Primary Skills: Security Architect and engineer, security automation, Python, PowerShell, Bash, REST APIs, JSON, YAML, vendor SDKs, Linux system administration, Docker, IAM, SIEM, SOAR, XDR, vulnerability management, endpoint security, cloud security, logging and monitoring, system integration, incident response, troubleshooting, Experience with Palo Alto Networks, Proofpoint, Tenable, Cribl, Whatsup Gold, DSPM, ASM, email security, threat intelligence, playbook/runbook development, technical documentation, full-stack development, internal web applications, databases, source control, CI/CD practices
Position Overview:
This is a new engineering role directly supporting cybersecurity automations, security tool development, identity and access management (IAM), enterprise security platforms, and security operations. The successful candidate will serve as a contract Security Engineer within a Division of Information Security, working with a large enterprise security team to assist security architects, engineers, analysts, and incident responders with the design, development, implementation, integration, and continuous improvement of security tools, automations, systems, and services supporting multiple agencies.
This contractor will be primarily focused on security engineering, automation, scripting, tool development, system integration, and operational support while also providing secondary support for IAM, Linux-based security sensors, DSPM, SIEM, XDR, logging, monitoring, and other evolving security technologies. The role requires hands-on experience supporting both security engineering and security operations, including internal applications, APIs, SDKs, dashboards, command-line tools, automations, access controls, platform troubleshooting, system administration, documentation, and analyst enablement.
The candidate must be able to support strategic planning, solution design, development, implementation, troubleshooting, performance optimization, and continuous improvement of secure systems and services in a rapidly changing environment.
Responsibilities:
Assist in the planning, design, development, deployment, administration, and operational support of enterprise security automations and custom security tools, including:
Python-based automations, internal web applications, APIs, SDKs, scripts, dashboards, command-line utilities, and system integrations
Automated workflows for alert enrichment, triage, incident response, case management, notifications, containment, escalation, and reporting
Custom tools to assist with CVE vetting, vulnerability enrichment, prioritization, tracking, and security decision support
Secondarily assist in the planning, design, deployment, and operational support of a broad range of security platforms, including: DSPM, ASM, IAM, vulnerability management, email security, endpoint security, SIEM, XDR, SOAR, logging, monitoring, network security, cloud security, and threat intelligence technologies
Support integrations with ticketing, case management, notification, identity, data sources, APIs, SDKs, and other enterprise systems as needed
Support technologies such as Palo Alto Networks, Proofpoint, Tenable, Cribl, Whatsup Gold, and other current or future security products
Develop, test, deploy, and maintain automated security workflows, applications, and scripts using Python, PowerShell, Bash, REST APIs, JSON, YAML, vendor SDKs, and other appropriate technologies
Assist with Identity and Access Management functions, including user provisioning, deprovisioning, access reviews, role-based access control, service accounts, API credentials, authentication, authorization, and identity-based system integrations
Deploy, configure, patch, monitor, optimize, and troubleshoot Linux systems supporting security sensors, collectors, connectors, applications, containers, and data-processing services, including Docker-based environments
Support security architects, engineers, SOC analysts, incident responders, and agency customers through platform troubleshooting, automation development, system integration, technical escalation, knowledge transfer, and operational handoffs
Monitor and report on automation health, application availability, system performance, sensor status, integration failures, API errors, vulnerability status, platform issues, and other security engineering and operational metrics
Ensure high availability, resilience, backup, recovery, patching, lifecycle management, secure configuration, and controlled change processes for security tools, Linux systems, applications, automations, and supporting services
Collaborate with security architects, engineers, analysts, incident responders, and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements, and organizational risk tolerance
Required Skills:
Broad hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions
Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared-services, or managed-service environment
Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods, and vendor-supported interfaces
Hands-on Linux, Docker, security sensor, monitoring, scripting, and platform administration experience
Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services, and integrations
Experience supporting SOC analysts, security engineers, incident responders, agency customers, and rapidly changing operational priorities
Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting, and lifecycle management
Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML, and vendor SDKs
Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security, and other enterprise security technologies
Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration, and industry-standard cybersecurity frameworks
Education and Certification needed:
Bachelor's degree in Information Technology, Computer Science, Software Engineering, or an Information Security-related field
Eight years of relevant work experience (experience may be substituted in lieu of education)
Five years of experience supporting large IT environments, security systems, software development, and/or system deployments
CISSP, Security+, GIAC, or other relevant cybersecurity certification
Linux, Python, cloud, IAM, or other relevant security engineering or platform certification
Note: This position is 100% remote and will participate in an on-call rotation supporting a 24x7 Security Operations Center serving multiple agencies. After-hours maintenance, incident escalation support, and operational handoffs will be required as needed. Physically assist with equipment and hardware maintenance as needed is required.
| Location | Columbia, SC (Remote) |
| Salary | $60–$65 |
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.
Free resume templatesImprove your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.
Free resume builder