Security Architect (Detection Engineer)

Golden Resources. Inc.
Columbia, United States of America
3 days ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Remote
Columbia, United States of America

Tech stack

Microsoft Windows
ARM
Bash
Computer Security
Linux
Intrusion Detection and Prevention
Python
Powershell
Security Information and Event Management
Mitre Att&ck
Information Technology

Job description

PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Review and tune current detection rules within the State SIEM.
  • Perform Gap analysis of the current detection coverage.
  • Develop detection rules/solutions to cover found Gaps.
  • monitor threat intelligence sources for new use cases.
  • Work with State SOC analysts to create and tune rules.
  • Work with the State Threat Hunter to identify and remediate detection coverage gaps.
  • Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Requirements

  • BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
  • EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
  • FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
  • 5+ years of Strong scripting and automation skills (Python, Bash, PowerShell, or similar).
  • Understanding of Sigma, YARA, and other industry standard detection languages.
  • Familiarity with MITRE ATT&CK framework, * Bachelors Degree in an Information Technology or Information Security related field; 8+ years of relevant work experience in security architecture may be substituted in lieu of education
  • 5+ years of experience with scripting automation (Python, Bash, PowerShell, or similar)
  • 5+ years of experience in supporting large IT environments and/or system deployments
  • Experience with Sigma, Yara, and other industry standard detection languages
  • Experience with MITRE ATT & CK Framework

Preferred Skills

  • CISSP, CISA, CISO or equivalent advanced security certifications (CEH, OSCP. GPEN)
  • Vendor certifications in detection engineering
  • Experience with the Palo Alto Cortex XSIAM platform
  • Deep understanding of Windows/Linux artifacts
  • Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

About the company

Golden Technology was founded in 1997 with the goal of developing people and driving innovation. In other words, our aim is to pair world-class technologists like you with amazing companies that are doing impactful work. After an initially slow start, and way too many late nights playing Final Fantasy 7, Golden Technology built a unique recruiting engine that would quickly prove itself to deliver top-tiered talent to fortune 500 clients across the US, time and time again. Golden Technology has built a culture around family and helping the people we touch succeed in both their work and personal lives. Oh, everyone says that? Try us, you ll see it. We re helping people find their calling and their dream jobs; and through our Golden Community initiatives we are actively working to improve the communities in which we work, live, and play.

Apply for this position