See all roles

Security Analyst (SOAR Engineer) (Remote - Onsite interviews)

Work from home Full-time role Hiring

Client: State of SC Posting title: IT - ADMIN - Security Architect - Consultant Posting ID: 10794 Agency: ADMIN Division: Division of Technology - Information Security (DIS) Title: Security Architect Consultant Address: 1201 Main Street Suite 600, Columbia, SC - 29201 Projected Start Date: 05/25/2026 Projected End Date/Duration: 12 Months from projected start Possibility for Extension: Yes Work Location: Fully Remote Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed The following are required for bid submission:

  • Resume
  • R2R
  • Cover Letter
  • Meets Work Location

Job Description

  • The State of South Carolina is looking for a Security Analyst - Consultant (SOAR Engineer)
  • Why is this position open: New role supporting statewide security automation via the state SOAR platform across South Carolina's state agencies (Division of Information Security)

Required Skills

  • Education: Bachelor's Degree in an Information Technology or Information Security related field; 8+ years of experience in security architecture may be substituted in lieu of education
  • 5+ years of experience with automation platforms or SOAR solutions
  • 5+ years of experience in supporting large IT environments and/or system deployments
  • Experience with scripting and automation (Python, Bash, PowerShell, or similar)
  • Experience with Rest API's, JSON, and YAML
  • Familiarity with MITRE ATT & CK framework
  • Experience working in multi-tenancy environment; multi-agency or enterprise service projects

Preferred Skills

  • Certification: CISSP, CISA, CISO or equivalent advanced security certifications (CEH, OSCP, GPEN)
  • Certification: Vendor certifications in SOAR or Automation technologies
  • Experience creating automations within the Cortex XSOAR platform
  • Knowledge of security monitoring use cases and incident response support.
  • Resources local to Columbia, SC or surrounding city in South Carolina are preferred

Description Why is this position open (new role, increased workload, new dept, resignation, promotion)?

  • If backfill Position What separated the candidate, you initially selected from all the other resumes presented? New role supporting statewide security automation via the state SOAR platform across South Carolina's state agencies.

Scope of the project:

  • The position will work as a consulting Security Orchestration, Automation, and Response engineer within the Division of Information Security. This role will focus on Playbook development and Orchestration, Workflow automation, and logic optimization within the state SOAR platform. They will also build and maintain integrations between the state SOAR platform, SIEM, EDR, Firewalls, and other necessary security tools. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus. The engagement is expected to be needed for 12 months with the possibility of extension.

Pre-employment Checks (drug, credit, criminal, motor vehicle)?

  • DRUG, DRIVING, CREDIT, CRIMINAL, E-VERIFY, SLED

Daily Duties / Responsibilities:

  • PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).
  • Provide technical expertise and experience in creating efficient automation workflows.
  • Develop, implement automations and optimize existing automations in response to security alerts and incidents.
  • Build and maintain integrations with the SOAR platform.
  • Create custom scripts when required to provide functionality not supported out of the box integrations.
  • Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
  • proactively Coordinate with engineering, SOC, and IR support as needed to meet goals.
  • other duties as needed.

ADDITIONAL SKILLS/DUTIES:

  • EXPERIENCE WITH DASHBOARD CREATION AND REPORTING.
  • EXCELLENT COMMUNICATION AND CUSTOMER SERVICE SKILLS FOR AGENCY-FACING ENGAGEMENT.

Preferred Education/Certifications:

  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).
  • VENDOR CERTIFICATIONS IN SOAR OR AUTOMATION TECHNOLOGIES.

Required Education/Certifications:

  • BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
  • EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
  • FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
  • 5+ years of experience with automation platforms or SOAR solutions.
  • Strong scripting and automation skills (Python, Bash, PowerShell, or similar).
  • Understanding of REST APIs, JSON, and YAML.
  • Familiarity with mitre att & ck framework
  • Experience in working in multi-tenancy environment; Experience in multi-agency or enterprise service projects.

Remote About the Company: Cleo Consulting Apply tot his job Apply To this Job

You might like

Cybersecurity Analyst, Mid job at Booz Allen Hamilton in Washington, DC

Work from home Full-time role

Security Analyst - Tier 3 (West Coast)

Work from home Full-time role

Security Incident Response Analyst (REMOTE)

Work from home Full-time role

Threat Intelligence Researcher

Work from home Full-time role

Qa engineer (oracle utilities) - remote work type

Work from home Full-time role

Senior Analyst, Cyber Threat Intelligence, Mandiant, Google Cloud job at Google in CA

Work from home Full-time role

System Security Analyst (full-time; primarily remote)

Work from home Full-time role

Fully Remote: Advertising Account Executive / Project Manager

Work from home Full-time role

Remote - Scrum Master

Work from home Full-time role

Remote Senior Program Manager

Work from home Full-time role

Remote | Entry Level | Sports & Events Coordinator

Work from home Full-time role

Experienced Full Stack Amazon Virtual Assistant/Data Entry Specialist – E-commerce Operations and Data Management

Work from home Full-time role

Experienced Remote Chat Specialist – Automotive Industry Customer Service Representative

Work from home Full-time role

Digital Marketing Manager job at World Education Services - WES in New York, NY

Work from home Full-time role

Experienced Online Data Entry Specialist – Work from Home Opportunity with arenaflex

Work from home Full-time role

Experienced Data Entry Operator – Database Management and Customer Information Maintenance at arenaflex

Work from home Full-time role

Experienced Full Stack Customer Support Representative – Live Chat and Remote Work Opportunities

Work from home Full-time role

Experienced Home-Based Data Entry Specialist – Remote Part-Time Opportunity with arenaflex

Work from home Full-time role

Liability Claims Examiner | Auto PD & BI | Dedicated Client | Remote

Work from home Full-time role

A123 & Remediation Senior Manager

Work from home Full-time role