What are the responsibilities and job description for the Security Architect position at InterSources Inc?
Job Title: Security Architect (10793)
Location: Columbia, SC Remote
Duration: 12 Months (Extension Possible)
Interview Process: 1 Round (Virtual) Possible 2nd Round (Onsite)
Key Responsibilities
- Design, develop, and optimize security detection rules and use cases
- Implement and manage detection engineering frameworks using tools like Sigma and YARA
- Align detection strategies with the MITRE ATT&CK framework
- Develop and maintain automation scripts using Python, Bash, PowerShell, or similar
- Analyze and interpret Windows and Linux system artifacts for threat detection
- Support enterprise-level security architecture and system deployments
- Collaborate with incident response teams to enhance detection coverage and reduce response time
- Integrate detection logic within platforms such as Palo Alto Cortex XSIAM
- Continuously improve detection pipelines and threat intelligence integration
Required Qualifications
- Bachelor’s degree in Information Technology, Information Security, or related field
- (or 8 years of relevant security architecture experience in lieu of degree)
- 5 years of experience in scripting/automation (Python, Bash, PowerShell, etc.)
- 5 years supporting large-scale IT environments or system deployments
- Hands-on experience with Sigma, YARA, or similar detection languages
- Strong understanding of the MITRE ATT&CK framework
Preferred Qualifications
- Certifications: CISSP, CISA, CISO, CEH, OSCP, GPEN (or equivalent)
- Vendor certifications in Detection Engineering
- Experience with Palo Alto Cortex XSIAM
- Deep expertise in Windows and Linux forensic artifacts