2 533 3 - Operation & Maint Active Directory Security
Period: Delivery driven (start on 16 Jun. 2025).
Deadline: 05 May 2025.
Duties/Roles:
1. System Installation and Configuration:
1. Install and set up Tenable Identity Exposure;
2. Ensure the software is deployed correctly across relevant environments;
3. Set up integrations with identity systems like Active Directory, LDAP, or cloud-based IAM solutions.
2. System Maintenance and Updates:
1. Apply software updates and patches;
2. Regularly update Tenable Identity Exposure and related systems to ensure the latest security patches and features are applied;
3. Ensure that the platform is running smoothly by checking system logs, server performance, and availability;
4. Request and build monitoring and alerting mechanisms to be aware of issues and system resource consumption;
5. Address technical issues, such as connectivity problems between Tenable Identity Exposure and other integrated systems or errors in scans or reports.
3. Manage Integrations:
1. Ensure Tenable Identity Exposure is integrated with other security solutions like SIEM (Security Information and Event Management) systems, vulnerability management platforms, or ticketing systems;
2. Set up proper data synchronization between identity systems and Tenable Identity Exposure to ensure accurate and up-to-date information.
4. User and Role Management:
1. Configure access control for the Tenable Identity Exposure platform itself, ensuring that only authorized personnel have the right level of access;
2. Set up appropriate permissions and roles for the identity systems being monitored, ensuring seamless integration.
5. Monitoring and Reporting:
1. Proactively review logs and alerts generated by Tenable Identity Exposure to identify any technical issues, errors, or failures in the monitoring process;
2. Produce and distribute reports related to system health, monitoring activities, and compliance status (e.g., audit logs, system performance metrics).
6. System Documentation:
1. Document configuration and changes: Keep up-to-date documentation of all configurations, integration steps, troubleshooting procedures, and system maintenance tasks;
2. Maintain an inventory of connected systems: Keep track of all integrated identity sources, IAM systems, and external tools connected to Tenable Identity Exposure.
7. Automation and Scripting:
1. Automate tasks: Write scripts or configure automation tasks to streamline routine system management tasks, such as regular backups, system checks, or integrations;
2. Improve system efficiency: Identify areas where automation could reduce manual intervention and improve operational efficiency.
Skills, Knowledge, Experience Required:
Mandatory:
The contractor(s) that is going to perform the identified tasks as an Operation and Maintenance Expert of Active Directory Security Assessment Tool must have demonstrated skills, knowledge and experience as listed below.
* Activities performed by a contractor include the lifecycle management of the Tenable Identity Exposure software (including all tasks related to A2SL inclusion), its configuration to ensure coverage of all in-scope Active Directory servers, and the regular monitoring of the availability of the capability;
* Bachelor's degree in Computer Science, Information Technology, or related field or equivalent experience;
* 3+ years of experience in IT security, with a focus on System Administration, Security Tools Management in large organisations;
* Strong understanding of security best practices and experience with Tenable products especially with Tenable Identity Exposure;
* IP switching and routing in a wired and wireless environment;
* Systems administration, ideally both with Windows and Linux;
* Good engineering skills including programming and/or scripting knowledge (python, shell scripting, PowerShell);
* Demonstrable experience of analysing and interpreting system, security and application logs in order to diagnose faults and spot abnormal behaviours;
* Experience with Service Management, monitoring and reporting tools, ideally Solarwinds;
* Database management skills, preferably MS SQL;
* Experience with system instrumentation solutions such as Ansible;
* Experience with Active Directory Management;
* Experience in working with NATO;
* Experience of working with NATO Communications and Information Agency;
* Experience of working with national Defence or Government entities.
#J-18808-Ljbffr