Job Description
Salary: $135,000 - $170,000
ORGANIZATIONAL BACKGROUND
Established in August 2016, Basecamp Consulting and Solutions is a dynamic Information Technology (IT) consulting firm committed to delivering results for our clients. Specializing in next-generation IT and digital transformation solutions, Basecamp Consulting and Solutions is dedicated to helping clients achieve success through trust, innovation, quality work, and a steadfast commitment to results.
At Basecamp, we believe in the power of emerging technologies to propel our clients toward their goals. Our focus lies in business and IT modernization, utilizing Cloud solutions, cybersecurity, and cutting-edge application development. We pride ourselves on a team of talented professionals who are passionate about supporting our clients on their journey towards innovative outcomes.
Basecamp Consulting and Solutions is dedicated to pushing the boundaries of IT consulting and we are equally committed to embodying these principles in every facet of our work.
POSITION OVERVIEW
Reporting to the Lead Account Executive, the Cyber Security SIEM Developer researches and develops new threat detection use cases based on emerging threats, threat intelligence research and Threat Detection Analyst feedback. Works with stakeholders and cybersecurity tool SMEsto identify gaps in security protection and analytics capabilities. Develops custom scripts to enhance SIEM functionality. Reviews the quality of data feeds and recommend and/or implement improvements. Collaborates with stakeholders to identify critical systems and application components to develop alerting priorities and create signatures tailored to individual programs and applications.
REQUIRED QUALIFICATIONS
Five (5) years of relevant IT experience
Three (3) years working with a SIEM in a content development or Incident Response role.
Three (3) years of System and/or Network Administration experience
Understanding of various log formats
Understanding of the MITRE ATT&CK framework
Strong understanding of network architecture
Experience developing and maintaining scripts (preferably using PowerShell, Python or SPL) Understanding of Defense-in-Depth
Must possess a current DOD Top Secret Clearance
Must have Baseline Certification for IT-II and CNDSP/CSSP-IR when on boarding and must have one of the Computer Network Defense CE Certifications within six (6) months of on-boarding.
remote work
Full-time
Fully remote