- Company Name
- AMER Technology, Inc.
- Job Title
- System Security Specialist
- Job Description
-
**Job title:** Senior Systems Security Specialist (Contract)
**Role Summary:**
Provide advanced security architecture, operations, and incident response for large, mission‑critical, cloud‑based systems. Design and automate AWS security controls, lead IAM administration (ForgeRock, SailPoint), conduct threat monitoring, manage compliance documentation, and support incident‑response and forensic investigations in a DevOps environment.
**Expectations:**
- Minimum 8 years of enterprise security experience, 5 years hands‑on ops, 4 years cloud security, 4 years AWS security services, 4 years Windows/Linux administration.
- Proven SIEM, vulnerability management, and risk‑remediation expertise.
- Strong knowledge of AWS security services (GuardDuty, Macie, WAF, Security Groups, NACLs, CloudTrail, CloudWatch, Control Tower).
- Ability to develop/preserve SSP, risk assessments, POA&M, and documentation under NIST and regulatory frameworks.
- Availability for after‑hours support as required.
- Preferred: experience with ForgeRock, SailPoint, AD/LDAP integration, NIST 800‑37/53, IRS 1075, MARS‑E, firewall (ASA/Fortinet), scripting (Java, JavaScript, shell), and relevant certifications.
**Key Responsibilities:**
- Design, implement, and automate cloud security controls and processes.
- Conduct security assessments, penetration tests, and impact analyses across the SDLC.
- Monitor security operations, respond to incidents, and perform forensic investigations using SIEM tools.
- Develop and maintain security documentation (SSP, risk assessments, POA&M).
- Remediate findings, track & close POA&M items.
- Administer cloud and network firewalls, manage IAM solutions (ForgeRock, SailPoint), and oversee user provisioning/de‑provisioning.
- Ensure compliance with security policies and regulatory standards.
- Provide off‑hours support when required.
**Required Skills:**
- Enterprise security, ops, and cloud security (AWS).
- SIEM use for incident response & forensics.
- Vulnerability management, patching, risk mitigation.
- Windows & Linux system security administration.
- IAM platform administration (ForgeRock, SailPoint, AD/LDAP).
- Cloud SSH, WAF, GuardDuty, Macie, IAM, CloudTrail, CloudWatch, Control Tower.
- Documentation (SSP, risk assess, POA&M).
- Scripting (Java, JavaScript, shell).
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Systems, Engineering, or equivalent professional experience.
- Security certifications: CISSP, CSA, ISO, CCSE, or equivalent.