Security Architect - Consultant - Fully REMOTE - Must have MITRE ATT, CK Framework experience Job at RICEFW Technologies Inc, Columbia, SC

R2czNUdIdVF5Qk5IMWtkUC9KNVR0eWlGOXc9PQ==
  • RICEFW Technologies Inc
  • Columbia, SC

Job Description

Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed
Duration of the Contract: 12 months


Possibility for Extension: Yes
Work Location: Fully Remote
Candidate Location: No SC residency required. Open to nationwide candidates.

Daily Duties / Responsibilities:

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Review and tune current detection rules within the State SIEM.
  • Perform Gap analysis of the current detection coverage.
  • Develop detection rules/solutions to cover found Gaps.
  • monitor threat intelligence sources for new use cases.
  • Work with State SOC analysts to create and tune rules.
  • Work with the State Threat Hunter to identify and remediate detection coverage gaps.
  • Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Additional skills and duties:

  • Proven experience with detection tuning/DEVELOPMENT.
  • Experience with dashboard creation and reporting.
  • Excellent communication and customer service skills for agency-facing engagement.
  • Experience in working in multi-tenancy environment
  • Experience in multi-agency or enterprise service projects.

Preferred Skills (rank in order of Importance):

  • Experience with the Palo Alto Cortex XSIAM platform.
  • Deep understanding of Windows/Linux artifacts.

Required Education/Certifications:

  • BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
  • EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
  • FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
  • 5+ years of Strong scripting and automation skills (Python, Bash, PowerShell, or similar).
  • Understanding of Sigma, YARA, and other industry standard detection languages.
  • Familiarity with MITRE ATT&CK framework

Preferred Education/Certifications:

  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).
  • VENDOR CERTIFICATIONS IN DETECTION ENGINEERING.
  • Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

Job Tags

Full time, Contract work, Work experience placement, Local area, Remote work

Similar Jobs

RCO Pet Care

Professional Pet Sitter - Seymour/Oxford Area Job at RCO Pet Care

RCO Pet Care is growing (again!), and we are looking for a very particular type of human to join our team of dog walkers and pet sitters. Our RCO family keeps expanding, and over the years some of our sitters have had the absolute audacity to be so good at their jobs...

TWO95 International, Inc

Instructional Designer Job at TWO95 International, Inc

 ...energy efficiency measures/programs. Guide and oversee the online trainings developed by our eLearning Specialist. This includes...  ...matter experts who help develop content for classes. This includes evaluating the instructors in the seminars and workshops and providing... 

Nuvant Consulting Group

Remote Account Advisor Job at Nuvant Consulting Group

 ...Remote Account Advisor About the Role: Were hiring Remote Account Advisors to help individuals and small businesses with tailored...  ...dental, vision, 401k, and paid time off. Flexible work-from-home schedule Advancement opportunities with a growing company... 

Steris Corporation

Order Fulfillment Specialist I Job at Steris Corporation

 ...by providing innovative healthcare and life science product and service solutions around the globe. Position Summary The Order Fulfillment Specialist fulfills customerordersby accurately and efficiently picking, packing, and shipping products, ensuring they are... 

Nino Salvaggio

Corporate Executive Pastry Chef Job at Nino Salvaggio

 ...and/or Experience:A minimum 2-year Culinary Degree required with preference given to candidates which also have additional bakery or pastry education.A minimum of 8 years of hands on pastry/baking experience with a minimum of 3 years of supervisory/ management...