Cyber Security Engineer (Remote - Onsite Interviews)

Other Jobs To Apply

Client: State of SC
Posting title: IT - ADMIN - Security Architect - Consultant
Posting ID: 13810
Title: Security Architect - Consultant
Agency: ADMIN
Division: Division of Technology - Information Security (DIS)
Projected Start Date: 10/19/2026
Projected End Date/Duration: 12 Months from projected start date
Address: 1201 Main Street Suite 600, Columbia, South Carolina - 29201
Remote

The following are required for bid submission:

  • Resume
  • R2R
  • Cover Letter
  • Meets Work Location

Position Description

  • Please ensure you attach the SC Cover Sheet (attached), a valid Right to Represent, and the candidate's resume with full legal first name, and last name. Posting attachments should be named as AttachmentName_PostingID_LastName_FirstName. Ex: Resume_1234_Last_First, RTR_1234_Last_First, Coversheet_1234_Last_First
  • The State of South Carolina is looking for a Security Architect - Consultant
  • Why is this position open: New Position - This position will serve as a contract security engineer within the Dept. of Administration's Division of Information Security. This is a repost of posting ID 13280 - DO NOT submit resources that were previously submitted to posting 13280.
  • Interview Process: 1 round, virtual or onsite for local resources
  • Duration of the Contract: 12 months
  • Possibility for Extension: Yes
  • Work Location: Fully Remote.
  • Candidate Location: No South Carolina residency required. Open to nationwide candidates; must be able to work eastern time zone hours. All travel-related costs for onsite work will be the responsibility of the resource, regardless of the frequency of onsite work.
  • After-hours maintenance, incident escalation support, and operational handoffs may be required as needed.
  • Please Note: This is a repost of posting ID 13280 - DO NOT submit resources that were previously submitted to posting 12380. Interview feedback from posting ID 13280 is included in the SOW attachment.
  • Full job description attached & required/preferred skills are stated below.

Background screenings required for all Admin postings:

  • Mandatory screening requirements: these requirements are strictly enforced and non-negotiable. No exceptions can be granted. Candidates who cannot pass these requirements will not be eligible for hire. All applicants must successfully pass a full credit check and criminal background check during the initial hiring process. Once onboard, they must obtain and retain annual cjis certification as part of the ongoing employment process.
  • 7 year standard Background check
  • Credit history
  • Driving Record (MVR)
  • E-Verify
  • Sled Check

CJIS certification will be required for this position and processed by client

  • Yes

Scope of the project:

  • This position will serve as a contract security engineer within the department of administration's division of information security. The successful candidate will show extensive experience supporting security automation, custom tool development, identity and access management, linux systems and a broad range of enterprise security technologies. This contractor will work with a large enterprise security team and assist the security automations architect, security architects, engineers, analysts and incident responders with the design, development, implementation, integration and continuous improvement of security tools, automations, systems and services supporting multiple state agencies.
  • Successful candidate: this contractor will be primarily focused on security engineering, automation, scripting, tool development, system integration and operational support while also providing secondary support for iam, linux-based security sensors, dspm, siem, xdr, logging, monitoring and other evolving security technologies. The role requires hands-on experience supporting both security engineering and security operations, including internal applications, apis, sdks, dashboards, command-line tools, automations, access controls, platform troubleshooting, system administration, documentation and analyst enablement. The candidate must be able to support strategic planning, solution design, development, implementation, troubleshooting, performance optimization and continuous improvement of secure systems and services in a rapidly changing environment.
  • Mandatory screening requirements: these requirements are strictly enforced and non-negotiable. No exceptions can be granted. Candidates who cannot pass these requirements will not be eligible for hire. All applicants must successfully pass a full credit check and criminal background check during the initial hiring process. Once onboard, they must obtain and retain annual cjis certification as part of the ongoing employment process.
  • Other: this position is 100% remote and will participate in an on-call rotation supporting the 24x7 soc. After-hours maintenance, incident escalation support and operational handoffs will be required as needed. Preference will be shown for candidates presently residing inside the state of south carolina that can physically assist with equipment and hardware maintenance as needed.

Daily Duties / Responsibilities:

  • This position is 100% remote and will participate in an on-call rotation supporting a 24x7 security operations center serving multiple state agencies. Other after-hours work may be required as needed.

PRIMARY RESPONSIBILITIES:

  • Primarily assist in the planning, design, development, deployment, administration and operational support of enterprise security automations and custom security tools, including:
  • Python-based automations, internal web applications, apis, sdks, scripts, dashboards, command-line utilities and system integrations
  • Automated workflows for alert enrichment, triage, incident response, case management, notifications, containment, escalation and reporting
  • Custom tools to assist with cve vetting, vulnerability enrichment, prioritization, tracking and security decision support

SECONDARY RESPONSIBILITIES:

  • Secondarily assist in the planning, design, deployment and operational support of a broad range of security platforms, including: dspm, asm, iam, vulnerability management, email security, endpoint security, siem, xdr, soar, logging, monitoring, network security, cloud security and threat intelligence technologies integrations with ticketing, case management, notification, identity, data sources, apis, sdks and other enterprise systems as needed support for technologies such as palo alto networks, proofpoint, tenable, cribl, whatsup gold and other current or future security products.
  • Develop, test, deploy and maintain automated security workflows, applications and scripts using python, powershell, bash, rest apis, json, yaml, vendor sdks and other appropriate technologies.
  • Assist with identity and access management functions, including user provisioning, deprovisioning, access reviews, role-based access control, service accounts, api credentials, authentication, authorization and identity-based system integrations.
  • Deploy, configure, patch, monitor, optimize and troubleshoot linux systems supporting security sensors, collectors, connectors, applications, containers and data-processing services, including docker-based environments.
  • Support security architects, engineers, soc analysts, incident responders and agency customers through platform troubleshooting, automation development, system integration, technical escalation, knowledge transfer and operational handoffs.
  • Monitor and report on automation health, application availability, system performance, sensor status, integration failures, api errors, vulnerability status, platform issues and other security engineering and operational metrics.
  • Ensure high availability, resilience, backup, recovery, patching, lifecycle management, secure configuration and controlled change processes for security tools, linux systems, applications, automations and supporting services.
  • Collaborate with security architects, engineers, analysts, incident responders and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements and organizational risk tolerance.

Required Skills

(Ranked by Importance):

  • Broad hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations and operational functions.
  • Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods and vendor-supported interfaces.
  • Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services and integrations.
  • Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting and lifecycle management
  • Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML and vendor SDKs.
  • Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security and other enterprise security technologies.
  • Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration and industry-standard cybersecurity frameworks.

Preferred Skills

  • (Ranked by Importance):
  • Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared-services or managed-service environment.
  • Hands-on Linux, Docker, security sensor, monitoring, scripting and platform administration experience.
  • Experience supporting SOC analysts, security engineers, incident responders, agency customers and rapidly changing operational priorities.
  • Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG or other enterprise security technologies and experience developing playbooks, runbooks, procedures and technical documentation

Required Education:

  • Bachelor's degree in an information technology, computer science, software engineering or information security related field
  • Eight years of relevant work experience (experience may be substituted in lieu of education)
  • Five years of experience in supporting large it environments, security systems, software development and/or system deployments

Preferred Certifications:

  • CISSP, Security+, GIAC or other relevant cybersecurity certification
  • Linux, Python, Cloud, IAM or other relevant security engineering or platform certification

Work Address: Choose an item.

  • Identify on-site, hybrid or fully remote?
    • If hybrid, provide telecommuting schedule.
    • Fully remote
  • This position is housed 100% remote and will participate in a monthly on-call rotation supporting the 24x7 soc. After-hours maintenance, incident escalation support and operational handoffs may be required as needed. All work must be performed within the contiguous united states. Preference will be given to local south carolina based candidates capable of fielding services in-state. Core hours of 0830-0500 ET.

ADDITIONAL SKILLS/DUTIES:

  • Experience developing or supporting internal web applications, APIs, dashboards, databases, command-line tools and related software components.
  • Advanced Python development experience and familiarity with full-stack development, internal web applications, APIs, databases, source control, testing and software deployment practices.

Interview Feedback from posting 13280:

  • Resources did not demonstrate the depth or precision required for this position. Resources struggled with the automation workflow exercise, provided incorrect responses regarding Bash support on Windows and several answers related to API throttling and data ingestion did not fully address the technical concepts being evaluated. Need detailed experience with workflow and error handling, the recurring-report response lacked the expected technical integration approach. Responses regarding Cisco Umbrella/Secure Access also did not demonstrate the expected DNS security knowledge. Interviews did not demonstrate sufficient hands-on automation, IAM and security engineering depth for this position. Interviews did not demonstrate the required level of hands-on automation and engineering proficiency for this role.

Remote

Skills:
Access Control, Administrative Skills, Analysis Skills, Application Programming Interface (API), Applications Security, Authentication, Authentication Software, Automation, Automation System Development, Background Investigation, Bash Scripting, CISSP - Certified Information Systems Security Professional, Case Management, Change Control, Cloud Computing, Command Line, CompTIA Security+, Computer Maintenance, Computer Science, Computer Security, Continuous Improvement, Continuous Integration, Data Formats, Data Recovery, Decision Support, Docker, Documentation, Driver's License, Email Security, Endpoint Security, Engineering, Enterprise Architecture, Enterprise Protection, Equipment Maintenance/Repair, Error Handling, Establish Priorities, GIAC - Global Information Assurance Certification, Healthcare Software, High Availability, Identify Issues, Identity Data Management, Incident Response, Industry Standards, Information Systems/Technology IS/IT Administration, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Application, Internet Security, JSON, Knowledge Transfer, Linux Administration, Linux Operating System, Metrics, Microsoft Windows Operating System, Network Access Control (NAC), Network Monitoring, Network Security, On Call, Operational Support, Performance Tuning/Optimization, Project Estimates, Python Programming/Scripting Language, REST (Representational State Transfer), Regulatory Requirements, Reporting Dashboards, Risk, Scripting (Scripting Languages), Security Architecture, Security Attacks, Security Consulting, Security Information and Event Management (SIEM), Security Infrastructure, Security Monitoring, Security Software, Software Administration, Software Development, Software Engineering, Software Patches, Source Code/Configuration Management (SCM), Strategic Planning, Structured Data, System Integration (SI), Systems Administration/Management, Technical Support, Technical Writing, Test Plan/Schedule, Testing, Web Programming, Web Services, Windows PowerShell, Work From Home


Cleo Consulting



Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...

Other Jobs To Apply

(USA) Overnight Stocking Coach

Amazon Delivery Driver

Data Entry Clerk Work From Home - Part-Time Focus Group Participants (Up To $750/Week)

KFC Team Member

Crew

Public Health Research Manager (Remote, Continental United States)

Workplace Health and Safety Specialist 2026 - West (Recent and Upcoming Graduates)

Site Leader

Builder Lead, Ring Web Platform Team

Amazon Delivery Driver

Customer Service Rep (100% Work From Home)

Area Manager

Amazon Delivery Driver

Amazon Flex Delivery Driver

Warehouse Associate/Backup Driver

Warehouse Order Picker Part Time 2nd Shift

App Content Reviewer- Remote

Remote Guitar Instructor Roles for Orlando, Florida

Package Handler - Part Time (Warehouse like)

Amazon Warehouse Clerk – Columbus, OH

Lead Associate

Assistant, Warehouse

Seasonal Warehouse Associate (Macon, GA)

Certified Pharmacy Technician, Fulfillment, Fulfillment - Amazon Pharmacy

Amazon Warehouse - Shopper / Order Fulfillment Associate $17-$23/hr

amazon work from home $15+/ Hour (Sign on Bonus!)!

Nurse - Remote - LPN/LVN - Compact licensure required

Warehouse Associate (PT or FT flex schedules)

Security and Loss Prevention Expert, NA

Amazon Delivery Driver

Mechatronics & Robotics Tech

Amazon Warehouse - Shopper / Order Fulfillment Associate $17-$23/hr

Travel CT Technologist - $3,213 per week

Amazon Delivery Driver

Area Manager: Lead Teams to Deliver Excellence

CLI Transportation Operations Manager

Administrative Analyst I - Temporary

Package Handler $15+/ Hour (Sign on Bonus)!

Remote Client Controller, CAS Firm

Remote Staff Accountant Role - 85k-105k

Assistant Technician

Manager III, Operations - AMZ9763.7

Amazon Warehouse - Shopper / Order Fulfillment Associate $17-$23/hr

Remote Insurance Verification Specialist – Patient Benefits

Aviation Infrastructure Leader - Florida

Database Advisor

Medical Billing and Coding Specialist (No Experience Needed)

Call Center Agent (Fully Remote)

Certified Nursing Assistant/Patient Care Tech

Zone/Gate Control Manager