Security Architect - Consultant (Detection Engineer)

Remote • Posted 8 hours ago • Updated 8 hours ago
Contract W2
Occasional Travel Required
Remote
Depends on Experience
Fitment

Dice Job Match Score™

🫥 Flibbertigibetting...

Job Details

Skills

  • scripting automation
  • Python
  • MITRE ATT
  • CK Framework
  • detection languages
  • Bash
  • Powershell
  • system deployments
  • Sigma
  • Yara

Summary

Role: Security Architect - Consultant (Detection Engineer)

Location: Remote

Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed

Duration of the Contract: 12 months

Possibility for Extension: Yes

Work Location: Fully Remote

Candidate Location: No SC residency required. Open to nationwide candidates.

 

W2 Contract

IMPORTANT INFORMATION: This position requires the candidate to be engaged exclusively on Maxpath Technologies’ W2 payroll. Engagements via 1099 or third-party/sub-vendor or Corp-to-Corp arrangements are not accepted.

 

 

DAILY DUTIES / RESPONSIBILITIES:

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

• REVIEW AND TUNE CURRENT DETECTION RULES WITHIN THE STATE SIEM.

• PERFORM GAP ANALYSIS OF THE CURRENT DETECTION COVERAGE.

• DEVELOP DETECTION RULES/SOLUTIONS TO COVER FOUND GAPS.

• MONITOR THREAT INTELLIGENCE SOURCES FOR NEW USE CASES.

• WORK WITH STATE SOC ANALYSTS TO CREATE AND TUNE RULES.

• WORK WITH THE STATE THREAT HUNTER TO IDENTIFY AND REMEDIATE DETECTION COVERAGE GAPS.

• DOCUMENT PROCESSES, RUNBOOKS, AND TROUBLESHOOTING STEPS RELATED TO THE SOAR AND INTEGRATIONS.

• COORDINATE WITH ENGINEERING, SOC, AND AGENCY STAFF AS NEEDED TO MEET GOALS.

• OTHER DUTIES AS NEEDED.

ADDITIONAL SKILLS AND DUTIES:

• PROVEN EXPERIENCE WITH DETECTION TUNING/DEVELOPMENT..

• EXPERIENCE WITH DASHBOARD CREATION AND REPORTING.

PREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE):

• EXPERIENCE WITH THE PALO ALTO CORTEX XSIAM PLATFORM.

• DEEP UNDERSTANDING OF WINDOWS/LINUX ARTIFACTS.

• EXCELLENT COMMUNICATION AND CUSTOMER SERVICE SKILLS FOR AGENCY-FACING ENGAGEMENT.

• EXPERIENCE IN WORKING IN MULTI- TENANCY ENVIRONMENT

• EXPERIENCE IN MULTI-AGENCY OR ENTERPRISE SERVICE PROJECTS.

REQUIRED EDUCATION/CERTIFICATIONS:

• BACHELOR''S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD

• EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION

• FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS

• 5+ YEARS OF STRONG SCRIPTING AND AUTOMATION SKILLS (PYTHON, BASH, POWERSHELL, OR SIMILAR).

• UNDERSTANDING OF SIGMA, YARA, AND OTHER INDUSTRY STANDARD DETECTION LANGUAGES.

• FAMILIARITY WITH MITRE ATT&CK FRAMEWORK

PREFERRED EDUCATION/CERTIFICATIONS:

• CISSP, CISA, CISO OR EQUIVALENT ADVANCED SECURITY CERTIFICATION.

• ADDITIONAL RELEVANT CERTIFICATIONS (E.G., CEH, OSCP, GPEN).

• VENDOR CERTIFICATIONS IN DETECTION ENGINEERING.

• Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91138406
  • Position Id: 10793
  • Posted 8 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

Today

Easy Apply

Contract

Depends on Experience

Remote or Columbia, South Carolina

Today

Easy Apply

Third Party, Contract

$$80/hr on W2

Remote

Today

Easy Apply

Contract, Third Party

Depends on Experience

Remote

Today

Easy Apply

Contract

Depends on Experience

Search all similar jobs