Security Information and Event Management (SIEM) Lead supporting IT Security staff augmentation. Developing plans to assess cybersecurity and implementing Zero Trust Architecture (ZTA) for GPO.
Responsibilities
Preparation of Task Order Management Plans
Cost analyses
Activity and project tracking schedules
Risk registers
Risk and issue mitigation strategies for all GPO SOC activities
Deployment of Defender for Endpoint agents to minimum threshold of Microsoft supported endpoint devices
Identification of target endpoint machines, OS versions, and deployment method
Creation of DfE deployment scripts
Deployment of DfE agents to identified endpoint machines
Verification of onboarding and reporting
Requirements
Must possess a blend of technical cybersecurity skills
Microsoft Sentinel expertise
Program/project management experience
Real-time security operations knowledge
Minimum 3+ working with Microsoft Cloud environments
Experience with Microsoft Sentinel (required)
Desired are Splunk, QRadar, ArcSight, LogRhythm, Elastic
Experience ingesting CEF, syslog, Windows Event Logs, JSON, XML
Ability to parse and normalize logs for threat detection
Familiarity with Azure Monitor, Log Analytics workspace, retention policies
Familiarity with MITRE ATT&CK framework
Hands-on experience with Microsoft 365 Defender, Defender for Endpoint
Strong understanding of Zero Trust, Identity Protection, and privileged access monitoring
Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or Engineering desired
Cybersecurity Consultant managing TDR delivery team to enhance client security posture. Collaborating with clients and leading technical contributions in cybersecurity services.
Cyber Security & Compliance Lead protecting data and systems at Displayr. Responsible for risk management, compliance frameworks, and innovative security solutions using AI.
Lead Engineer in Security Engineering at Allstate overseeing security controls and product security teams. Collaborating with global stakeholders to manage security architecture and meet key performance indicators.
AI Security Architect focusing on AI security and governance for Voya Financial's applications and projects. Leading initiatives in artificial intelligence and securing innovative technology solutions.
Senior Analyst for Third - Party Security at a leading law firm. Responsible for program execution and risk assessment regarding vendors and service providers.
Application Architecture Engineer responsible for defining software architecture frameworks and leading implementation teams. Driving innovation in developing robust and scalable applications at Schneider Electric.
Security Officer managing safety and security at Cromwell Hospital and Canary Wharf locations. Responding to security requests and maintaining logs while ensuring compliance with safety regulations.
Behavioral Health & Security Associate in Peoria providing care and oversight for patients with behavioral health needs. Ensuring a safe environment and effective support for patients and staff.
AI Security Engineer at Prologis focused on securing AI integrations and developing AI security controls. Collaborating with engineering and business teams to promote secure AI practices.
Project Coordinator managing security projects at The Missing Link, ensuring client satisfaction and project deliverables. Coordinating teams and maintaining timelines for project success in the IT field.