Mediabistro logo
job logo

IT - ADMIN - Security Architect - Consultant

Abacus, Columbia, SC, United States


Position Information
Position Type Staff Augmentation Hours/Week 40 Billing Type Hourly Shift Day Projected Start Date 05/25/2026 Start Time 8:00 AM Projected End Date/Duration 12 Months from projected start date End Time 5:00 PM Bid Limit Per Vendor 2 Number of Positions 1 Desired Career Level Experienced Non-manager Minimum Education Level Bachelor's Degree Weekend None
Manager Information
Hiring Manager Name SOSC Admin Hiring Manager Email scmsp@knowledgeservices.com Hiring Manager Phone not provided MSP Delivery Specialist Hustedt, Lexi
Position Location
ddress 1201 Main Street Suite 600 City Columbi State South Carolin Zip 29201 Country UNITED STATES
Requirements
Travel Required No Security Required Yes Onboarding Category
The following are required for bid submission:

Resume
R2R
Cover Letter
Meets Work Location
Please ensure you attach the SC Cover Sheet (attached), a valid Right to Represent, and the candidate's resume with full legal first name, and last name. Withdrawn candidates will not be permitted to be replaced. If you would like to use a sub vendor, only 1 level deep, please submit the Sub Vendor usage form.

The State of South Carolina is looking for a Security Architect - Consultant (Detection Engineer)
Why is this position open: New position - supporting statewide security detection and response across South Carolina's state agencies. (Division of Information Security)

Will close to submissions on 04/30 at 5:00PM EST.
Interview Process: 1 round, Virtual/Online - potential for a 2nd round onsite as needed
Duration of the Contract: 12 months
Possibility for Extension: Yes
Work Location: Fully Remote
Candidate Location: No SC residency required. Open to nationwide candidates.

Full job description attached & required/preferred skills are stated below.

Required Skills
Skill Type
Skill Name

Education
Bachelors Degree in an Information Technology or Information Security related field; 8+ years of relevant work experience in security architecture may be substituted in lieu of education

Skill
5+ years of experience with scripting automation (Python, Bash, PowerShell, or similar)

Skill
5+ years of experience in supporting large IT environments and/or system deployments

Skill
Experience with Sigma, Yara, and other industry standard detection languages

Skill
Experience with MITRE Telecommunication & CK Framework
Preferred Skills
Skill Type
Skill Name

Certification
CISSP, CISA, CISO or equivalent advanced security certifications (CEH, OSCP. GPEN)

Certification
Vendor certifications in detection engineering

Skill
Experience with the Palo Alto Cortex XSIAM platform

Skill
Deep understanding of Windows/Linux artifacts

Other
Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

Attachment:
Primary Work Location: remote Secondary Work Location:
Company / Department culture (why do you enjoy working for the company - selling points for potential candidates): DEPARTMENT OF ADMINISTRATION - DIVISION OF INFORMATION SECURITY (Client)

Why is this position open ( new role, increased workload, new dept, resignation, promotion)?
If backfill Position - What separated the candidate, you initially selected from all the other resumes presented? New role supporting statewide security detection and response across South Carolina's state agencies.
Scope of the project: The position will work as a consulting Detection engineer within the Division of Information Security. This role will focus on creating, tuning, and maintaining new and existing detection rules within the State monitoring environment. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus. The engagement is expected to be needed for 12 months with the possibility of extension. Position Title: Security Architect - CONSULTANT Pre-employment Checks (drug, credit, criminal, motor vehicle)?
DRUG, DRIVING, CREDIT, CRIMINAL, E-VERIFY, SLED Daily Duties / Responsibilities:
PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

Review and tune current detection rules within the State SIEM.
Perform Gap analysis of the current detection coverage.
Develop detection rules/solutions to cover found Gaps.
monitor threat intelligence sources for new use cases.
Work with State SOC analysts to create and tune rules.
Work with the State Threat Hunter to identify and remediate detection coverage gaps.
Document processes, runbooks, and troubleshooting steps related to the SOAR and integrations.
Coordinate with engineering, SOC, and agency staff as needed to meet goals.
Other duties as needed.
dditional skills and duties:

Proven experience with detection tuning/development..
Experience with dashboard creation and reporting.
Excellent communication and customer service skills for agency-facing engagement.
Experience in working in multi-tenancy environment
Experience in multi-agency or enterprise service projects.
Preferred Skills (rank in order of Importance):

Experience with the Palo Alto Cortex XSIAM platform.
Deep understanding of Windows/Linux artifacts.
Required Education/Certifications:

BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY OR INFORMATION SECURITY RELATED FIELD
EIGHT YEARS OF RELEVANT WORK EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION
FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS AND/OR SYSTEM DEPLOYMENTS
5+ years of Strong scripting and automation skills (Python, Bash, PowerShell, or similar).
Understanding of Sigma, YARA, and other industry standard detection languages.
Familiarity with MITRE Telecommunication&CK framework
Preferred Education/Certifications:

CISSP, CISA, CISO or equivalent advanced security certification.
Additional relevant certifications (e.g., CEH, OSCP, GPEN).
VENDOR CERTIFICATIONS IN DETECTION ENGINEERING.
Resource is local to Columbia, South Carolina or a surrounding city in South Carolina

By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at Privacy Policy - Abacus.