Security Architect # 26-20820

US Tech SolutionsColumbia, SC
Remote

About The Position

This role primarily assists in the planning, design, development, deployment, administration, and operational support of enterprise security automations and custom security tools. This includes Python-based automations, internal web applications, APIs, SDKs, scripts, dashboards, command-line utilities, and system integrations. The role also involves developing automated workflows for alert enrichment, triage, incident response, case management, notifications, containment, escalation, and reporting. Additionally, it includes creating custom tools to aid in CVE vetting, vulnerability enrichment, prioritization, tracking, and security decision support. Secondarily, the role assists in the planning, design, deployment, and operational support of a broad range of security platforms such as DSPM, ASM, IAM, vulnerability management, email security, endpoint security, SIEM, XDR, SOAR, logging, monitoring, network security, and cloud security. Integrations with ticketing, case management, notification, identity, data sources, APIs, SDKs, and other enterprise systems are also part of the responsibilities, along with support for technologies like Palo Alto Networks, Proofpoint, Tenable, Cribl, and WhatsUp Gold.

Requirements

  • Broad hands-on security engineering experience supporting multiple cybersecurity technologies, systems, integrations, and operational functions.
  • Experience developing security automations, scripts, integrations, utilities, and custom tools using Python.
  • Strong experience troubleshooting complex technical issues across applications, security platforms, operating systems, networks, identity services, and integrations.
  • Linux system deployment, configuration, patching, scripting, service management, monitoring, troubleshooting, and lifecycle management.
  • Experience developing automation and response workflows using Python, PowerShell, Bash, REST APIs, JSON, YAML, and vendor SDKs.
  • Experience supporting IAM, DSPM, ASM, vulnerability management, email security, endpoint security, SIEM, SOAR, logging, monitoring, cloud security, and other enterprise security technologies.
  • Strong understanding of enterprise security architecture, incident response, networking, access control, secure software development, systems administration, and industry-standard cybersecurity frameworks.
  • Bachelor's degree in an information technology, computer science, software engineering, or information security related field.
  • Eight years of relevant work experience (experience may be substituted in lieu of education).
  • Five years of experience in supporting large IT environments, security systems, and software development.

Nice To Haves

  • Hands-on experience serving as a security engineering generalist in a large, multi-tenant, shared-services, or managed-service environment.
  • Hands-on Linux, Docker, security sensor, monitoring, scripting, and platform administration experience.
  • Experience supporting SOC analysts, security engineers, incident responders, agency customers, and rapidly changing operational priorities.
  • Familiarity with Palo Alto Networks, Proofpoint, Tenable, Cribl, WUG, or other enterprise security technologies.
  • Experience developing playbooks, runbooks, procedures, and technical documentation.
  • Experience integrating enterprise technologies using APIs, SDKs, web services, structured data formats, authentication methods, and vendor-supported interfaces.
  • Experience developing or supporting internal web applications, APIs, dashboards, databases, command-line tools, and related software components.
  • Advanced Python development experience and familiarity with full-stack development, internal web applications, APIs, databases, source control, testing, and software deployment practices.

Responsibilities

  • Develop, test, deploy, and maintain automated security workflows, applications, and scripts using Python, PowerShell, Bash, REST APIs, JSON, YAML, vendor SDKs, and other appropriate technologies.
  • Assist with identity and access management functions, including user provisioning, deprovisioning, access reviews, role-based access control, service accounts, API credentials, authentication, authorization, and identity-based system integrations.
  • Deploy, configure, patch, monitor, optimize, and troubleshoot Linux systems supporting security sensors, collectors, connectors, applications, containers, and data-processing services, including Docker-based environments.
  • Support security architects, engineers, SOC analysts, incident responders, and agency customers through platform troubleshooting, automation development, system integration, technical escalation, knowledge transfer, and operational handoffs.
  • Monitor and report on automation health, application availability, system performance, sensor status, integration failures, API errors, vulnerability status, platform issues, and other security engineering and operational metrics.
  • Ensure high availability, resilience, backup, recovery, patching, lifecycle management, secure configuration, and controlled change processes for security tools, Linux systems, applications, automations, and supporting services.
  • Collaborate with security architects, engineers, analysts, incident responders, and agency stakeholders to align solutions with business goals, industry-standard frameworks, regulatory requirements, and organizational risk tolerance.

Benefits

  • On-call rotation supporting a 24x7 security operations center serving multiple state agencies.
  • Other after-hours work may be required as needed.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service