Security Orchestration SME : REMOTE POSITION
Dice is the leading career destination for tech experts at every stage of their careers. Our client, Software People, Inc., is seeking the following. Apply via Dice today!Please Let me know your Interest and rate for this position. Phone/Skype Hire. Remote. Resources local to Columbia, SC or surrounding city in South Carolina are preferredLocation: RemoteDuration: 12+ monthsThe position will work as a consulting Security Orchestration, Automation, and Response engineer within the Division of Information Security. This role will focus on Playbook development and Orchestration, Workflow automation, and logic optimization within the state SOAR platform. They will also build and maintain integrations between the state SOAR platform, SIEM, EDR, Firewalls, and other necessary security tools. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus.Responsibilities: Provide technical expertise and experience in creating efficient automation workflows. Develop, implement automations and optimize existing automations in response to security alerts and incidents. Build and maintain integrations with the SOAR platform. Create custom scripts when required to provide functionality not supported out of the box integrations. Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations. Proactively Coordinate with engineering, SOC, and IR support as needed to meet goals.Required Skills5+ years of experience with automation platforms or SOAR solutions5+ years of experience in supporting large IT environments and/or system deploymentsExperience with scripting and automation (Python, Bash, PowerShell, or similar)Experience with Rest API''s, JSON, and YAMLFamiliarity with MITRE ATT & CK frameworkExperience working in multi-tenancy environment; multi-agency or enterprise service projectsExperience creating automations within the Cortex XSOAR platformKnowledge of security monitoring use cases and incident response support.CertificationCISSP, CISA, CISO or equivalent advanced security certifications (CEH, OSCP, GPEN)Vendor certifications in SOAR or Automation technologiesEducationBachelors Degree in an Information Technology or Information Security related field; 8+ years of experience in security architecture may be substituted in lieu of education