Security Architect - Consultant
RemoteUnited States
United StatesRemoteContractSmall
ContractSmall
Job Summary
Design, develop, and maintain security automations, custom tools, and internal applications using Python, PowerShell, and Bash. Support the 24x7 SOC through on-call rotation, incident escalation, and operational handoffs while ensuring high availability of security platforms. Assist with identity and access management, vulnerability management, and Linux system administration across a multi-agency environment.
Required Qualifications
- Full credit check and criminal background check
- Annual CJIS certification
- 100% remote work capability
- Ability to participate in on-call rotation supporting 24x7 SOC
- After-hours maintenance capability
- Incident escalation support capability
- Operational handoffs capability
- Bachelor's degree in an Information Technology, Computer Science, Software Engineering or Information Security related field
- 8+ years of relevant work experience (may be substituted in lieu of education)
- 5+ years of experience in supporting large IT environments, security systems, software development and/or system deployments
- Broad hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations and operational functions
- Experience developing security automations, scripts, integrations, utilities and custom tools using Python
- Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations
- Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting and lifecycle management
- Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs
- Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise security technologies
- Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks
- Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods and vendor-supported interfaces
- Experience developing or supporting internal web applications, APIs, dashboards, databases, command-line tools and related software components
- Advanced Python development experience and familiarity with full-stack development, internal web applications, APIs, databases, source control, testing and software deployment practices
- Ability to physically assist with equipment and hardware maintenance as needed (preferred for South Carolina residents, but listed under 'Other' conditions requiring physical presence)
Desired Qualifications
- Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared-services or managed-service environment
- Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience
- Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities
- Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation
- CISSP, Security+, GIAC or other relevant cybersecurity certification
- Linux, Python, Cloud, IAM or other relevant security engineering or platform certification
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.