Security Operations Center Architect - Northeast (Remote)
Company: GuidePoint Security
Location: Boston
Posted on: March 18, 2023
Job Description:
GuidePoint Security provides trusted cybersecurity expertise,
solutions and services that help organizations make better
decisions and minimize risk. By taking a three-tiered, holistic
approach for evaluating security posture and ecosystems, GuidePoint
enables some of the nation's top organizations, such as Fortune 500
companies and U.S. government agencies, to identify threats,
optimize resources and integrate best-fit solutions that mitigate
risk.
Note: This is a remote position but candidates are required to live
in the Northeast region (ideally close to Boston or New York
Metro). Some travel in the Northeast may be required.
Role and responsibilities
Work with clients in a presales capacity to recommend and assist
with optimizing and enhancing their Security Incident and Event
Monitoring technology for vendors tools such as Splunk, Sumo Logic,
Securonix, Exabeam, IBM QRadar, Rapid7, LogRhythm, and/or Microsoft
Sentinel
- Work with clients Security Operations Center leadership to
provide guidance in the following areas:
- Playbook design and editing
- Workflow process creation
- Alert and incident response
- SIEM deployment, administration, and architecture design
- Make recommendations on SOAR including design, deployment and
architecture
- Provide guidance on Insider Threat program design and
implementation
- Provide direction on handling EDR, NDR, and next gen firewall
alerts and logging criteria in a security operations center.
Required Experience
- Security operations leadership role with at least 6 years'
experience in security operations with emphasis on but not limited
to the following technical criteria:
- SIEM (security incident and event monitoring) administration,
deployment, and/or architectural design on-premise/cloud based
- Data analytics (cloud based experience preferred)
- Security orchestration automation and response with
playbook/workflow/process design and implementation
- Familiarity with cybersecurity tools from the perspective of
responding to and mitigating risk from within a formalized security
operations center environment such as:
- Network/Endpoint/Extended Detection and Response
(NDR/EDR/XDR)
- Web Application Firewall (WAF), Next Generation Firewall (NGFW)
including but limited to URL filtering and traffic analyses
- Network Access Control (NAC), Secure Access Service Edge
(SASE)
- Identity/Privilege Access Management
- Understanding of Zero-Trust and associated technologies User
and/or Entity Behavioral Analysis (U/EBA)
- Understanding of Digital Forensics and Incident Response
(DFIR)
- Team player, works well with others and open to constructive
criticism with the intention to always provide value on all
customer engagements
- Willingness to work with multiple customers who may have
differing requirements
- Administration, design, and tracking of key metrics to
facilitate and report on strategic security operations functions
that impact overall business continuity
- Knowledge of and experience with security frameworks such as
NIST, CIS, and MITRE ATT&CK Nice to have skill set and
experience:
- Presales experience
- Microsoft Azure Security Center / Defender with Microsoft
Sentinel and Log Analytics
- AWS Cloud trail logging and more
- Python/PowerShell or similar coding relative to cybersecurity
skill sets
- Regular expressions, field extraction rules, JSON and/or XML
(XPath queries)
- Experience leading meetings and presentations for management
and executive level personnel.
- Insider threat program design and/or facilitation Why
GuidePoint?GuidePoint Security is a rapidly growing, profitable,
privately-held value added reseller that focuses exclusively on
Information Security. Since its inception in 2011, GuidePoint has
grown to over 750 employees, established strategic partnerships
with leading security vendors, and serves as a trusted advisor to
more than 3,000 Enterprise-Level customers.
Firmly-defined core values drive all aspects of the business, which
have been paramount to the company's success and establishment of
an enjoyable workplace atmosphere. At GuidePoint, your colleagues
are knowledgeable, skilled, and experienced and will seek to
collaborate and provide mentorship and guidance at every
opportunity.
This is a unique and rare opportunity to grow your career along
with one of the fastest growing companies in the nation.
Some added perks....
- Remote workforce primarily (U.S. based only, some travel may be
required for certain positions, working on-site may be required for
Federal positions)
- 100% employer-paid medical premiums (employee only $0
deductible and HSA plans) along with 75% employer-paid family
contributions
- 100% employer-paid dental premiums (employee only) along with
75% employer-paid family contributions
- 12 corporate holidays and a Flexible Time Off (FTO)
program
- Healthy mobile phone and home internet allowance
- Eligibility for retirement plan after 2 months at open
enrollment
- Pet Care plan
Keywords: GuidePoint Security, Buffalo , Security Operations Center Architect - Northeast (Remote), Other , Boston, New York
Didn't find what you're looking for? Search again!
Loading more jobs...