Security Architect Automation & Integration

Software, Inc.
United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) User Authentication Automation of Tests Backup Devices Bash Shell Command-Line Interface Cloud Computing Cloud Computing Security CompTIA Security+ Cyber Security Databases Decision Support Systems
+31 more
Linux Identity and Access Management JSON Python (Programming Language) Network Security Performance Tuning Windows PowerShell Role-Based Access Control Runbook Security Information and Event Management Software Deployment Software Engineering Systems Integration User Provisioning Software Software Vulnerability Management Web Applications Web Services WhatsUp Gold (Software) YAML Data Logging Data Processing Scripting Enterprise Software Applications System Availability Cyber Threat Analysis Information Technology Palo Alto Networks Restful APIs Software Version Control Docker Security Orchestration, Automation & Response

Job description

  • The contractor will participate in an on-call rotation supporting the 24x7 Security Operations Center (SOC).

  • After-hours maintenance, incident escalation support, and operational handoffs will be required as needed.

  • Preference will be given to candidates presently residing within the State of South Carolina who can physically assist with equipment and hardware maintenance as needed.

This position will serve as a Contract Security Engineer within the Department of Administration’s Division of Information Security. The successful candidate will demonstrate extensive experience supporting security automation, custom tool development, identity and access management (IAM), Linux systems, and a broad range of enterprise security technologies.

This contractor will work with a large enterprise security team and assist the Security Automation Architect, Security Architects, Engineers, Analysts, and Incident Responders with the design, development, implementation, integration, and continuous improvement of security tools, automations, systems, and services supporting multiple state agencies.

Successful Candidate

The contractor will be primarily focused on security engineering, automation, scripting, tool development, system integration, and operational support while also providing important support for IAM, Linux-based security sensors, DSPM, ASM, vulnerability management, SIEM, XDR, logging, monitoring, and other evolving security technologies.

The role requires hands-on experience supporting both security engineering and security operations, including:

  • Internal applications

  • APIs and SDKs

  • Dashboards

  • Command-line tools

  • Incident response automations

  • CVE analysis

  • Access controls

  • Platform troubleshooting

  • System administration

  • Documentation

  • Analyst enablement

The candidate must be able to support strategic planning, solution design, development, implementation, HSTR, troubleshooting, performance optimization, and continuous improvement of secure systems and services in a rapidly changing environment.

Responsibilities

Primarily assist in the planning, design, development, deployment, administration, and operational support of enterprise security automations and custom security tools, including:

  • Python-based automations
  • Internal web applications
  • APIs and SDKs
  • Scripts
  • Dashboards
  • Command-line utilities

  • System integrations

  • Automated workflows for:
  • Alert enrichment
  • Triage
  • Incident response
  • Case management
  • Notifications
  • Containment
  • Escalation

  • Reporting

  • Custom tools to assist with:
  • CVE vetting
  • Vulnerability enrichment
  • Vulnerability prioritization
  • Vulnerability tracking

  • Security decision support

  • Assist in the planning, design, deployment, and operational support of a broad range of security platforms, including:
  • DSPM
  • ASM
  • IAM
  • Vulnerability Management
  • Email Security
  • Endpoint Security
  • SIEM
  • SOAR
  • XDR
  • Logging
  • Monitoring
  • Network Security
  • Cloud Security

  • Threat Intelligence
  • Integrate security technologies with ticketing, case management, notification, identity, data sources, APIs, SDKs, and other enterprise systems as needed.
  • Provide support for technologies such as Palo Alto Networks, Proofpoint, Tenable, Cribl, WhatsUp Gold, and other current or future security products.

  • Develop, test, deploy, and maintain automated security workflows, applications, and scripts using:
  • Python
  • PowerShell
  • Bash
  • REST APIs
  • JSON
  • YAML
  • Vendor SDKs

  • Assist with identity and access management functions, including:
  • User provisioning and deprovisioning
  • Access reviews
  • Role-based access control (RBAC)
  • Service accounts
  • API credentials
  • Authentication
  • Authorization

  • Identity-based system integrations

  • Deploy, configure, patch, monitor, optimize, and troubleshoot Linux systems supporting security sensors, collectors, connectors, applications, containers, and data-processing services, including Docker-based environments.
  • Support Security Architects, Engineers, SOC Analysts, Incident Responders, and agency customers through:
  • Platform troubleshooting
  • Automation development
  • System integration
  • Technical escalation
  • Knowledge transfer

  • Operational handoffs

  • Monitor and report on:

  • Automation health
  • Application availability
  • System performance
  • Sensor status
  • Integration failures
  • API errors
  • Vulnerability status
  • Platform issues
  • Other security engineering and operational metrics

  • Ensure high availability, resilience, backup, recovery, patching, lifecycle management, secure configuration, and controlled change processes for security tools, Linux systems, applications, automations, and supporting services.
  • Collaborate with Security Architects, Engineers, Analysts, Incident Responders, and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements, and organizational risk tolerance.

Requirements

  • Broad hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions.
  • Experience developing security automations, scripts, integrations, utilities, and custom tools using Python.
  • Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services, and integrations.
  • Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting, and lifecycle management.
  • Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML, and vendor SDKs.
  • Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security, and other enterprise security technologies.
  • Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration, and industry-standard cybersecurity frameworks.
  • Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared-services, or managed-service environment.
  • Hands-on Linux, Docker, security sensor, monitoring, scripting, and platform administration experience.
  • Experience supporting SOC Analysts, Security Engineers, Incident Responders, agency customers, and rapidly changing operational priorities.
  • Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG/WhatsUp Gold, or other enterprise security technologies.
  • Experience developing playbooks, runbooks, procedures, and technical documentation.
  • Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods, and vendor-supported interfaces.
  • Experience developing or supporting internal web applications, APIs, dashboards, databases, command-line tools, and related software components.
  • Advanced Python development experience and familiarity with full-stack development, internal web applications, APIs, databases, source control, testing, and software deployment practices., * Bachelor’s degree in Information Technology, Computer Science, Software Engineering, Information Security, or a related field.
  • Eight (8) years of relevant work experience. Experience may be substituted in lieu of education.
  • Five (5) years of experience supporting large IT environments, security systems, software development, and/or system deployments.

Preferred Certifications

  • CISSP
  • Security+
  • GIAC
  • Other relevant cybersecurity certifications
  • Linux certifications
  • Python certifications
  • Cloud certifications
  • IAM certifications
  • Other relevant security engineering or platform certifications

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

1:35 min

Centralizing configuration logic with native YAML block references

Matthieu Vincent Matthieu Vincent · Europe 2026 Virtual

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:00 min

Introduction to YAML syntax and basic formatting

Chris Ayers · LIVE

Videos

See all

Related articles

See all