Cybersecurity Project Manager

Dallas, Texas
05/10/2024
Remote
140,000.00 
135,000.00 
Full-Time

COMPANY OVERVIEW

Join our award-winning team at Information Management Resources, Inc. (IMRI), a small business leader in the technology industry known for our commitment to innovation, excellence, and authenticity. Founded in 1992, IMRI has been at the forefront of delivering advanced cybersecurity and IT solutions, safeguarding organizations against evolving threats. We have built a reputation for our expertise in Cybersecurity, Digital Transformation, Strategic Business Consulting, and Staff Augmentation. Guided by our core values of innovation, excellence, and a solution-driven mindset, we have served a diverse portfolio of customers that includes federal agencies, state and local governments, and Fortune 1000 companies.

At IMRI, we recognize the integral part our employees play in our ongoing success. To support this, we offer a comprehensive benefits package, tailored to meet the individual needs of our employees. We are committed to promoting their overall well-being and equipping them with the necessary tools to flourish in their careers. We welcome you to be a part of our ongoing mission as we continue to navigate the digital landscape, committed to empowering organizations with our innovative solutions.

Remote work opportunity with IMRI

IMRI is looking for a Cybersecurity Project Manager with 5-7 years of experience working with SIEM, particularly QRadar, to lead the integration and upgrade project. Here's a breakdown of the scope of work:

  1. Integration of Log Sources: Configure the SIEM system (QRadar) to ingest logs from various security tools including Microsoft Defender Suite (Identity, Cloud Apps, Office, and Endpoint), Tanium Threat Response, CrowdStrike, and Microsoft IoT Defender.

  2. Alert Generation: Ensure that the SIEM system is configured to generate actionable alerts for the Security Operations Center (SOC) analysts based on detections from the integrated security tools. Collaboration with the Cybersecurity Operations Center Team Manager is essential to develop SIEM use cases and run books.

  3. Threat Response Management: Oversee the configuration and management of threat response mechanisms within the SIEM environment to effectively respond to security incidents.

  4. SOAR Integration: Manage the integration of Security Orchestration, Automation, and Response (SOAR) capabilities into the SIEM system to automate and orchestrate response actions.

  5. UEBA Implementation: Implement User and Entity Behavior Analytics (UEBA) capabilities to enhance anomaly detection and insider threat analysis within the SIEM environment.

  6. Scalability and Performance Analysis: Conduct thorough analysis of current and future Event Per Second (EPS) needs to ensure scalability and performance of the SIEM system.

  7. Project Management: Manage the project under Information Technology Project Management Office (PMO) guidelines to ensure successful delivery within scope, budget, and timeline.

Deliverables:

  • Configured and fully operational upgraded SIEM system (QRadar).
  • Integration of specified log sources.
  • Functional alerting mechanisms for SOC analysts.
  • Integrated SOAR and UEBA capabilities.
  • Report on EPS analysis to ensure scalability and performance of the SIEM system.

This project requires project management skills, technical expertise in SIEM (QRadar), and experience with cybersecurity operations and tools integration. Additionally, effective collaboration with SOC teams and adherence to IT PMO guidelines are crucial for project success.