Junior Security Information and Event Management (SIEM) Engineer

Company: Iron Vine Security
Location: Dunkirk
Posted on: January 16, 2022

Position Summary:Iron Vine Security is a rapidly growing information security and information technology company in Washington, DC. We are looking to hire a Junior Security Information and Event Management (SIEM) Engineer to support a full range of cyber security services on a long-term contract in Washington DC. The position is full time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.Job Requirements: - Strong written and verbal communication skills. - Knowledge of software development models (e.g., Waterfall Model, Spiral Model). - Knowledge of structured analysis principles and methods. - Experience designing architectures and frameworks. - Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools. - Knowledge of the systems engineering process. - Experience with Windows, Linux, UNIX, any other major operating systems - Experience with programming in Python, C, Java, Perl, Shell and/or bash shell scripting. - Familiarity with REST API best practices and usage - Familiarity with security technologies (firewalls, IDS/IPS, AV, etc) and other SIEM products - Knowledge of critical infrastructure systems with information communication technology that were designed without system security considerations. - Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth). - Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.Certifications/Licenses: - Bachelor's degree or higher - 3+ years' experience security engineering experience and SIEM (security incident and event monitoring) administration, deployment, and/or architectural design - Certifications addressing security and risk management, asset security, security engineering, communications and network security, identity and access management, security assessment and testing, security operations, software development security, system security, network infrastructure - Active Public Trust clearance or eligible to obtain a Public Trust clearanceAdditional Experience Preferred: - In-depth knowledge of Information Theory (e.g., source coding, channel coding, algorithm complexity theory, and data compression). - Ability to apply system design tools, methods, and techniques, including automated systems analysis and design tools. - SIEM deployment, administration, and architecture design --- SOAR experience in deployment and architecture design preferred --- Experience with Insider Threat program design and implementation preferred - Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services. - Ability to apply network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth). - Experience designing the integration of hardware and software solutions. - Skill in discerning the protection needs (i.e., security controls) of information systems and networks. - Skill in evaluating the adequacy of security designs and conducting reviews of technical systems.Position Responsibilities: - Design hardware, operating systems, and software applications to adequately address cybersecurity requirements. - Develop and direct system testing and validation procedures and documentation. - Develop dashboarding capabilities, utilizing the enterprise SIEM and Enterprise Governance Risk and Compliance (eGRC) solution, for the ISSO's to perform real time monitoring of Agency information systems - Develop detailed security design documentation for component and interface specifications to support system design and development. - Conduct Assessments and support the development of Agency's technical security - tools (Tenable Nessus, WebInspect, Splunk, and BigFix) and other tools requested for vulnerabilities and compliance - Implement security designs for new or existing system(s). - Incorporate cybersecurity vulnerability solutions into system designs (e.g., Cybersecurity Vulnerability Alerts). - Create and track metrics using the dashboard in the SIEM/eGRC solution - Design, implement, test, and evaluate secure interfaces between information systems, physical systems, and/or embedded technologies. - Design, develop, integrate, and update system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation. - Perform security reviews and identify security gaps in architecture. - Trace system requirements to design components and perform gap analysis. - Verify stability, interoperability, portability, and/or scalability of system architecture.Iron Vine Security is a federal contractor. As such, we are subject to an Executive Order requiring all employees of federal contractors to be fully vaccinated for COVID-19 by December 8, 2021. Therefore, by applying for this position, you understand that you will be required to verify that you have been, or will be, fully vaccinated by December 8, or to verify that you cannot be vaccinated due to a legally recognized exception to the vaccine mandate set forth in the Executive Order.Note: -An individual is not considered to be fully vaccinated until two weeks after receiving the second vaccine dosage in a vaccine regimen involving two vaccines.Iron Vine Security is an equal opportunity employer. All qualified applicants are considered for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other category protected by applicable federal, state or local laws.

