NOVALINK SOLUTIONS LLC

Security Architect - Consultant

NOVALINK SOLUTIONS LLC  •  Columbia, SC (Remote)  •  6 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description


THIS POSITION WILL SERVE AS A CONTRACT SECURITY ENGINEER WITHIN THE

DEPARTMENT OF ADMINISTRATION’S DIVISION OF INFORMATION SECURITY.

THE SUCCESSFUL CANDIDATE WILL SHOW EXTENSIVE EXPERIENCE

SUPPORTING SECURITY AUTOMATION, CUSTOM TOOL DEVELOPMENT,

IDENTITY AND ACCESS MANAGEMENT, LINUX SYSTEMS AND A BROAD RANGE

OF ENTERPRISE SECURITY TECHNOLOGIES. THIS CONTRACTOR WILL WORK

WITH A LARGE ENTERPRISE SECURITY TEAM AND ASSIST THE SECURITY

AUTOMATIONS ARCHITECT, SECURITY ARCHITECTS, ENGINEERS, ANALYSTS

AND INCIDENT RESPONDERS WITH THE DESIGN, DEVELOPMENT,

IMPLEMENTATION, INTEGRATION AND CONTINUOUS IMPROVEMENT OF

SECURITY TOOLS, AUTOMATIONS, SYSTEMS AND SERVICES SUPPORTING

MULTIPLE STATE AGENCIES.

SUCCESSFUL CANDIDATE: THIS CONTRACTOR WILL BE PRIMARILY FOCUSED

ON SECURITY ENGINEERING, AUTOMATION, SCRIPTING, TOOL DEVELOPMENT,

SYSTEM INTEGRATION AND OPERATIONAL SUPPORT WHILE ALSO PROVIDING

IMPORTANT SUPPORT FOR IAM, LINUX-BASED SECURITY SENSORS, DSPM, ASM,

VULNERABILITY MANAGEMENT, SIEM, XDR, LOGGING, MONITORING AND

OTHER EVOLVING SECURITY TECHNOLOGIES. THE ROLE REQUIRES HANDS-ON

EXPERIENCE SUPPORTING BOTH SECURITY ENGINEERING AND SECURITY

OPERATIONS, INCLUDING INTERNAL APPLICATIONS, APIS, SDKS, DASHBOARDS,

COMMAND-LINE TOOLS, INCIDENT RESPONSE AUTOMATIONS, CVE ANALYSIS,

ACCESS CONTROLS, PLATFORM TROUBLESHOOTING, SYSTEM

ADMINISTRATION, DOCUMENTATION AND ANALYST ENABLEMENT. THE

CANDIDATE MUST BE ABLE TO SUPPORT STRATEGIC PLANNING, SOLUTION

DESIGN, DEVELOPMENT, IMPLEMENTATION, HSTR, TROUBLESHOOTING,

PERFORMANCE OPTIMIZATION AND CONTINUOUS IMPROVEMENT OF SECURE

SYSTEMS AND SERVICES IN A RAPIDLY CHANGING ENVIRONMENT.

MANDATORY SCREENING REQUIREMENTS: THESE REQUIREMENTS ARE

STRICTLY ENFORCED AND NON-NEGOTIABLE. NO EXCEPTIONS CAN BE

GRANTED. CANDIDATES WHO CANNOT PASS THESE REQUIREMENTS WILL NOT

BE ELIGIBLE FOR HIRE. ALL APPLICANTS MUST SUCCESSFULLY PASS A FULL

CREDIT CHECK AND CRIMINAL BACKGROUND CHECK DURING THE INITIAL

HIRING PROCESS. ONCE ONBOARD, THEY MUST OBTAIN AND RETAIN ANNUAL

CJIS CERTIFICATION AS PART OF THE ONGOING EMPLOYMENT PROCESS.

OTHER: THIS POSITION IS 100% REMOTE AND WILL PARTICIPATE IN AN ON-CALL

ROTATION SUPPORTING THE 24X7 SOC. AFTER-HOURS MAINTENANCE,

INCIDENT ESCALATION SUPPORT AND OPERATIONAL HANDOFFS WILL BE

REQUIRED AS NEEDED. PREFERENCE WILL BE SHOWN FOR CANDIDATES

PRESENTLY RESIDING INSIDE THE STATE OF SOUTH CAROLINA THAT CAN

PHYSICALLY ASSIST WITH EQUIPMENT AND HARDWARE MAINTENANCE AS

NEEDED.

Daily Duties / Responsibilities:

THIS POSITION IS 100% REMOTE AND WILL PARTICIPATE IN AN ON-CALL ROTATION

SUPPORTING A 24X7 SECURITY OPERATIONS CENTER SERVING MULTIPLE STATE

AGENCIES. OTHER AFTER-HOURS WORK MAY BE REQUIRED AS NEEDED.

PRIMARY RESPONSIBILITIES:

PRIMARILY ASSIST IN THE PLANNING, DESIGN, DEVELOPMENT, DEPLOYMENT,

ADMINISTRATION AND OPERATIONAL SUPPORT OF ENTERPRISE SECURITY

AUTOMATIONS AND CUSTOM SECURITY TOOLS, INCLUDING:

PYTHON-BASED AUTOMATIONS, INTERNAL WEB APPLICATIONS, APIS, SDKS, SCRIPTS,

DASHBOARDS, COMMAND-LINE UTILITIES AND SYSTEM INTEGRATIONS

AUTOMATED WORKFLOWS FOR ALERT ENRICHMENT, TRIAGE, INCIDENT RESPONSE,

CASE MANAGEMENT, NOTIFICATIONS, CONTAINMENT, ESCALATION AND REPORTING

CUSTOM TOOLS TO ASSIST WITH CVE VETTING, VULNERABILITY ENRICHMENT,

PRIORITIZATION, TRACKING AND SECURITY DECISION SUPPORT

SECONDARY RESPONSIBILITIES:

-- SECONDARILY ASSIST IN THE PLANNING, DESIGN, DEPLOYMENT AND OPERATIONAL

SUPPORT OF A BROAD RANGE OF SECURITY PLATFORMS, INCLUDING: DSPM, ASM,

IAM, VULNERABILITY MANAGEMENT, EMAIL SECURITY, ENDPOINT SECURITY, SIEM,

XDR, SOAR, LOGGING, MONITORING, NETWORK SECURITY, CLOUD SECURITY AND

THREAT INTELLIGENCE TECHNOLOGIES INTEGRATIONS WITH TICKETING, CASE

MANAGEMENT, NOTIFICATION, IDENTITY, DATA SOURCES, APIS, SDKS AND OTHER

ENTERPRISE SYSTEMS AS NEEDED SUPPORT FOR TECHNOLOGIES SUCH AS PALO ALTO

NETWORKS, PROOFPOINT, TENABLE, CRIBL, WHATSUP GOLD AND OTHER CURRENT

OR FUTURE SECURITY PRODUCTS

-- DEVELOP, TEST, DEPLOY AND MAINTAIN AUTOMATED SECURITY WORKFLOWS,

APPLICATIONS AND SCRIPTS USING PYTHON, POWERSHELL, BASH, REST APIS, JSON,

YAML, VENDOR SDKS AND OTHER APPROPRIATE TECHNOLOGIES.

-- ASSIST WITH IDENTITY AND ACCESS MANAGEMENT FUNCTIONS, INCLUDING USER

PROVISIONING, DEPROVISIONING, ACCESS REVIEWS, ROLE-BASED ACCESS CONTROL,

SERVICE ACCOUNTS, API CREDENTIALS, AUTHENTICATION, AUTHORIZATION AND

IDENTITY-BASED SYSTEM INTEGRATIONS.

-- DEPLOY, CONFIGURE, PATCH, MONITOR, OPTIMIZE AND TROUBLESHOOT LINUX

SYSTEMS SUPPORTING SECURITY SENSORS, COLLECTORS, CONNECTORS,

APPLICATIONS, CONTAINERS AND DATA-PROCESSING SERVICES, INCLUDING DOCKER-

BASED ENVIRONMENTS.

-- SUPPORT SECURITY ARCHITECTS, ENGINEERS, SOC ANALYSTS, INCIDENT

RESPONDERS AND AGENCY CUSTOMERS THROUGH PLATFORM TROUBLESHOOTING,

AUTOMATION DEVELOPMENT, SYSTEM INTEGRATION, TECHNICAL ESCALATION,

KNOWLEDGE TRANSFER AND OPERATIONAL HANDOFFS.

-- MONITOR AND REPORT ON AUTOMATION HEALTH, APPLICATION AVAILABILITY,

SYSTEM PERFORMANCE, SENSOR STATUS, INTEGRATION FAILURES, API ERRORS,

VULNERABILITY STATUS, PLATFORM ISSUES AND OTHER SECURITY ENGINEERING AND

OPERATIONAL METRICS.

-- ENSURE HIGH AVAILABILITY, RESILIENCE, BACKUP, RECOVERY, PATCHING, LIFECYCLE

MANAGEMENT, SECURE CONFIGURATION AND CONTROLLED CHANGE PROCESSES

FOR SECURITY TOOLS, LINUX SYSTEMS, APPLICATIONS, AUTOMATIONS AND

SUPPORTING SERVICES.

-- COLLABORATE WITH SECURITY ARCHITECTS, ENGINEERS, ANALYSTS, INCIDENT

RESPONDERS AND AGENCY STAKEHOLDERS TO ALIGN SOLUTIONS WITH BUSINESS

GOALS, INDUSTRY-STANDARD FRAMEWORKS, REGULATORY REQUIREMENTS AND

ORGANIZATIONAL RISK TOLERANCE.

Required Skills

(Ranked by Importance):

-- BROAD HANDS-ON SECURITY

ENGINEERING EXPERIENCE

SUPPORTING MULTIPLE

CYBERSECURITY TECHNOLOGIES,

SYSTEMS, INTEGRATIONS AND

OPERATIONAL FUNCTIONS.

-- Experience developing security

automations, scripts, integrations, utilities

and custom tools using Python.

-- Strong experience troubleshooting

complex technical issues across

applications, security platforms, operating

systems, networks, identity services and

integrations.

-- LINUX SYSTEM DEPLOYMENT,

CONFIGURATION, PATCHING,

SCRIPTING, SERVICE MANAGEMENT,

MONITORING, TROUBLESHOOTING AND

LIFECYCLE MANAGEMENT

-- Experience developing automation and

response workflows using Python,

PowerShell, Bash, REST APIs, JSON,

YAML and vendor SDKs.

Preferred Skills

(Ranked by Importance):

-- HANDS-ON EXPERIENCE

SERVING AS A SECURITY

ENGINEERING GENERALIST IN A

LARGE, MULTI-TENANT, SHARED-

SERVICES OR MANAGED-SERVICE

ENVIRONMENT.

-- Hands-on Linux, Docker, security

sensor, monitoring, scripting and

platform administration

experience.

-- Experience supporting SOC

analysts, security engineers,

incident responders, agency

customers and rapidly changing

operational priorities.

-- Familiarity with Palo Alto

Networks, Proofpoint, Tenable,

Cribl, WUG or other enterprise

security technologies and

experience developing playbooks,

runbooks, procedures and

technical documentation

-- Experience supporting IAM, DSPM, ASM,

vulnerability management, email security,

endpoint security, SIEM, SOAR, logging,

monitoring, cloud security and other

enterprise security technologies.

-- Strong understanding of enterprise

security architecture, incident response,

networking, access control, secure software

development, systems administration and

industry-standard cybersecurity frameworks.

Required Education:

-- BACHELOR'S DEGREE IN AN INFORMATION

TECHNOLOGY, COMPUTER SCIENCE, SOFTWARE

ENGINEERING OR INFORMATION SECURITY

RELATED FIELD

-- EIGHT YEARS OF RELEVANT WORK EXPERIENCE

(EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF

EDUCATION)

-- FIVE YEARS OF EXPERIENCE IN SUPPORTING

LARGE IT ENVIRONMENTS, SECURITY SYSTEMS,

SOFTWARE DEVELOPMENT AND/OR SYSTEM

DEPLOYMENTS

Preferred Certifications:

CISSP, Security+, GIAC OR OTHER

RELEVANT CYBERSECURITY

CERTIFICATION

LINUX, PYTHON, CLOUD, IAM OR

OTHER RELEVANT SECURITY

ENGINEERING OR PLATFORM

CERTIFICATION

Work Address: Choose an item.

Identify on-site, hybrid or fully remote?

• If hybrid, provide telecommuting

schedule.

• Fully remote

THIS POSITION IS HOUSED 100% REMOTE AND WILL

PARTICIPATE IN A MONTHLY ON-CALL ROTATION

SUPPORTING THE 24X7 SOC. AFTER-HOURS

MAINTENANCE, INCIDENT ESCALATION SUPPORT AND

OPERATIONAL HANDOFFS MAY BE REQUIRED AS

NEEDED. ALL WORK MUST BE PERFORMED WITHIN

THE CONTIGUOUS UNITED STATES. PREFERENCE

WILL BE GIVEN TO LOCAL SOUTH CAROLINA

BASED CANDIDATES CAPABLE OF FIELDING

SERVICES IN-STATE. CORE HOURS OF 0830-

0500 ET.

VPN or state equipment?

VPN

Additional Skills/Duties:

-- Experience integrating

enterprise technologies using

APIs, SDKs, web services,

structured data formats,

authentication methods and

vendor-supported interfaces.

--Experience developing or

supporting internal web

applications, APIs, dashboards,

databases, command-line tools

and related software

components.

-- Advanced Python development

experience and familiarity with

full-stack development, internal

web applications, APIs, databases,

source control, testing and

software deployment practices.


Requirements


Required Skills


Skill Type

Skill Name

Certification
Education
License
Other
Skill

Bachelors Degree in an Information Technology, Computer Science, Software Engineering or Information Security related field; 8+ years of relevant experience may be substituted in lieu of education

Certification
Education
License
Other
Skill

5+ years of experience in supporting large IT environments, security systems, software development, and/or system deployments

Certification
Education
License
Other
Skill

Hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions.

Certification
Education
License
Other
Skill

Experience developing security automations, scripts, integrations, utilities and custom tools using Python

Certification
Education
License
Other
Skill

Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations

Certification
Education
License
Other
Skill

Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting and lifecycle management

Certification
Education
License
Other
Skill

Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs

Certification
Education
License
Other
Skill

Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise security technologies

Certification
Education
License
Other
Skill

Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks


Preferred Skills


Skill Type

Skill Name

Certification
Education
License
Other
Skill

CISSP, Security+, GIAC or other relevant cybersecurity certification

Certification
Education
License
Other
Skill

Linux, Python, Cloud, IAM or other relevant security engineering or platform certification

Certification
Education
License
Other
Skill

Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared services, or managed service environment

Certification
Education
License
Other
Skill

Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience

Certification
Education
License
Other
Skill

Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities.

Certification
Education
License
Other
Skill

Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation
NOVALINK SOLUTIONS LLC

About NOVALINK SOLUTIONS LLC

Novalink Solutions LLC (Novalink) is a global consulting and engineering services company. The company provides temporary and permanent staffing services in a variety of areas including Information Technology, Accounting/Finance, Engineering, Insurance, Healthcare, Marketing/Operations, Government Affairs, and Administration. Relying on core competencies of its people and agile processes, Novalink commits to deliver highest quality of service to clients and partners at the most optimal pricing.

Novalink has a global network of experienced and dedicated technical professionals. The Company’s executive team members have an average of twenty (20) years in the Telecommunications and Information Technology areas along with proven experience in executive leadership and strategy implementation. Novalink has its main office in Atlanta, GA.

Novalink has three core business units (1) Managed Engineering Services and (2) Staff Augmentation Services in the areas of expertise in IT/Software Engineering and Telecommunications/Wireless Network Engineering and (3) Non-Executive Staffing Services. Novalink’s targeted markets include Government, Telecommunications companies, Insurance, Energy, Healthcare, and Utilities. Its current client list includes thirty five (35) State governments and several Fortune 500 companies in various target markets. Novalink is Federal GSA Schedule 70 Contract Holder.

Based out of Atlanta, with offices in New York, Maryland, North Carolina and Texas, Novalink’s primary customers are government agencies, telecommunications companies, the healthcare industry, along with energy and utilities.

Industry
IT & Software
Company Size
51-200 employees
Headquarters
Suwanee, Georgia
Year Founded
2003
Social Media