IT Security Implementation - Stabilization & Resilience

2,000
ETH, DAI, USDT
+53
21 days (till Jan 31st, 2026)

 

Overview

Complete hardening, validate incident readiness, and transition to steady-state operations.

Objectives

Harden remote access (Citrix/VPN): modern TLS/ciphers, posture checks, minimized split tunneling, comprehensive logging.

Strengthen data protection (NAS): least-privilege ACLs, SMB signing/encryption, immutable backups, and restore drills.

Finalize cloud/container supply chain: least-privilege IAM, key retirement, signed images with CI/CD enforcement, registry scanning gates.

SIEM/IR: tune detections, run a tabletop, close gaps, and document KPIs/runbooks for operate-to-own.

Scope

Remote Access: Citrix Gateway/VPN policy, device posture, role-based tunneling, log forwarding.

Data/NAS: ACL redesign, encryption in transit, immutable backup policy, quarterly restore process.

Cloud/Containers: IAM refactor, permission boundaries, cosign/Sigstore verification in pipelines, ECR scanning thresholds.

Monitoring & IR: Alert tuning, dashboards/retention, tabletop execution and follow-ups.

Methods

Change-controlled rollouts with backout steps.

Short stakeholder sessions; evidence captured via exports/screenshots.

Readiness tests (auth, restore, alerting).

Mapping to ISO 27001, NIST CSF, CIS Controls for auditability and handover.

Key Responsibilities

Remote Access Hardening: Update Citrix, enforce modern TLS/ciphers, enable posture checks, restrict split tunneling for privileged roles, route gateway/VPN logs to SIEM.

NAS & Backups: Rework shares to least-privilege, enable SMB signing/encryption, implement immutable backups, perform a live restore drill with documented RTO/RPO.

AWS & Containers: Apply permission boundaries and role refactors, retire long-lived keys, require signed images in CI/CD, block deploy on failing provenance or critical findings.

SIEM & IR: Reduce false positives, add coverage for remote-access/NAS events, finalize dashboards and retention, run tabletop and close actions.

Deliverables

Remote Access Pack: Hardened Citrix/VPN config (before/after), posture policy, split-tunnel matrix, log routing proof.

Data Protection Pack: NAS ACL design, SMB signing/encryption evidence, immutable backup policy, restore-test report.

Cloud & Container Pack: IAM boundary templates, key-retirement attestations, CI/CD image-signing enforcement, registry scanning gate policy.

SIEM/IR Readiness: Tuned rules with KPI baseline (e.g., MTTA/FP rate), finalized runbooks, tabletop minutes, closed action log.

Operate-to-Own Handover: SOPs, admin guides, quarterly upkeep checklist.

Qualifications

Proven hardening of Citrix/VPN (cipher/TLS policies, posture checks, split tunneling).

NAS/backup engineering with immutable storage and documented restore drills.

AWS IAM refactor and container supply-chain controls (image signing, registry scanning, CI/CD policy gates).

SIEM tuning and tabletop facilitation with measurable KPIs; strong documentation/change control.

2,000
ETH, DAI, USDT
+53
21 days (till Jan 31st, 2026)

More Jobs like this

Show more
Translation

We are looking for an experienced and detail-oriented translator to translate content accurately while maintaining the original meaning, tone, and context.

Rewriting

Freelance Rewriting Job (Short-Term Project) I’m looking for a reliable freelance writer/editor to rewrite existing content to improve clarity, flow, and overall quality while keeping the original meaning intact. Requirements:   Strong English writing skills...

I need a Blockchain Developer for my Land-Marketing Website.

We are looking for a skilled Blockchain Developer to join our team and contribute to the development of our Land-Marketing Website. The ideal candidate will have a strong background in IT & Networking, as well...

Fresh candidates for OFM Modelling

We are looking for Fresher Female Candidates for Modelling opportunities. No prior experience required. Confidence, good communication, and a positive attitude are appreciated. Training & guidance will be provided. Safe, professional, and growth-focused environment. Interested...

Writing and translation

Writing and Translation Skills ✍️🌍Writing and translation skills involve the ability to clearly express ideas and accurately convey meaning across languages. Here’s a simple breakdown:✨ Writing SkillsClear and structured expression of ideasCorrect grammar, vocabulary, and...

Export Sales Partner Opportunity

We are a screw manufacturing company and looking forward to export our products. You need to find us customers.

Bring users to my website

I need people (specifically in Africa), to bring vendors to use my app, payment will be made directly based on how many users subscribe to the website. Preferably Nigeria, Ghana, and Kenya But other African...

Cold call

Need someone to get me 25-50 paying clients, for my business, with cold calling (I will provide the lead list). Get paid up to $2500, depending on quality and quantity.

Дизайнер

Custom Avatars for Social Media, Gaming & NFT Profiles I create unique and personalized avatars for your social media, Discord, gaming, or NFT projects.Each avatar is custom-made according to your ideas, style, and preferences. 💰 Payment: Only...

Writing paragraph

I write simple, clear, and meaningful paragraphs that sound natural and easy to read. My writing fits blogs, assignments, website content, and social posts. I focus on correct grammar, smooth flow, and ideas that connect...

Translation

We are looking for an experienced and detail-oriented translator to translate content accurately while maintaining the original meaning, tone, and context.

Rewriting

Freelance Rewriting Job (Short-Term Project) I’m looking for a reliable freelance writer/editor to rewrite existing content to improve clarity, flow, and overall quality while keeping the original meaning intact. Requirements:   Strong English writing skills...

I need a Blockchain Developer for my Land-Marketing Website.

We are looking for a skilled Blockchain Developer to join our team and contribute to the development of our Land-Marketing Website. The ideal candidate will have a strong background in IT & Networking, as well...

Fresh candidates for OFM Modelling

We are looking for Fresher Female Candidates for Modelling opportunities. No prior experience required. Confidence, good communication, and a positive attitude are appreciated. Training & guidance will be provided. Safe, professional, and growth-focused environment. Interested...

Writing and translation

Writing and Translation Skills ✍️🌍Writing and translation skills involve the ability to clearly express ideas and accurately convey meaning across languages. Here’s a simple breakdown:✨ Writing SkillsClear and structured expression of ideasCorrect grammar, vocabulary, and...

Export Sales Partner Opportunity

We are a screw manufacturing company and looking forward to export our products. You need to find us customers.

Bring users to my website

I need people (specifically in Africa), to bring vendors to use my app, payment will be made directly based on how many users subscribe to the website. Preferably Nigeria, Ghana, and Kenya But other African...

Cold call

Need someone to get me 25-50 paying clients, for my business, with cold calling (I will provide the lead list). Get paid up to $2500, depending on quality and quantity.

Дизайнер

Custom Avatars for Social Media, Gaming & NFT Profiles I create unique and personalized avatars for your social media, Discord, gaming, or NFT projects.Each avatar is custom-made according to your ideas, style, and preferences. 💰 Payment: Only...

Writing paragraph

I write simple, clear, and meaningful paragraphs that sound natural and easy to read. My writing fits blogs, assignments, website content, and social posts. I focus on correct grammar, smooth flow, and ideas that connect...