Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Jobs
[Top] [All Lists]

[SJ-JOB] Security Engineer, London

Subject: [SJ-JOB] Security Engineer, London
Date: 30 Aug 2006 17:06:57 -0000
---------------------------------------------------
SECURITYFOCUS JOBS - NEW OPPORTUNITY
---------------------------------------------------


JOB DESCRIPTION
---------------------------------------------------
Position:       Security Engineer
Location:       London, , United Kingdom
Type:           Permanent F/T

Closing Date:   2006-09-01

Information Security Risk Engineer

Reference No.   SF-166
Company Global Investment Bank
Location        London
Salary  £50,000
The Role
The Information Security Risk Engineer will work within the Global Information 
Security team delivering this service - working alongside the Policy and Risk 
consultants. This role will provide technical design input into the IT project 
lifecycle, working alongside IT business units and making recommendations on 
commercially appropriate security mechanisms aligned with the business risk. In 
addition, advice will be provided on the selection of appropriate third-party 
security solutions. Technical research and security testing services will be 
provided as required to IT Development and IT Production.

This role may involve some limited travel as the team has global responsibility.
Key Responsibilities and Result Areas:
1)      Provide Risk Analysis of the technical aspects of IT applications and 
infrastructure to ensure adequate levels of security are deployed. Working with 
a Business Risk Analyst, to identify any potential vulnerability both within an 
application and also that might impact on other applications or the 
infrastructure. Recommend suitable countermeasures to mitigate such 
vulnerabilities.
2)      Ensure that changes to boundary devices such as firewalls, are executed 
in a secure fashion highlighting any possible risks.  Work with Global IT 
Operations to ensure that the changes are completed in line with policy. 
3)      Perform security testing and vulnerability analysis of new and existing 
systems, working with the responsible teams to ensure vulnerabilities are 
mitigated.
4)      Evaluate the impact on security of proposed new technologies or changes 
to the Bank’s architecture and document configuration and deployment 
standards and guidelines.
5)      Liaise with vendors and evaluate their products/services in line with 
the Bank’s requirements contrasting them with competitor’s offerings.
6)      Report the results of all of the above to management appropriately.
Required Skills and Experience;
•  A graduate with a minimum of 3 to 5 years experience of Information 
Security; preferably within Investment Banking.
•  Knowledge of the latest technical risks facing Investment Banks and IT
•  Experience of developing and implementing technical Information 
Security solutions
•  Understanding of risk analysis methods and processes
•  Experience of adhering to and appropriately deviating from Policy, 
Standards and Guidelines within Enterprise organisations.
•  Excellent oral and written presentation skills
•  Good negotiation and problem solving skills
•  The ability to multi-task and work calmly under pressure
•  Detailed technical knowledge with a security focus, including:-
o       Enterprise IP Network architecture & Design technology, security risks 
within protocol suites, networking and routing technologies.
o       Enterprise and Personal Firewalls; configuration and rule maintenance 
o       Remote access solutions; VPN (IPSec & SSL), RAS, Thin-Client 
o       Latest vulnerability and general security analysis tools; installation, 
maintenance, and report generation e g. nmap, Nessus, WireShark
o       Latest hacking techniques and counter measures, e.g., DDoS, buffer 
overflow attacks, worms, subversive code
•  Experience of the following technologies is highly desirable
o       Microsoft: XP, 2003, 2000, IIS
o       Unix; Solaris and Linux variants
o       Cryptography and PKI: algorithms, applicability and strength, key 
management, authentication mechanisms
o       Directory services; LDAP, MS AD
o       Data Management; Sybase; MS SQL Server; Storage Area Networks 
o       VoIP, 802.11 wireless
o       Mobile devices (Blackberry, PDAs, Laptops etc)
o       Messaging (Email, Instant Messaging, collaborative tools)
o       Secure File Transfer



JOB REQUIREMENTS
---------------------------------------------------
Candidates must be eligable to work in the UK when applying


CONTACT
---------------------------------------------------


Information Security Solutions
Iain Sutherland

iain@InformationSecuritySolutions.com



---------------------------------------------------
SECURITYFOCUS JOBS
---------------------------------------------------
SecurityFocus now offers an online interface for
searching and managing job opportunities and resumes.

http://www.securityfocus.com/jobs

<Prev in Thread] Current Thread [Next in Thread>
  • [SJ-JOB] Security Engineer, London, iain <=