Senior Cybersecurity Automation Engineer (Must have Linux, SIEM, SOAR and IAM) - Fully REMOTE

RICEFW Technologies Inc

Columbia (SC)

Remote

USD 150,000 - 190,000

Full time

19 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

RiceFW Technologies Inc. is seeking a remote Security Engineer to support a 24x7 Security Operations Center for multiple state agencies. You will design and deploy automated security tools, Python-based automations, and dashboards, while assisting with IAM provisioning and incident response.

The role requires Linux expertise, SIEM/SOAR experience, and strong collaboration with cross‑functional teams. The position is 100% remote with potential on-call rotations and after-hours work as needed to

Qualifications

  • Hands-on security engineering across multiple cyber technologies and integrations.
  • Experience integrating enterprise technologies via APIs, SDKs, web services and vendor interfaces.
  • Troubleshooting complex issues across apps, security platforms, OS, networks and identity services.
  • Linux deployment, config, patching, scripting, monitoring and lifecycle management.
  • Automation and response workflows using Python, PowerShell, Bash, REST, JSON, YAML, SDKs.

Responsibilities

  • Plan, design, deploy, and operate automated security tools and integrations.
  • Develop Python-based automations, dashboards, scripts, and system integrations.
  • Automate workflows for alerting, triage, incident response, and reporting.
  • Support IAM functions, including provisioning, deprovisioning, and access reviews.
  • Collaborate with architects and SOC to ensure availability and security alignment.

Skills

Security engineering
APIs & SDKs
Python automation
Linux systems
Incident response
IAM & security tools
SIEM & SOAR
Networking knowledge

Education

Bachelor's degree
Eight years experience
Large IT environments

Tools

Docker
Palo Alto Networks
Proofpoint
Tenable
Cribl
WUG

Job description

THIS POSITION IS 100% REMOTE AND WILL PARTICIPATE IN AN ON-CALL ROTATION SUPPORTING A 24X7 SECURITY OPERATIONS CENTER SERVING MULTIPLE STATE AGENCIES. OTHER AFTER-HOURS WORK MAY BE REQUIRED AS NEEDED.

PRIMARY RESPONSIBILITIES:

PRIMARILY ASSIST IN THE PLANNING, DESIGN, DEVELOPMENT, DEPLOYMENT, ADMINISTRATION AND OPERATIONAL SUPPORT OF ENTERPRISE SECURITY AUTOMATIONS AND CUSTOM SECURITY TOOLS, INCLUDING:

PYTHON-BASED AUTOMATIONS, INTERNAL WEB APPLICATIONS, APIS, SDKS, SCRIPTS, DASHBOARDS, COMMAND-LINE UTILITIES AND SYSTEM INTEGRATIONS

AUTOMATED WORKFLOWS FOR ALERT ENRICHMENT, TRIAGE, INCIDENT RESPONSE, CASE MANAGEMENT, NOTIFICATIONS, CONTAINMENT, ESCALATION AND REPORTING

CUSTOM TOOLS TO ASSIST WITH CVE VETTING, VULNERABILITY ENRICHMENT, PRIORITIZATION, TRACKING AND SECURITY DECISION SUPPORT

SECONDARY RESPONSIBILITIES:
  • -- SECONDARILY ASSIST IN THE PLANNING, DESIGN, DEPLOYMENT AND OPERATIONAL SUPPORT OF A BROAD RANGE OF SECURITY PLATFORMS, INCLUDING: DSPM, ASM, IAM, VULNERABILITY MANAGEMENT, EMAIL SECURITY, ENDPOINT SECURITY, SIEM, XDR, SOAR, LOGGING, MONITORING, NETWORK SECURITY, CLOUD SECURITY AND THREAT INTELLIGENCE TECHNOLOGIES INTEGRATIONS WITH TICKETING, CASE MANAGEMENT, NOTIFICATION, IDENTITY, DATA SOURCES, APIS, SDKS AND OTHER ENTERPRISE SYSTEMS AS NEEDED SUPPORT FOR TECHNOLOGIES SUCH AS PALO ALTO NETWORKS, PROOFPOINT, TENABLE, CRIBL, WHATSUP GOLD AND OTHER CURRENT OR FUTURE SECURITY PRODUCTS.
  • -- ASSIST WITH IDENTITY AND ACCESS MANAGEMENT FUNCTIONS, INCLUDING USER PROVISIONING, DEPROVISIONING, ACCESS REVIEWS, ROLE-BASED ACCESS CONTROL, SERVICE ACCOUNTS, API CREDENTIALS, AUTHENTICATION, AUTHORIZATION AND IDENTITY-BASED SYSTEM INTEGRATIONS.
  • -- DEPLOY, CONFIGURE, PATCH, MONITOR, OPTIMIZE AND TROUBLESHOOT LINUX SYSTEMS SUPPORTING SECURITY SENSORS, COLLECTORS, CONNECTORS, APPLICATIONS, CONTAINERS AND DATA-PROCESSING SERVICES, INCLUDING DOCKER-BASED ENVIRONMENTS.
  • -- SUPPORT SECURITY ARCHITECTS, ENGINEERS, SOC ANALYSTS, INCIDENT RESPONDERS AND AGENCY CUSTOMERS THROUGH PLATFORM TROUBLESHOOTING, AUTOMATION DEVELOPMENT, SYSTEM INTEGRATION, TECHNICAL ESCALATION, KNOWLEDGE TRANSFER AND OPERATIONAL HANDOFFS.
  • -- MONITOR AND REPORT ON AUTOMATION HEALTH, APPLICATION AVAILABILITY, SYSTEM PERFORMANCE, SENSOR STATUS, INTEGRATION FAILURES, API ERRORS, VULNERABILITY STATUS, PLATFORM ISSUES AND OTHER SECURITY ENGINEERING AND OPERATIONAL METRICS.
  • -- ENSURE HIGH AVAILABILITY, RESILIENCE, BACKUP, RECOVERY, PATCHING, LIFECYCLE MANAGEMENT, SECURE CONFIGURATION AND CONTROLLED CHANGE PROCESSES FOR SECURITY TOOLS, LINUX SYSTEMS, APPLICATIONS, AUTOMATIONS AND SUPPORTING SERVICES.
  • -- COLLABORATE WITH SECURITY ARCHITECTS, ENGINEERS, ANALYSTS, INCIDENT RESPONDERS AND AGENCY STAKEHOLDERS TO ALIGN SOLUTIONS WITH BUSINESS GOALS, INDUSTRY-STANDARD FRAMEWORKS, REGULATORY REQUIREMENTS AND ORGANIZATIONAL RISK TOLERANCE.
Required Skills
(Ranked by Importance)
  • -- BROAD HANDS-ON SECURITY ENGINEERING EXPERIENCE SUPPORTING MULTIPLE CYBERSECURITY TECHNOLOGIES, SYSTEMS, INTEGRATIONS AND OPERATIONAL FUNCTIONS.
  • -- Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods and vendor-supported interfaces.
  • -- Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations.
  • -- LINUX SYSTEM DEPLOYMENT, CONFIGURATION, PATCHING, SCRIPTING, SERVICE MANAGEMENT, MONITORING, TROUBLESHOOTING AND LIFECYCLE MANAGEMENT
  • -- Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs.
  • -- Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise security technologies.
  • -- Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks.
Preferred Skills
(Ranked by Importance)
  • -- HANDS-ON EXPERIENCE SERVING AS A SECURITY ENGINEERING GENERALIST IN A LARGE, MULTI-TENANT, SHARED-SERVICES OR MANAGED-SERVICE ENVIRONMENT.
  • -- Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience.
  • -- Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities.
  • -- Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation.
Required Education:
  • -- BACHELOR'S DEGREE IN AN INFORMATION TECHNOLOGY, COMPUTER SCIENCE, SOFTWARE ENGINEERING OR INFORMATION SECURITY RELATED FIELD
  • -- EIGHT YEARS OF RELEVANT WORK EXPERIENCE (EXPERIENCE MAY BE SUBSTITUTED IN LIEU OF EDUCATION)
  • -- FIVE YEARS OF EXPERIENCE IN SUPPORTING LARGE IT ENVIRONMENTS, SECURITY SYSTEMS, SOFTWARE DEVELOPMENT AND/OR SYSTEM DEPLOYMENTS
Preferred Certifications:
  • CISSP, Security+, GIAC OR OTHER RELEVANT CYBERSECURITY CERTIFICATION
  • LINUX, PYTHON, CLOUD, IAM OR OTHER RELEVANT SECURITY ENGINEERING OR PLATFORM CERTIFICATION.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Architect - Consultant with Min 10yrs exp (Webcam or In Person Interview)(REMOTE_Anywhere in USA)
Security Architect - Consultant with Min 10yrs exp (Webcam or In Person Interview)(REMOTE_Anywhere in USA)

NextGen Solutions Corporation • New York (NY)

Remote
USD 140,000 - 190,000
Remote work
On-call rotation
Security Engineer
Security Engineer

Talent Groups • Columbia Township (MO)

On-site
USD 110,000 - 160,000
Senior Security Architect
Senior Security Architect

Accord Technologies Inc • Columbia (SC)

Remote
USD 150,000 - 210,000
Remote work
On-call rotation
Sr. Security Engineer - SIEM, Automation & Elastic Security
Sr. Security Engineer - SIEM, Automation & Elastic Security

Red Lobster, Inc. • Orlando (FL)

On-site
USD 90,000 - 130,000
Security Architect
Security Architect

SmartIMS Inc. • United States

Remote
USD 120,000 - 160,000
Information Systems Security Professional
Information Systems Security Professional

Vytwo • Dallas (TX)

Hybrid
USD 120,000 - 180,000
Security Architect ConsultantW2 ONLY
Security Architect ConsultantW2 ONLY

United Global Technologies, Inc. • Columbia (SC)

On-site
USD 120,000 - 160,000
Senior Security Automation Engineer (Remote in EST)
Senior Security Automation Engineer (Remote in EST)

GuidePoint Security LLC • United States

On-site
USD 120,000 - 160,000
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

OneMain Financial • Washington

On-site
USD 140,000 - 190,000
Security Engineer II
Security Engineer II

Healthcare Outcomes Performance Co. (HOPCo) • Phoenix (AZ)

On-site
USD 120,000 - 170,000