About the job Senior Consultant 1 (hybrid-remote)
7Month Contract
This is a hybrid-remote role
Overview
Experience in the field of Information Systems Security is required. This role involves implementing and managing SIEM, firewall, web filtering, endpoint protection, and related security controls in a hybrid-remote environment.
Responsibilities
- Significant experience with Google Chronical, McAfee SIEM: configure and implement rules, data sets, APIs, and third-party cloud API integration to ingest logs from sources such as O365, Azure AD, and AWS; migrate and implement McAfee SIEM log data sets to Google Chronical; configure IOC and alerts; conduct searches of raw logs, investigate alerts, assets, domains, users, IPs, and files; use Google Cloud Threat Intelligence; configure and monitor events using rules and run rules against historical data; working experience with YARA-L language.
- Experience with firewall rules, IP addressing, subnets, ports, and VPN: configure and implement firewall rules; audit firewall rules and network segmentation; verify and submit firewall rule requests.
- Experience with web filtering tools, specifically Zscaler (ZIA) and Cisco Umbrella: implement new web filtering solution Zscaler ZIA; test, verify and implement policies; create groups and grant access to groups.
- Experience with NextGen Antivirus CrowdStrike to investigate and remediate incidents, alerts, IOCs, and IOAs.
- Experience with Active Directory (AD), GPOs, security groups, Windows Servers, and Desktop OS.
- Experience in Information Systems Security with working knowledge of relevant FISMA/NIST information security regulations and guidelines.
- Working knowledge of IT security best practices regarding networks, networking including protocol analysis, anomaly detection, and troubleshooting.
Qualifications
Required Skill-Set
- Prior hands-on experience configuring, migrating and implementing rules, data sets, APIs, and third-party cloud APIs for the Google Chronicle SIEM.
- 2 years of experience in the above area.
- Prior hands-on experience configuring, migrating and implementing SIEM rules using McAfee SIEM.
- 3 years of experience
- Prior experience documenting, creating and provisioning network firewall rule sets.
- 3 years of experience
- Prior hands-on knowledge and experience conducting security analysis using CrowdStrike in a professional environment.
- 3 years of experience
- Prior hands-on knowledge and experience conducting group policy using Active Directory, Server and Desktop OS in a professional environment.
- 3 years of experience
- Prior hands-on knowledge and experience of TCP/IP segmentation, ports and DNS protocols.
- 3 years of experience
- Ability to demonstrate effective written and verbal communication skills.