Bachelor's degree in IT, Information Security, or related field (or 8 years of relevant experience)
5 years of experience in large IT environments or system deployments
Strong understanding of enterprise security architecture and engineering
Experience with enterprise security tools including SIEM, XDR, and DLP
Automation and scripting skills in Python or Bash
Familiarity with cybersecurity best practices and threat detection
Knowledge of both Linux and Windows security configurations
Responsibilities
Assist in planning, design, and deployment of enterprise security platforms like Cribl and SIEM
Support operational activities for vulnerability management and DLP solutions
Collaborate with security architects to align solutions with business goals and regulations
Design and manage countermeasures against known and emerging security threats
Ensure consistent application and effectiveness of security controls across the infrastructure
Support incident detection and response through log analysis and monitoring
Develop technical documentation and implementation guides as necessary
Benefits
Participate in an on-call roster to enhance responsiveness
Occasional onsite work for local administrative duties
Opportunities for professional certification and continued education
Access to advanced enterprise security tools and technologies
Collaborative work environment with cross-functional teams
Full Job Description
Responsibilities
Mainly assist with planning, design, deployment, and operational support of enterprise security platforms, including:
Cribl data modeling and log pipeline ingestion
Security Information and Event Management (SIEM)
Design and configuration of Linux-based security sensors and endpoint monitoring tools
Also assist with planning, design, deployment, and operational support of:
Extended Detection and Response (XDR)
Vulnerability management platforms and processes
Data Loss Prevention (DLP) solutions
Security awareness and training platforms
Work with security architects to design and implement enterprise security solutions that align with business goals, regulatory requirements, and organizational risk tolerance.
Design, deploy, and manage countermeasures against known security threats, and help build mitigation strategies for emerging threats.
Make sure security controls are applied consistently across enterprise infrastructure and applications, validate control effectiveness, and recommend improvements.
Support incident detection and response through monitoring, log analysis, and reporting.
Develop technical documentation, implementation guides, and SOPs as needed.
Perform other duties as assigned in support of the Client's Information Security division.
Participate in an on-call roster.
Occasionally work onsite at South Carolina facilities and perform local administrative tasks as needed (preferred).
Required Skills
Cribl data modeling and log pipeline design and implementation
Strong understanding of enterprise security architecture and engineering principles