As per client requirements, U.S. Citizenship is required.
Bachelor's Degree in Information Technology, Information Security/Assurance, Engineering or related field of study; or at least 6 years of related experience and/or training; or equivalent combination of education and experience required
4-7 years of experience with managed Security Services or Information Security experience required, administration, configuration and management required, Enterprise Security administration required
4+ years of technical engineering experience with Swimlane and 1+ years of technical experience with Swimlane Turbine.
Strong understanding and experience working with application programming/scripting languages (Python, Java, Perl, PowerShell), as well as Regular Expressions.
Information security knowledge in one or more areas to include: Security Information and Event Management (SIEM), (preferably Splunk), end-point security products, email/phishing products, and case management/knowledge management systems such as ServiceNow.
Experienced with multiple information security concepts and methods such as vulnerability assessments, data classification, privacy assessments, incident response, security policy creation, enterprise security strategies, architectures, and governance.
Strong understanding of networking (TCP/IP, OSI model), operating system fundamentals (Windows, Linux), and security technologies (endpoint security, DLP, firewalls, IDS/IPS, etc.)
Experience with cloud-based service architecture (AWS, Azure, GCP)
Understanding of regulatory requirements and compliance issues affecting clients related to privacy and data protection, such as PCI DSS, GLBA, GDPR, etc.
Understanding of various security frameworks and/or methodologies (e.g. MITRE ATT&CK, NIST, etc.)
Strong written and presentational skills; ability to clearly communicate complex messages to a variety of audiences
Experience with enterprise architecture and working as part of a cross-functional team to implement solutions.
Strong interpersonal and communication skills; ability to work in a remote team environment.
Ability to work independently with minimal direction; self-starter/self-motivated.
Technical writing experience such as solution documentation and root cause analysis reports.
Possess high standard of integrity and confidentiality.
Security+, CISSP, GCIH, GCIA, GPEN, CEH and or other industry certifications preferred.