Position: Senior Consultant 1 (hybrid-remote)
About the job Senior Consultant 1 (hybrid-remote)
7
Month Contract
This is a hybrid-remote role
Overview
Experience in the field of Information Systems Security is required. This role involves implementing and managing SIEM, firewall, web filtering, endpoint protection, and related security controls in a hybrid-remote environment.
Responsibilities
• Significant experience with Google Chronical, McAfee SIEM: configure and implement rules, data sets, APIs, and third-party cloud API integration to ingest logs from sources such as O365, Azure AD, and AWS; migrate and implement McAfee SIEM log data sets to Google Chronical; configure IOC and alerts; conduct searches of raw logs, investigate alerts, assets, domains, users, IPs, and files; use Google Cloud Threat Intelligence;
configure and monitor events using rules and run rules against historical data; working experience with YARA-L language.
• Experience with firewall rules, IP addressing, subnets, ports, and VPN: configure and implement firewall rules; audit firewall rules and network segmentation; verify and submit firewall rule requests.
• Experience with web filtering tools, specifically Zscaler (ZIA) and Cisco Umbrella: implement new web filtering solution Zscaler ZIA; test, verify and implement policies; create groups and grant access to groups.
• Experience with Next Gen Antivirus Crowd Strike to investigate and remediate incidents, alerts, IOCs, and IOAs.
• Experience with Active Directory (AD), GPOs, security groups, Windows Servers, and Desktop OS.
• Experience in Information Systems Security with working knowledge of relevant FISMA/NIST information security regulations and guidelines.
• Working knowledge of IT security best practices regarding networks, networking including protocol analysis, anomaly detection, and troubleshooting.
Qualifications Required Skill-Set
• Prior hands-on experience configuring, migrating and implementing rules, data sets, APIs, and third-party cloud APIs for the Google Chronicle SIEM.
• 2 years of experience in the above area.
• Prior hands-on experience configuring, migrating and implementing SIEM rules using McAfee SIEM.
• 3 years of experience
• Prior experience documenting, creating and provisioning network firewall rule sets.
• 3 years of experience
• Prior hands-on knowledge and experience conducting security analysis using Crowd Strike in a professional environment.
• 3 years of experience
• Prior hands-on knowledge and experience conducting group policy using Active Directory, Server and Desktop OS in a professional environment.
• 3 years of experience
• Prior hands-on knowledge and experience of TCP/IP segmentation, ports and DNS protocols.
• 3 years of experience
• Ability to demonstrate effective written and verbal communication skills.
#J-18808-Ljbffr
Apply Now
Apply Now