Growing E-commerce company seeks full-time associates to join our growing team. We are seeking a reliable and detail-oriented CSR/Entry Level Data Entry Clerk. The ideal candidate will be responsible for answering customer emails, filing claims with carriers and...

Eastern New Mexico University

Advisor Job at Eastern New Mexico University

 ...and Medicare. The University also offers supplemental retirement plans. 403b and 457b plans are available through TIAA/CREF, AIG VALIC, Roth 403b and 457b plans are also available through TIAA/CREF. Paid Time Off Full time exempt employees...