Job ID: BL-11455-1 (913291128)
Hybrid/Local Security Architect (GSEC/GCED) with CYBER SECURITY, Linux/Windows/NETWORK SECURITY PROTOCOLS, access controls/logging, IPS, SIEM, NIST/CSF/CJIS/IRS 1075/CMS MARS-E and APPSEC experience
Location: Columbia, SC
Duration: 12 Months
Remote Work Availability: 25%
Skills:
Network Security Application Security Yes 3 Advanced Currently Using 4 – 6 Years
Networking & Directories Access control logging and reporting systems Yes 1 Expert Currently Using 6 + Years
Protocols IPS Yes 2 Advanced Currently Using 4 – 6 Years
Additional Skills: REQUIRED SKILLS (RANK IN ORDER OF IMPORTANCE):
• CYBER SECURITY AWARENESS AND UNDERSTANDING
• EXPERIENCE WITH LINUX, WINDOWS, NETWORK SECURITY PROTOCOLS AND PROCEDURES
• EXPERT UNDERSTANDING OF ACCESS CONTROL, LOGGING AND REPORTING SYSTEMS
PREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE):
• SIEM MANAGEMENT
• INTRUSION PREVENTION SYSTEMS (IPS)
• SECURITY FRAMEWORKS: NIST, CSF, CJIS, IRS 1075, CMS MARS-E
• APPLICATION SECURITY (APPSEC)
Job Description:
SCOPE OF THE PROJECT: THE POSITION WILL WORK AS A SECURITY ARCHITECT WITHIN THE DIVISION OF INFORMATION SECURITY AND WILL ASSIST WITH THE IMPLEMENTATION, INTEGRATION, AND OPERATIONALIZING SECURITY TECHNOLOGIES. THIS POSITION REQUIRES EXPERIENCE IN INFORMATION SECURITY ARCHITECTURE AND SOLUTION DESIGN TO ASSIST IN THE STRATEGIC PLANNING, DESIGNING, AND IMPLEMENTATION OF NEW SYSTEMS AND CHANGES IN CURRENT SYSTEMS IN A SECURE MANNER. THIS POSITION IS EXPECTED TO BE NEEDED FOR 12 MONTHS WITH THE POSSIBILITY OF EXTENSION.
DAILY DUTIES / RESPONSIBILITIES:
• LOGGING AND EVENT MANAGEMENT – ENSURING THAT APPROPRIATE SECURITY LOGS ARE INGESTED INTO THE SIEM AND/OR LOG AGGREGATION PLATFORM AND PROPERLY PARSED TO SUPPORT SECURITY OPERATIONS
• RESPONSIBLE FOR PLANNING, DESIGNING, DEVELOPMENT AND IMPLEMENTATION OF ENTERPRISE SECURITY ARCHITECTURE SOLUTIONS THAT ALIGN WITH BUSINESS GOALS AND RISK TOLERANCE. LEVERAGING STATE APPROVED PROCESSES AND TECHNOLOGIES WHEREVER POSSIBLE.
• LEAD PROCESS DEFINITION, REDESIGN AND/OR TECHNOLOGY INNOVATION OF SECURITY ARCHITECTURE, TO ENSURE DIS SOLUTIONS SUPPORT SECURE DELIVERY OF ENTERPRISE BUSINESS ARCHITECTURE AND SERVICES.
• DESIGN, DEPLOY AND MANAGE COUNTERMEASURES TO KNOWN SECURITY THREATS AND DEVELOP PREVENTATIVE MITIGATION STRATEGIES FOR NEW AND EMERGENT THREATS TO ENTERPRISE DATA, NETWORKS AND ASSOCIATED SERVICES.
• ENSURE, VALIDATE AND MEASURE THE CONSISTENT APPLICATION OF PROTECTIVE MEASURES THROUGHOUT THE ENTERPRISE BUSINESS APPLICATION AND INFRASTRUCTURE SUPPORT ENVIRONMENTS. TAKE APPROPRIATE ACTION TO PROTECT STATE DATA AND TECHNOLOGY SERVICES.
REQUIRED SKILLS (RANK IN ORDER OF IMPORTANCE):
• CYBER SECURITY AWARENESS AND UNDERSTANDING
• EXPERIENCE WITH LINUX, WINDOWS, NETWORK SECURITY PROTOCOLS AND PROCEDURES
• EXPERT UNDERSTANDING OF ACCESS CONTROL, LOGGING AND REPORTING SYSTEMS
PREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE):
• SIEM MANAGEMENT
• INTRUSION PREVENTION SYSTEMS (IPS)
• SECURITY FRAMEWORKS: NIST, CSF, CJIS, IRS 1075, CMS MARS-E
• APPLICATION SECURITY (APPSEC)
REQUIRED EDUCATION/CERTIFICATIONS:
• BACHELOR’S DEGREE IN AN
INFORMATION TECHNOLOGY OR
INFORMATION SECURITY RELATED
FIELD
• SIX YEARS OF RELEVANT WORK
EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
• THREE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
PREFERRED EDUCATION/CERTIFICATIONS:
• GSEC
• GCED
Professional Reference Check Form.docx