1-YEAR BASE TERM, WITH POTENTIAL 1-YEAR EXTENSION. WORK WILL BE PERFORMED REMOTELY.
Mandatory Requirements
- At least five (5) years within the last seven (7) years of professional experience building and administering Power BI reports and dashboards, including exporting data from operational and security tools, transforming it using Power Query, and generating reports.
- At least five (5) years within the last seven (7) years of professional experience administering and developing content within SIEM platforms, custom dashboards, scheduled searches, reports, and KPI reporting.
- At least five (5) years within the last seven (7) years of professional experience writing search and query languages used to build reports and detection content.
- At least five (5) years within the last seven (7) years of professional experience with Security Orchestration, Automation and Response (SOAR) tools, including building playbooks and custom automation scripts in Python.
- At least five (5) years within the last seven (7) years of professional experience with data ingestion and data onboarding from Windows, Linux, and syslog sources into reporting and analytics platforms, including configuring indexes, routing, and retention policies.
- At least five (5) years within the last seven (7) years of professional experience architecting and operating reporting/analytics infrastructure in AWS, including automated CI/CD deployment using GitLab and Terraform (and/or Jenkins and CloudFormation).
- At least five (5) years within the last seven (7) years of professional experience administering Identity and Access Management (IAM) and Single Sign-On (SSO) (e.g., Okta, Centrify), including role-based access control (RBAC) and user provisioning for reporting/analytics and security applications.
- At least five (5) years within the last seven (7) years of professional experience integrating and reporting against Governance, Risk and Compliance (GRC) platforms (such as RSA Archer) and ticketing/service-management tools (such as ServiceNow or Remedy).
- Working knowledge of the MITRE ATT&CK framework and NIST standards, and the ability to translate security data into executive-ready dashboards and reports.
Desirable Requirements
- Any professional experience conducting risk assessments for an IT environment with business units to support a diverse set of infrastructure and services.
- Working knowledge of the National Institute of Standards and Technology (NIST) Standards, the NIST Cybersecurity Framework, and NIST Special Publication (SP) 800-53 and other regulatory security standards and frameworks.
- Possession of one or more of the following information technology industry certifications:
- Security Operations & Engineering (Microsoft): Microsoft Security Operations Analyst (SC-200), Azure Security Engineer Associate (AZ-500), Cybersecurity Architect Expert (SC-100), Identity and Access Administrator Associate (SC-300), Azure Administrator Associate (AZ-104), or Security, Compliance, and Identity Fundamentals (SC-900);
- Governance, Risk & Audit: CISM, CISSP, CISA, CRISC, or CGRC (Certified in Governance, Risk, and Compliance / formerly CAP);
- Cloud Security: CCSP (Certified Cloud Security Professional), AWS Certified Solutions Architect, or AWS Certified Security – Specialty;
- SOC / Blue-Team / Incident Response: Any GIAC certification (e.g., GSEC, GCIH, GCDA, GMON, or GCFA), CompTIA Security+, or CompTIA CySA+.
- SIEM / SOAR Platforms: Splunk certifications (e.g., Core Certified Power user or Enterprise Security Certified Admin), or Palo Alto Networks Certified XSIAM Engineer;
- Project & Agile Delivery: PMP, PMI-ACP, or SAFe Scrum Master (SSM).
- Ten (10) years within the last fifteen (15) years of experience supporting statewide cybersecurity operations and modernization initiatives within a California State agency.
- Ten (10) years within the last fifteen (15) years of experience with Agile/Scrum delivery and tools such as Azure DevOps (ADO).
- Demonstrated leadership experience establishing and leading technical teams and overseeing the delivery of multiple (two or more) enterprise identity and access management (IAM) and cybersecurity initiatives from concept through implementation and ongoing operations, including at least one initiative incorporating AI/automation or other emerging technologies. Experience should include cross-functional stakeholder coordination and full-lifecycle delivery at an enterprise or public-sector scale.
- Depth operating a Microsoft-native SOC at scale – Sentinel + Defender XDR in a multi-tenant / MSSIP or enterprise environment.
- AI/GenAI applied to security operations SOC automation, detection engineering, or LLM triage.
- Zero Trust and identity governance (IGA) delivery Entra ID Governance, SailPoint, or Saviynt implementations.
- Security automation / SOAR playbook development (Azure Logic Apps, XSIAM, Splunk, SOAR).
- Public-sector compliance depth StateRAMP/FedRAMP, CJIS, or California SAM/SIMM 5300 experience.
- Knowledge transfer / mentoring of State staff.
Applications that do not complete the Prescreen Survey will not be considered.
Anvaya Solutions, Inc. is an equal opportunity employer. All employment decisions, including hiring, promotions, and compensation, are made without regard to race, color, religion, sex, national origin, or any other protected characteristic. We are committed to a merit-based workplace where every individual is treated with respect and has equal access to opportunities based solely on their qualifications and performance.
Skills Required
- At least five years within the last seven years building and administering Power BI reports and dashboards, including Power Query data transformation and operational or security data exports.
- At least five years within the last seven years administering and developing SIEM content, dashboards, scheduled searches, reports, and KPI reporting.
- At least five years within the last seven years writing search and query languages for reporting and detection content.
- At least five years within the last seven years using SOAR tools, including Python automation scripts and playbook development.
- At least five years within the last seven years onboarding Windows, Linux, and syslog data, including indexes, routing, and retention policies.
- At least five years within the last seven years architecting reporting and analytics infrastructure in AWS with CI/CD using GitLab and Terraform, or Jenkins and CloudFormation.
- At least five years within the last seven years administering IAM, SSO, RBAC, and user provisioning for reporting, analytics, and security applications.
- At least five years within the last seven years integrating and reporting against GRC platforms and ticketing or service-management tools.
- Working knowledge of MITRE ATT&CK and NIST standards, with the ability to produce executive-ready security dashboards and reports.
- Professional experience conducting IT-environment risk assessments with business units.
- Knowledge of the NIST Cybersecurity Framework, NIST SP 800-53, and other regulatory security frameworks.
- One or more relevant certifications in Microsoft security, governance and risk, cloud security, SOC or incident response, SIEM/SOAR, or Agile delivery.
- Ten years within the last fifteen years supporting statewide cybersecurity operations and modernization initiatives within a California State agency.
- Ten years within the last fifteen years of Agile/Scrum delivery experience using tools such as Azure DevOps.
- Leadership experience establishing technical teams and delivering at least two enterprise IAM or cybersecurity initiatives through implementation and operations.
- Experience with Microsoft-native SOC operations at scale, including Sentinel and Defender XDR.
- Experience applying AI or generative AI to SOC automation, detection engineering, or LLM triage.
- Experience delivering Zero Trust and identity governance implementations using Entra ID Governance, SailPoint, or Saviynt.
- Experience with security automation and SOAR playbook development.
- Experience with StateRAMP, FedRAMP, CJIS, or California SAM/SIMM 5300 compliance.
- Experience providing knowledge transfer and mentoring to State staff.
Similar Jobs
What We Do
Founded in 2007, Anvaya Solutions is an award-winning, woman-owned CMMI Level 3 cyber security and information assurance consulting firm. The company is dedicated to helping organizations across both public and private sectors enhance their security posture, protect their reputation, and increase compliance with regulations while reducing the risk of financial losses and liability from security breaches through its expertise in consulting, assessments, and training.







