Opening for Cybersecurity Architect-TX//WA
Job title: -Cybersecurity Architect
Location: - Frisco, TX or Seattle, WA (Day 1 onsite)
JOB DESCRIPTION
· Designing & implementing preventive security, Defender policies
· Implementing threat-hunting & threat-management using Sentinel, ADX, LogAnalytics
· Enable Threat Problem Management
· Azure sentinel
· Automation
· Deployment
· Can runbooks in Azure
CUSTOMER platform of choice for most of SIEM/SOAR capability development is Azure; hence that is the area of expertise we will be interested in.
Looking for someone who can help develop our threat detection and threat management capabilities for our cloud landscape (Azure, AWS, GCP). This person should be able to lead design and development of threat detection/hunting solutions, threat management solutions and cloud-provider-native features/products. This person should be able to guide and enable team to deliver on preventative security and pre-emptive mitigations.
This person will need to be hands-on with actual experience building and operating threat-detection & threat-management practice in a production environment.
· Designing & implementing preventive security, Defender policies
· Implementing threat-hunting & threat-management using Sentinel, ADX, LogAnalytics
· Designing & implementing and operating security incident management process & platform as part of threat management
· Designing & implementing preventative policies, runbooks/SOPs for resolution, automated resolution framework, and enforcement solutions
· Enable Threat Problem Management: Aligning other parts of security domain (IDM, IAM, Data security, etc.) with detected/discovered threats or security incidents to ensure shift-left in threat management.
o Designing & implementing infra-authentication & authorization, infrastructure automation (infra-as-code, gitops), config management
o Designing & implementing policies for data encryption, data access, DB logging, data retention
o Designing & implementing for secrets & key management, auto log enablement, log aggregation for DLP/SIEM
You received this message because you are subscribed to the Google Groups "Thivya Jothi" group.
To unsubscribe from this group and stop receiving emails from it, send an email to thivyajothi284+unsubscribe@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/thivyajothi284/CALXtW0u9vO4tu3yGhUYLN5rpYRQ_ZhuPnc9drY_1vxuZ%3DCh21g%40mail.gmail.com.
Comments
Post a Comment
Thanks