Security Architect - Consultant
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+30 more
Job description
Primary Responsibilities: Primarily assist in the planning, design, development, deployment, administration and operational support of enterprise security automations and custom security tools, including:
- Python-based automations, internal web applications, APIs, SDKs, scripts, dashboards, command-line utilities and system integrations
- Automated workflows for alert enrichment, triage, incident response, case management, notifications, containment, escalation and reporting
- Custom tools to assist with CVE vetting, vulnerability enrichment, prioritization, tracking and security decision support
- Secondary Responsibilities:
- Secondarily assist in the planning, design, deployment and operational support of a broad range of security platforms, including: DSPM, ASM, IAM, vulnerability management, email security, endpoint security, SIEM, XDR, SOAR, logging, monitoring, network security, cloud security and threat intelligence technologies integrations with ticketing, case management, notification, identity, data sources, APIs, SDKs and other enterprise systems as needed support for technologies such as Palo Alto Networks, Proofpoint, Tenable, Cribl, WhatsUp Gold and other current or future security products
- Develop, test, deploy and maintain automated security workflows, applications and scripts using Python, PowerShell, Bash, REST APIs, JSON, YAML, vendor SDKs and other appropriate technologies.
- Assist with identity and access management functions, including user provisioning, deprovisioning, access reviews, role-based access control, service accounts, API credentials, authentication, authorization and identity-based system integrations.
- Deploy, configure, patch, monitor, optimize and troubleshoot Linux systems supporting security sensors, collectors, connectors, applications, containers and data-processing services, including Docker-based environments.
- Support Security Architects, Engineers, SOC Analysts, Incident Responders and agency customers through platform troubleshooting, automation development, system integration, technical escalation, knowledge transfer and operational handoffs.
- Monitor and report on automation health, application availability, system performance, sensor status, integration failures, API errors, vulnerability status, platform issues and other security engineering and operational metrics.
- Ensure high availability, resilience, backup, recovery, patching, lifecycle management, secure configuration and controlled change processes for security tools, Linux systems, applications, automations and supporting services.
- Collaborate with Security Architects, Engineers, Analysts, Incident Responders and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements and organizational risk tolerance.
Requirements
- Bachelors Degree in an Information Technology, Computer Science, Software Engineering or Information Security related field; 8+ years of relevant experience may be substituted in lieu of education
- 5+ years of experience in supporting large IT environments, security systems, software development, and/or system deployment
- Hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions.
- Experience developing security automations, scripts, integrations, utilities and custom tools using Python
- Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations
- Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting and lifecycle management
- Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs
- Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise
- Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks
Desirable Skills:
- CISSP, Security+, GIAC or other relevant cybersecurity certification
- Linux, Python, Cloud, IAM or other relevant security engineering or platform certification
- Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared services, or managed service environment
- Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience
- Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities.
- Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation
- Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods and vendor-supported interfaces.
- Experience developing or supporting internal web applications, APIs, dashboards, databases, command-line tools and related software components.
- Advanced Python development experience and familiarity with full-stack development, internal web applications, APIs, databases, source control, testing and software deployment practices.
About the company
CCS Global Tech is a rapidly growing Information Technology company with a diverse portfolio of technology products and services and a large network of industry partnerships. With over 22 years of being a successful business with a global talent pool and presence, CCS is a certified Microsoft Gold Partner and specializes in delivering expert Microsoft based solutions for technical and business needs. We have been recognized by Inc. 500 Magazine as one of the fastest growing small companies in the Unites States. we are a Tier 1 vendor for the City and County of San Francisco for Cloud Services, Staffing Services and Training Services. For this multi-year opportunity with a diverse set of needs to address, we are currently focusing on establishing partnerships with individuals as well as companies who can help us enhance our overall service portfolio, cut lead times, and ultimately help us deliver successfully. We currently hold sizable Government accounts in the San Francisco bay area including City and County of San Francisco, San Mateo County, and Santa Clara County. We take great pride in our global reach and local influence. Your experience alongside our highly skilled and talented internal team who guide you along the way, offers key insights into what helps you stand out in a competitive job market.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Understanding and Mitigating Common Web Vulnerabilities
What Are The Top Skills Required For Azure Developers?
Why Upskilling And Reskilling is Important For Developers