Cybersecurity Professional – Security Tools & Analytics
Job Description
Electrosoft Services Inc is seeking an experienced cybersecurity professional to administer, engineer, integrate, automate, and support enterprise security tools and security analytics platforms. The role emphasizes endpoint security, asset intelligence and CAASM capabilities, SIEM and analytics, scripting and API integrations, troubleshooting, and compliance.
Role Responsibilities
- Administer, engineer, maintain, and troubleshoot enterprise security tools and infrastructure platforms, including CrowdStrike, Armis, Axonius, and the Elastic Stack / Elastic SIEM.
- Support endpoint security, asset discovery and CAASM, security analytics, dashboards, monitoring, reporting, policies, integrations, and platform health.
- Develop and maintain integrations using REST APIs and scripting or programming technologies including Python, BASH/Shell, Perl, JavaScript, and related tools.
- Automate security and infrastructure administration, monitoring, reporting, and operational processes.
- Perform command-line administration, configuration, operations and maintenance (O&M), and troubleshooting for security infrastructure, servers, applications, APIs, and network connectivity.
- Collaborate with Security, Infrastructure, Network, Server, and Operations teams to resolve technical issues and improve platform performance.
- Lead or support security tool implementations, upgrades, migrations, integrations, and enhancement initiatives.
- Gather technical and business requirements and translate them into technical specifications, workflows, implementation plans, and solutions.
- Track project requirements, dependencies, risks, issues, schedules, and action items.
- Evaluate existing processes and systems to identify opportunities for automation, optimization, and tighter integration.
- Maintain technical documentation, system designs, configurations, procedures, runbooks, and service records.
- Apply security hardening and compliance standards, including CIS Controls, NIST SP 800-53 Rev. 5, and DISA STIGs.
- Provide technical leadership and mentoring to junior team members.
Required Qualifications
- Bachelor’s degree or higher in Computer Science, Information Systems, Cybersecurity, Information Security, Information Technology, Engineering, or a related field, or equivalent combination of education and experience.
- Approximately 8+ years of experience in cybersecurity, information security, security engineering, infrastructure engineering, or related IT disciplines.
- Current professional security certification such as CISSP, CISM, ISSEP, or equivalent or higher-level certification.
- Hands-on experience with enterprise security technologies, including CrowdStrike and preferably Armis and/or Axonius.
- Experience with Elastic Stack / Elastic SIEM or comparable SIEM and security analytics platforms.
- Strong scripting and automation skills using Python, BASH/Shell, Perl, JavaScript, or similar languages.
- Experience with REST APIs, system integrations, and security automation.
- Strong command-line administration and troubleshooting skills, including knowledge of network fundamentals and LAN/WAN troubleshooting.
- Strong analytical, problem-solving, communication, documentation, and collaboration skills.
- Ability to work independently, support cross-functional teams, and participate in a 24/7/365 on-call rotation.
Technology Focus
CrowdStrike, Armis, Axonius, Elastic Stack, Elastic SIEM, endpoint security, asset intelligence/CAASM, SIEM, REST APIs, Python, BASH/Shell, Perl, JavaScript, command-line administration, CIS Controls, NIST SP 800-53 Rev. 5, DISA STIGs.
Location and Salary
- Location: Atlanta, GA (onsite)
- Salary: USD 130,000 - 150,000 per year