Home

Need - IA-DOM DoIT-TS4-EDR Architect - (Remote) at Remote, Remote, USA
Email: [email protected]
From:

Pranjali Kumari,

Infologitech

[email protected]

Reply to:   [email protected]

Job Description:
This position will support the State of Iowas Office of the Chief Information Officer (OCIO), Information Security Services (ISS) Bureau with focus on the State of Iowas Enterprise Endpoint Detection and Response (EDR) platform and associated services.
This position will support the State of Iowas Office of the Chief Information Officer (OCIO), Information Security Services (ISS) Bureau with focus on the State of Iowas Enterprise Endpoint Detection and Response (EDR) platform and associated services. EDR Architect: Provide tier 3 support and develops EDR architecture, EDR federation, and be the primary administrator for the EDR platform.
The purpose of this position is to recommend security best practices, develop EDR architecture (including federation), hardening specifications, and support the State of Iowa Endpoint Detection and Response tools across the State of Iowa. These positions will augment state staff and will be responsible for the implementation, maintenance, and continual improvement of Iowas EDR. The EDR Architect will manage all aspects to the EDR solutions including: 
Work closely with SOC engineer and analyst on Incident Response ensuring containment strategies and risk reduction on endpoints (vulnerabilities). 
Developing strategies to allow for a multi-tenant environment. 
Understand and provide users and customers on the difference between anti-virus protections and malware prevention. 
Work closely with the EDR team and users regarding feature updates to the EDR system. 
Provide documentation on changes or add-ons to the system. 
Develop pathway to allow EDR information into the central Security information and event management (SIEM) and intelligence feeds. 
Provide training when needed on EDR system 
Develop strong relationships with vendors and users to eliminate unknowns and ensure clarity to system capabilities. 
Intermittently required to participate in incident handling processes such as incident discovery, analysis and verification, incident tracking, containment and recovery, incident response coordination, escalation, and notification.

Requirements:
Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), GIAC Security Essentials (GSEC), or other information security certification. 
Demonstrated experience engineering and implementing an Enterprise Endpoint Detection and Response product. 
Strong understanding of security technologies and strategies, including but not limited to firewalls, IDS, policy management, security processes/best-practice, logging/monitoring, antivirus, vulnerability assessment, patch management, and incident response.
Strong understanding of common and emerging attack vectors, penetration methods and countermeasures. 
Must be an individual of high integrity and be a model of unwavering integrity to others. 
Demonstrated ability to work effectively with customers to solve business challenges while balancing the need for confidentiality, integrity, and availability.  
Demonstrated commitment to fostering a diverse working environment. 
Demonstrated ability to work independently, as part of a team of peers, and to support and contribute to a multidisciplinary team environment. 
Solid knowledge of conflict resolution and incident escalation.
Demonstrated ability to solve complex problems, convey both oral and written instruction, and handle multiple task interruptions while providing services in a professional and courteous manner. 
Proven ability to work with diverse audiences and translate technical information into non-technical information. 
Demonstrated ability to resolve issues in a variety of complex situations which require complex judgments and solutions based on sophisticated analytical thought.

Skills:
Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), GIAC Security Essentials (GSEC), or other Required 7 Years
Demonstrated experience engineering and implementing an Enterprise Endpoint Detection and Response product. Required 7 Years
Strong understanding of security technologies and strategies, including but not limited to: firewall, IDS, policy management, security processes/best Required 7 Years
Strong understanding of common and emerging attack vectors, penetration methods and countermeasures. Required 7 Years
Demonstrated ability to work independently, as part of a team of peers, and also to support and contribute to a multidisciplinary team environment. Required 7 Years
Solid knowledge of conflict resolution and incident escalation. Required 7 Years
Demonstrated ability to solve complex problems, convey both oral and written instruction, and handle multiple task interruptions while providing serv Required 7 Years
Proven ability to work with diverse audiences and translate technical information into non-technical information. Required 7 Years
Demonstrated ability to resolve issues in a variety of complex situations which require complex judgments and solutions based on sophisticated analyt Required 7 Years

Regards,

Pranjali Kumari

US IT Recruiter | InfoLogitech, Inc.

3 Independence Way, Suite 117, Princeton, NJ - 08540

Direct 609-212-0619

Email:
[email protected]
www.infologitech.com

Keywords: information technology New Jersey
[email protected]
View all
Thu Nov 30 19:21:00 UTC 2023

To remove this job post send "job_kill 896055" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 0

Location: ,