Security Architect - Consultant - Fully REMOTE - Must have MITRE ATT, CK Framework experience Job at RICEFW Technologies Inc, Columbia, SC

c01iK3AyOCt6OUo3NzEvRHZYbUh2NW5jTEE9PQ==
  • RICEFW Technologies Inc
  • Columbia, SC

Job Description

Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed
Duration of the Contract: 12 months


Possibility for Extension: Yes
Work Location: Fully Remote
Candidate Location: No SC residency required. Open to nationwide candidates.

Daily Duties / Responsibilities:

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Review and tune current detection rules within the State SIEM.
  • Perform Gap analysis of the current detection coverage.
  • Develop detection rules/solutions to cover found Gaps.
  • monitor threat intelligence sources for new use cases.
  • Work with State SOC analysts to create and tune rules.
  • Work with the State Threat Hunter to identify and remediate detection coverage gaps.
  • Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Additional skills and duties:

  • Proven experience with detection tuning/DEVELOPMENT.
  • Experience with dashboard creation and reporting.
  • Excellent communication and customer service skills for agency-facing engagement.
  • Experience in working in multi-tenancy environment
  • Experience in multi-agency or enterprise service projects.

Preferred Skills (rank in order of Importance):

  • Experience with the Palo Alto Cortex XSIAM platform.
  • Deep understanding of Windows/Linux artifacts.

Required Education/Certifications:

  • BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
  • EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
  • FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
  • 5+ years of Strong scripting and automation skills (Python, Bash, PowerShell, or similar).
  • Understanding of Sigma, YARA, and other industry standard detection languages.
  • Familiarity with MITRE ATT&CK framework

Preferred Education/Certifications:

  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).
  • VENDOR CERTIFICATIONS IN DETECTION ENGINEERING.
  • Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

Job Tags

Full time, Contract work, Work experience placement, Local area, Remote work

Similar Jobs

1 point system

VMware & SAN Systems Engineer Job at 1 point system

 ...Required Qualifications ~7+ years of experience in VMware infrastructure engineering/operations in enterprise environments ~ Strong hands-on experience with: ~ VMware vSphere / vCenter ~ VMware Aria (Operations/Automation) ~ NetApp SAN administration... 

Randstad Technologies

AML Analyst Job at Randstad Technologies

As an AML Analyst you will collaborate with our team to maintain the integrity of our AML program by performing complex research on alerts...  ...targets without compromising on investigative depth Analyze KYC data, CTRs, and complex transaction patterns to identify... 

150 New Providence Rd

LPN LTC Pediatric FT Day Job at 150 New Providence Rd

 ...Job Title: LPN Location: Mountainside (MTN) Department Name: Long Term Care Req #: 0000247534 Status: Hourly Shift: Day...  ...dedicated Licensed Practical Nurse for Children;s Specialized Long Term Pediatric Qualifications: Required: Graduated from an accredited... 

Allstate Peterbilt Group

Parts Warehouse/Delivery Driver Job at Allstate Peterbilt Group

 ...Warehouse Associate Responsibilities: Picking and Packing truck parts for all branches within the Allstate Peterbilt Group Network....  ...as a team to safely build pallets and shipping cages for delivery. Reporting quality issues to immediate supervisor. Weighing... 

Trulieve

Creative Manager Job at Trulieve

 ...Creative Manager Reports To: Director, Creative Marketing Department: Creative Marketing FLSA Status: Exempt Location: Remote About Us: Trulieve looks at the world not for what it is, but for all its possibilities. We take pride in empowering...