Job ID: BL-11391-1 (99090925)

Onsite/Local .Net Security Developer (GCIH/CSIH/ECIH/CND/GCIP/GDSA) with C#, Shell Scripting, SQL Server, Azure, Virtualization/VMWare, Web API, NIST, Python, PowerShell, AI/ML, SIEM experience 

Location: Wilson Rd Blythewood, SC
Duration: 12 Months Hrs/Wk: 37.50
This is 100% ONSITE – there is no option to be remote.

Skills:
Programming Languages .Net Yes 1 Lead Currently Using 6 + Years
Programming Languages C# Yes 1 Lead Currently Using 6 + Years
Programming Languages JavaScript Yes 2 Lead Currently Using 6 + Years
Programming Languages MSSQL Yes 1 Lead Currently Using 6 + Years
Programming Languages Shell Scripting Yes 1 Lead Currently Using 6 + Years
Programming Languages Visual Studio Yes 1 Lead Currently Using 6 + Years
Specialties Azure Cloud and Virtualization Yes 1 Lead Currently Using 6 + Years
Web Tools Web – application programming interface (API) Yes 1 Lead Currently Using 6 + Years
Recommended: NIST Frameworks, General understanding of IT Security

Required Skills (rank in order of importance):
• Exceptional communication and interpersonal skills, with a proven ability to deliver exceptional customer service through training and documentation.
• Expert level experience with C#, Python, powershell, and rust(is a plus)
• Understanding of secure by design principles.
• Understanding of automation principles, including the use of AI, ML, and scripting, to streamline security tasks.
• Understanding of the Secure Development Lifecycle (SDLC) and DevSecOps principles to integrate security considerations throughout the application development process.
• Proficiency in cloud security principles, including identity and access management, data security, and compliance.

Preferred Skills (rank in order of importance):
• Experience with SIEM (Security Information and Event Management) tools, including configuration, tuning, threat hunting, and alert creation.
• In-depth knowledge of security frameworks, including NIST, CIS, and CISA, and their application in a hybrid environment.
• Solid understanding of incident response processes and experience in implementing them effectively.
• Advanced understanding of security controls, including their configuration and implementation in hybrid environments.
• Expertise in data classification and DLP (Data Loss Prevention) configuration to safeguard sensitive information.

Required Education:
A bachelor’s degree in information technology systems, computer science, cybersecurity, or a related field with 3+ years’ experience in a security focused role. Relevant experience may be substituted for the degree on a year-for-year basis

Required Certifications:
Not required, however we prioritize applicants who have:
Certified Incident Handler (GCIH)
Certified Computer Security Incident Handler (CSIH)
EC-Council Certified Incident Handler (ECIH)
EC-Council Certified Network Defender (CND)
GIAC Critical Infrastructure Protection (GCIP)
GIAC Defensible Security Architecture (GDSA)

Daily Duties / Responsibilities:
• Champion DevSecOps through Security Automation: Leverage your full-stack development expertise to design, implement, and maintain security tools and automation. This includes building scripts to automate critical tasks like data security checks, vulnerability scanning, and user access control, streamlining security processes and improving overall efficiency.
• Monitor and analyze security events: You’ll be responsible for monitoring security information and event management (SIEM) tools to identify potential threats and suspicious activity. Along with determine security gaps in these controls to improve overall security posture. This will also involve analyzing logs, investigating alerts, and using your knowledge of security frameworks (NIST, CIS, CISA) to assess risk.
• Support secure application development: You’ll collaborate with developers to ensure secure coding practices are followed throughout the Software Development Lifecycle (SDLC). This might involve code reviews, threat modeling, and providing guidance on secure development principles.
• Investigate and respond to security incidents: In the event of a security breach, you’ll be part of the incident response team, helping to identify the root cause, mitigate damage, and implement recovery procedures.
• Document security procedures and best practices: You’ll develop clear and concise documentation for security policies, procedures, and best practices. This may involve creating training materials or user guides to ensure everyone understands their role in maintaining security.
• Provide on-call support when needed and other related duties as required.

NDA will need to be signed and returned to Tapfin for those selected to interview prior to that date and time.
Email the signed form to stateofsc and enter the req number and candidate name in the subject line.

Scope of the project:
Enhance the security posture of the South Carolina Department of Motor Vehicles (SCDMV) to protect sensitive citizen data and ensure the integrity of motor vehicle licensing and titling systems.

SC RTR – 8.26.2023 (1) (3).docx

Professional Reference Check Form (4).docx

Onsite/Local .Net Security Developer (GCIH/CSIH/ECIH/CND/GCIP/GDSA) with C#, Shell Scripting, SQL Server, Azure, Virtualization/VMWare, Web API, NIST, Python, PowerShell, AI/ML, SIEM experience 

Leave a Reply

Your email address will not be published. Required fields are marked *

Discover more from innoSoul

Subscribe now to keep reading and get access to the full archive.

Continue reading