Source description
About the role
3+ years of hands-on systems engineering and architecture experience—including requirements definition, architecture development, use-case/story creation, and systems integration/testing.
3+ years of cloud experience in architecture, design, implementation, operations, and automation (AWS, Azure, or GCP).
Proven expertise with SIEM platforms (e.g., Splunk, Sentinel, ELK, LogRhythm, Sumo Logic) and enterprise antivirus (AV) solutions (e.g., Trend Micro, CrowdStrike, Microsoft Defender).
Understanding of AWS, Azure, or GCP platform capabilities (ideally as a Cloud Architect, Cloud DevOps Engineer, or Cloud Security Engineer).
Experience working in Agile environments with technical teams of three or more individuals.
Excellent communication, organizational, and problem-solving skills, with the ability to convey complex technical information clearly.
Strong documentation skills for creating technical diagrams, written descriptions, and other supporting materials.
Demonstrated ability to work both independently and as a member of a team, maintaining a professional attitude and demeanor.
Critical thinking skills to balance robust security requirements against mission objectives.
Proven track record of adapting quickly and efficiently in fast-paced, dynamic environments.
Proven track record delivering end-to-end SIEM solutions in large-scale or high-compliance environments—from initial design through operational handover.
Hands-on leadership or senior-level contribution in cloud security projects, collaborating across cross-functional teams (e.g., DevOps, architecture, compliance) to drive impactful security outcomes.
Documented success integrating multiple security tools (SIEM, AV, intrusion detection systems, etc.) into a cohesive, enterprise-wide monitoring solution.
History of working under strict regulatory or industry frameworks (e.g., FedRAMP, HIPAA, PCI), ensuring solutions meet required standards without sacrificing performance.
Demonstrable client-facing experience in a consulting or services capacity, maintaining professionalism and clear communication in high-stakes or fast-paced engagements.
Splunk Enterprise Certified Admin or SumoLogic Administration or Microsoft Security Operations Analyst Associate
AWS Solutions Architect Professional or AWS DevOps Engineer Professional or Azure Solutions Architect Expert or GCP Cloud Architect
Bachelor’s degree or equivalent work experience.
US citizenship (required due to client contractual requirements)
More at Coalfire
Related open roles
Manager, Compliance Advisory
Remote · United States
Senior Consultant, Adversary Services (Red Team)
Remote · United States
Senior Consultant, PCI QSA
Remote · United States
Operational Technology Security Consultant
Remote · United States
Digital Privacy, Trust & Safety Consultant
Remote · United States
Senior Consultant, Mobile Application Security
Remote · United Kingdom
