Security Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+19 more
Job description
The Security Architect - Consultant will serve as a contract security engineer within the Department of Administration’s Division of Information Security. This role focuses on designing, developing, implementing, and supporting enterprise security automations, custom tools, and integrations across multiple state agencies. The position requires extensive hands-on experience in security engineering, automation, scripting, Linux systems, and a broad range of cybersecurity technologies to enhance security operations and incident response capabilities. Responsibilities:
- Plan, design, develop, deploy, and support enterprise security automations and custom security tools including Python-based automations, APIs, SDKs, scripts, dashboards, and command-line utilities.
- Create automated workflows for alert enrichment, triage, incident response, case management, notifications, containment, escalation, and reporting.
- Develop custom tools for CVE vetting, vulnerability enrichment, prioritization, tracking, and security decision support.
- Support a wide range of security platforms such as DSPM, ASM, IAM, vulnerability management, email security, endpoint security, SIEM, XDR, SOAR, logging, monitoring, network security, cloud security, and threat intelligence.
- Integrate security technologies with enterprise systems including ticketing, case management, identity, and data sources.
- Deploy, configure, patch, monitor, optimize, and troubleshoot Linux systems supporting security sensors, applications, containers, and data-processing services.
- Assist with identity and access management functions including user provisioning, access reviews, role-based access control, and API credential management.
- Provide platform troubleshooting, automation development, system integration, technical escalation, knowledge transfer, and operational handoffs to security teams and agency customers.
- Monitor and report on automation health, system performance, sensor status, integration failures, and other operational metrics.
- Ensure high availability, resilience, backup, recovery, patching, lifecycle management, and secure configuration of security tools and supporting services.
- Collaborate with security architects, engineers, analysts, incident responders, and stakeholders to align solutions with business goals, industry standards, regulatory requirements, and risk tolerance.
- Participate in an on-call rotation supporting a 24x7 Security Operations Center including after-hours maintenance and incident escalation., * Mandatory background checks including credit history, driving record, and SLED check.
- Must obtain and maintain annual CJIS certification.
- Position is fully remote with a preference for candidates residing in South Carolina to assist physically if needed.
- Participation in a 24x7 on-call rotation supporting the Security Operations Center is required.
- After-hours maintenance, incident escalation, and operational handoffs may be necessary.
- All travel-related costs for onsite work are the responsibility of the contractor.
Scheduling:
- Full-time position, 40 hours per week.
- Work hours aligned with Eastern Time Zone.
- On-call rotation supporting 24x7 Security Operations Center coverage.
- After-hours work as required for maintenance and incident response., Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Qualys Security Solutions Architect - Enterprise Post-Sales -…
- 17 days ago, Come work at a place where innovation and teamwork come together to support the most exciting missions in the world! Qualys Security Solutions Architect - Enterprise Post-Sales -…
- 19 days ago +
Requirements
- Broad hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions.
- Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, and authentication methods.
- Strong troubleshooting skills across applications, security platforms, operating systems, networks, identity services, and integrations.
- Proficient in Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting, and lifecycle management.
- Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML, and vendor SDKs.
- Bachelor’s degree or equivalent experience.
- Must successfully pass a full credit check, criminal background check, and maintain annual CJIS certification.
Preferred Skills & Certifications:
- Experience with security platforms such as Palo Alto Networks, Proofpoint, Tenable, Cribl, WhatsUp Gold, and other current or emerging security products.
- Familiarity with identity and access management processes including role-based access control and service account management.
- Experience supporting security operations centers (SOC) and incident response teams.
- Knowledge of regulatory frameworks and industry-standard security frameworks.
- Experience working in a large enterprise security team environment.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…