Senior Consultant ; hybrid-remote
Position: Senior Consultant 1 (hybrid-remote) About the job Senior Consultant 1 (hybrid-remote) 7 Month Contract This is a hybrid-remote role Overview Experience in the field of Information Systems Security is required. This role involves implementing and managing SIEM, firewall, web filtering, endpoint protection, and related security controls in a hybrid-remote environment. Responsibilities • Significant experience with Google Chronical, McAfee SIEM: configure and implement rules, data sets, APIs, and third-party cloud API integration to ingest logs from sources such as O365, Azure AD, and AWS; migrate and implement McAfee SIEM log data sets to Google Chronical; configure IOC and alerts; conduct searches of raw logs, investigate alerts, assets, domains, users, IPs, and files; use Google Cloud Threat Intelligence; configure and monitor events using rules and run rules against historical data; working experience with YARA-L language. • Experience with firewall rules, IP addressing, subnets, ports, and VPN: configure and implement firewall rules; audit firewall rules and network segmentation; verify and submit firewall rule requests. • Experience with web filtering tools, specifically Zscaler (ZIA) and Cisco Umbrella: implement new web filtering solution Zscaler ZIA; test, verify and implement policies; create groups and grant access to groups. • Experience with Next Gen Antivirus Crowd Strike to investigate and remediate incidents, alerts, IOCs, and IOAs. • Experience with Active Directory (AD), GPOs, security groups, Windows Servers, and Desktop OS. • Experience in Information Systems Security with working knowledge of relevant FISMA/NIST information security regulations and guidelines. • Working knowledge of IT security best practices regarding networks, networking including protocol analysis, anomaly detection, and troubleshooting. Qualifications Required Skill-Set • Prior hands-on experience configuring, migrating and implementing rules, data sets, APIs, and third-party cloud APIs for the Google Chronicle SIEM. • 2 years of experience in the above area. • Prior hands-on experience configuring, migrating and implementing SIEM rules using McAfee SIEM. • 3 years of experience • Prior experience documenting, creating and provisioning network firewall rule sets. • 3 years of experience • Prior hands-on knowledge and experience conducting security analysis using Crowd Strike in a professional environment. • 3 years of experience • Prior hands-on knowledge and experience conducting group policy using Active Directory, Server and Desktop OS in a professional environment. • 3 years of experience • Prior hands-on knowledge and experience of TCP/IP segmentation, ports and DNS protocols. • 3 years of experience • Ability to demonstrate effective written and verbal communication skills. #J-18808-Ljbffr Apply tot his job