Security Architect - Consultant - Fully REMOTE - Must have MITRE ATT, CK Framework experience Job at RICEFW Technologies Inc, Columbia, SC

TUxBcjhNUTdab3NQTXl1UTdKMy9UMTBJRnc9PQ==
  • RICEFW Technologies Inc
  • Columbia, SC

Job Description

Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed
Duration of the Contract: 12 months


Possibility for Extension: Yes
Work Location: Fully Remote
Candidate Location: No SC residency required. Open to nationwide candidates.

Daily Duties / Responsibilities:

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Review and tune current detection rules within the State SIEM.
  • Perform Gap analysis of the current detection coverage.
  • Develop detection rules/solutions to cover found Gaps.
  • monitor threat intelligence sources for new use cases.
  • Work with State SOC analysts to create and tune rules.
  • Work with the State Threat Hunter to identify and remediate detection coverage gaps.
  • Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Additional skills and duties:

  • Proven experience with detection tuning/DEVELOPMENT.
  • Experience with dashboard creation and reporting.
  • Excellent communication and customer service skills for agency-facing engagement.
  • Experience in working in multi-tenancy environment
  • Experience in multi-agency or enterprise service projects.

Preferred Skills (rank in order of Importance):

  • Experience with the Palo Alto Cortex XSIAM platform.
  • Deep understanding of Windows/Linux artifacts.

Required Education/Certifications:

  • BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
  • EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
  • FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
  • 5+ years of Strong scripting and automation skills (Python, Bash, PowerShell, or similar).
  • Understanding of Sigma, YARA, and other industry standard detection languages.
  • Familiarity with MITRE ATT&CK framework

Preferred Education/Certifications:

  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).
  • VENDOR CERTIFICATIONS IN DETECTION ENGINEERING.
  • Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

Job Tags

Full time, Contract work, Work experience placement, Local area, Remote work

Similar Jobs

BCforward

Data Entry Clerk Job at BCforward

 ...We are seeking a detail-oriented and efficient Data Entry - Typist to join our team on a part-time, remote basis The ideal candidate will have excellent typing skills, strong attention to detail, and the ability to work independently Proficient typing... 

Red Lion Christian Academy

School Principal Job at Red Lion Christian Academy

 ...Lion Christian Academy has seen unprecedented growth over the past several years and is seeking to divide the Principal roles into two positions for middle school and high school. We are seeking qualified candidates to interview for the position. Position Overview:... 

JD Sports Fashion

JD Associate - Valley Mall, Union Gap, WA Job at JD Sports Fashion

At JD Finish Line, we're not just selling products; we're creating experiences. Our retail stores are a vibrant reflection of our brand's passion for innovation and customer service. We're on the lookout for talented associates to be a part of our team and drive excellence...

Forensics Source™

Senior Plastic Injection Mold Designer (3D CAD) Job at Forensics Source™

A leading engineering firm located in Jacksonville, FL is seeking a talented individual to design and create 3D models for plastic injection molds. The ideal candidate will have over 5 years of mold design experience and proficiency in 3D modeling software such as SolidWorks... 

Professional Solutions

Cable Installation Technician Senior Job at Professional Solutions

 ...Cable Installation Technician Senior Professional Solutions Delivered, LLC (ProSoDel) is a total solutions provider for government and commercial customers in the areas of Program Management, Logistics, Organizational Change Management, Communications, Training, and...