Required Skills (Ranked by Importance): -- BROAD HANDS-ON SECURITY ENGINEERING EXPERIENCE SUPPORTING MULTIPLE CYBERSECURITY TECHNOLOGIES, SYSTEMS, INTEGRATIONS AND OPERATIONAL FUNCTIONS. -- Experience developing security automations, scripts, integrations, utilities and custom tools using Python. -- Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations. -- LINUX SYSTEM DEPLOYMENT, CONFIGURATION, PATCHING, SCRIPTING, SERVICE MANAGEMENT, MONITORING, TROUBLESHOOTING AND LIFECYCLE MANAGEMENT -- Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs. -- Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise security technologies. -- Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks. | Preferred Skills (Ranked by Importance): -- HANDS-ON EXPERIENCE SERVING AS A SECURITY ENGINEERING GENERALIST IN A LARGE, MULTI-TENANT, SHARED-SERVICES OR MANAGED-SERVICE ENVIRONMENT. -- Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience. -- Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities. -- Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation |
Required Education: -- BACHELOR''S DEGREE IN AN INFORMATION TECHNOLOGY, COMPUTER SCIENCE, SOFTWARE ENGINEERING OR INFORMATION SECURITY RELATED FIELD -- EIGHT YEARS OF RELEVANT WORK EXPERIENCE (EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION) -- FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS, SECURITY SYSTEMS, SOFTWARE DEVELOPMENT AND/OR SYSTEM DEPLOYMENTS | Preferred Certifications: CISSP, Security+, GIAC OR OTHER RELEVANT CYBERSECURITY CERTIFICATION LINUX, PYTHON, CLOUD, IAM OR OTHER RELEVANT SECURITY ENGINEERING OR PLATFORM CERTIFICATION |
Work Address: Choose an item. Identify on-site, hybrid or fully remote? · If hybrid, provide telecommuting schedule. · Fully remote This position is housed 100% remote and will participate in a monthly on-call rotation supporting the 24x7 SOC. After-hours maintenance, incident escalation support and operational handoffs may be required as needed. All work must be performed within the contiguous United States. PREFERENCE WILL BE GIVEN TO LOCAL SOUTH CAROLINA BASED CANDIDATES CAPABLE OF FIELDING SERVICES IN-STATE. CORE HOURS OF 0830-0500 ET. VPN or state equipment? VPN | Additional Skills/Duties: -- Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods and vendor-supported interfaces. --Experience developing or supporting internal web applications, APIs, dashboards, databases, command-line tools and related software components. -- Advanced Python development experience and familiarity with full-stack development, internal web applications, APIs, databases, source control, testing and software deployment practices. |