Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Jobs
[Top] [All Lists]

[SJ-JOB] Security Consultant, New York City

Subject: [SJ-JOB] Security Consultant, New York City
Date: 4 Oct 2005 17:29:28 -0000
---------------------------------------------------
SECURITYFOCUS JOBS - NEW OPPORTUNITY
---------------------------------------------------


JOB DESCRIPTION
---------------------------------------------------
Position:       Security Consultant
Location:       New York City, New York, United States
Type:           Permanent F/T

Closing Date:   2005-11-03

Description:
Security and Technology Solutions (STS), a key component of our Technology and 
Security Risk Services (TSRS) practice, provides the building blocks for a 
secure and protected business environment.  Employing state-of-the-art 
technology, Ernst & Young security professionals deliver enterprise security 
and risk-based solutions enabling our clients to take advantage of the evolving 
electronic economy in a secure manner.  STS professionals at Ernst & Young have 
extensive experience with information security protection, system security 
planning, information security assessments and implementation, security program 
development, business continuity planning and strategic technology planning. 
These services help companies validate their infrastructure, design and 
implement business processes and technology solutions, address regulations and 
educate and train management and employees.

Our Houston and New York based Advanced Security Centers (ASC) continue to be a 
key differentiator for our practice and the firm. The centers provide testing 
and diagnostics at the infrastructure and application levels, including source 
code reviews, diagnostics, training, incident response, and privacy services.

We are currently seeking a Senior to participate in multiple client engagement 
teams and other related activities in Ernst & Young’s state-of-the-art 
Advanced Security Center in New York.  This facility is dedicated to providing 
attack and penetration security testing (known as "white hat hacking") and is 
equipped with the latest "toolbox" of applications, custom configured hardware, 
and test environments to discover and mitigate clients security weaknesses 
before they can be exploited by unauthorized parties.  The Center is equipped 
and configured to provide maximum collaboration and teaming opportunities.
Responsibilities:
•  Perform vulnerability and Attack & Penetration assessments in Internet, 
Intranet and Wireless environments
•  Perform discovery and scanning for open ports and services
•  Apply appropriate exploits to gain access and expand access as 
appropriate
•  Participate in activities involving application penetration testing and 
application source code review
•  Interact with the client as required throughout the engagement
•  Produce reports documenting discoveries during the engagement
•  Debrief the client at the conclusion of each engagement
•  Participate in research and provide recommendations for continuous 
improvement
•  Participate in knowledge sharing



JOB REQUIREMENTS
---------------------------------------------------
Requirements:
To qualify for this position offering excellent opportunities for career 
advancement to the right professional, candidates must have: 

•  Bachelors or Masters degree in Computer Science, Information Systems, 
Engineering or related major
•  3-5 years experience in one or more of the following:  
•  Strong Unix, NT, networking and wireless security skills
•  Attack and Penetration testing 
•  Security testing of web based applications
•  Application security source code assessments
•  Deep understanding of TCP/IP networking
•  Strong technical skills related to a broad range of operating systems 
and databases
•  Understanding of web based application vulnerabilities
•  Experience with programming languages such as Java, C, C++, C#, asp, 
and .NET
•  Excellent teaming skills
•  Good communication skills
•  Demonstrated integrity in a professional environment
•  Manual Attack & Penetration testing experience above and beyond running 
automated tools is a plus
•  Experience developing custom scripts or programs (used for port 
scanning and vulnerability identification is a plus)
•  Application Development is a plus
•  Prior military/government background is a plus
•  Candidates must hold or be actively pursuing related professional 
certifications such as CISSP, CISM or CISA
•  Ability to travel (including potential overseas travel)
•  Current US drivers license



CONTACT
---------------------------------------------------
Please attach a word document of your resume and e-mail your information to 
Annemarie.grimaldi@ey.com.

Ernst & Young
Anne Marie Grimaldi
Recruiting Sourcing Analyst
annemarie.grimaldi@ey.com



---------------------------------------------------
SECURITYFOCUS JOBS
---------------------------------------------------
SecurityFocus now offers an online interface for
searching and managing job opportunities and resumes.

http://www.securityfocus.com/jobs

<Prev in Thread] Current Thread [Next in Thread>