Location (remote or physical location): Morrisville, NC or fully remote considered
Overview:
NikSoft Systems Corporation is a recognized Information Technology solutions provider. Founded in 1998 and based in Reston, Virginia, NikSoft is a CMMI Level 3 Certified company with an established reputation for excellence and on-time delivery with a consistently high customer satisfaction rating from its Federal Government and private consulting contracts.
NikSoft is currently conducting a search for a Cyber Architect II to add to its cybersecurity team in support of the United States Postal Service. The successful candidate will experience an unparalleled large-scale hybrid-cloud environment with over 800 IT systems generating millions of digital transactions in support of a diverse user base spread across the entire US. Join the NikSoft team to scale your career to the next level.
Must be able to:
• Lead to integrate Threat Intel platform with other security tools and utilize automation opportunities.
• Create system security concept of operations (ConOps) documents.
• Integrate organizational goals and objectives into security architecture.
• Develop and integrate cybersecurity designs for systems.
• Test, evaluate, and verify hardware and/or software to determine if systems and architecture are consistent with cybersecurity architecture guidelines and requirements.
• Determine and prioritize essential system capabilities and business functions.
• Perform security reviews, Identify gaps in security architecture, and determine design and architecture effectiveness.
• Assist in the process configuring or re-configuring the security tools.
Strong working knowledge of:
• Security Information and Event Management (SIEM) systems.
• Intrusion Detection/Prevention Systems (IDS/IPS).
• Network and Host malware detection and prevention.
• Web/Email gateway security technologies.
• Security tools and threat intel platform integration and utilization of available AI/ML opportunities.
• Demonstrated ability to establish priorities, manage shifting priorities, and handle numerous time-sensitive projects with multiple deadlines.
• Ability to accomplish goals working through formal and informal channels, with diplomacy and tactfulness.
• Demonstrated solid planning and organizational skills.
• Demonstrated experience working independently and as part of a team.
• Weekday shift (M-F, 7AM-4PM eastern time), with possibility of 100% remote.
Required Qualifications:
• Bachelors degree in an engineering/cyber discipline with at least 5 years of professional experience; or equivalent experience/combined education; or 3 years of professional experience with a related Masters degree.
• 5 years experience with SIEM, MITRE ATT&CK Framework, Endpoint Security Services, security tools onboarding and implementation.
• Experience in analyzing alerts from Cloud, SIEM and EDR tools, and alerts tuning process.
• Familiarity with cybersecurity operation center functions.
• Experience configuring and re-configuring security tools.
• Experience with security framework and can interpret use cases into actionable monitoring solutions.