Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [SJ-JOB] Security Engineer, London |
|---|---|
| Date: | 30 Aug 2006 17:06:57 -0000 |
--------------------------------------------------- SECURITYFOCUS JOBS - NEW OPPORTUNITY --------------------------------------------------- JOB DESCRIPTION --------------------------------------------------- Position: Security Engineer Location: London, , United Kingdom Type: Permanent F/T Closing Date: 2006-09-01 Information Security Risk Engineer Reference No. SF-166 Company Global Investment Bank Location London Salary £50,000 The Role The Information Security Risk Engineer will work within the Global Information Security team delivering this service - working alongside the Policy and Risk consultants. This role will provide technical design input into the IT project lifecycle, working alongside IT business units and making recommendations on commercially appropriate security mechanisms aligned with the business risk. In addition, advice will be provided on the selection of appropriate third-party security solutions. Technical research and security testing services will be provided as required to IT Development and IT Production. This role may involve some limited travel as the team has global responsibility. Key Responsibilities and Result Areas: 1) Provide Risk Analysis of the technical aspects of IT applications and infrastructure to ensure adequate levels of security are deployed. Working with a Business Risk Analyst, to identify any potential vulnerability both within an application and also that might impact on other applications or the infrastructure. Recommend suitable countermeasures to mitigate such vulnerabilities. 2) Ensure that changes to boundary devices such as firewalls, are executed in a secure fashion highlighting any possible risks. Work with Global IT Operations to ensure that the changes are completed in line with policy. 3) Perform security testing and vulnerability analysis of new and existing systems, working with the responsible teams to ensure vulnerabilities are mitigated. 4) Evaluate the impact on security of proposed new technologies or changes to the Bank’s architecture and document configuration and deployment standards and guidelines. 5) Liaise with vendors and evaluate their products/services in line with the Bank’s requirements contrasting them with competitor’s offerings. 6) Report the results of all of the above to management appropriately. Required Skills and Experience; • A graduate with a minimum of 3 to 5 years experience of Information Security; preferably within Investment Banking. • Knowledge of the latest technical risks facing Investment Banks and IT • Experience of developing and implementing technical Information Security solutions • Understanding of risk analysis methods and processes • Experience of adhering to and appropriately deviating from Policy, Standards and Guidelines within Enterprise organisations. • Excellent oral and written presentation skills • Good negotiation and problem solving skills • The ability to multi-task and work calmly under pressure • Detailed technical knowledge with a security focus, including:- o Enterprise IP Network architecture & Design technology, security risks within protocol suites, networking and routing technologies. o Enterprise and Personal Firewalls; configuration and rule maintenance o Remote access solutions; VPN (IPSec & SSL), RAS, Thin-Client o Latest vulnerability and general security analysis tools; installation, maintenance, and report generation e g. nmap, Nessus, WireShark o Latest hacking techniques and counter measures, e.g., DDoS, buffer overflow attacks, worms, subversive code • Experience of the following technologies is highly desirable o Microsoft: XP, 2003, 2000, IIS o Unix; Solaris and Linux variants o Cryptography and PKI: algorithms, applicability and strength, key management, authentication mechanisms o Directory services; LDAP, MS AD o Data Management; Sybase; MS SQL Server; Storage Area Networks o VoIP, 802.11 wireless o Mobile devices (Blackberry, PDAs, Laptops etc) o Messaging (Email, Instant Messaging, collaborative tools) o Secure File Transfer JOB REQUIREMENTS --------------------------------------------------- Candidates must be eligable to work in the UK when applying CONTACT --------------------------------------------------- Information Security Solutions Iain Sutherland iain@InformationSecuritySolutions.com --------------------------------------------------- SECURITYFOCUS JOBS --------------------------------------------------- SecurityFocus now offers an online interface for searching and managing job opportunities and resumes. http://www.securityfocus.com/jobs
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | [SJ-JOB] Security Consultant, New York/Northern NJ, mkihlberg |
|---|---|
| Next by Date: | [SJ-JOB] Management, Sunnyvale, jeffg |
| Previous by Thread: | [SJ-JOB] Security Consultant, New York/Northern NJ, mkihlberg |
| Next by Thread: | [SJ-JOB] Management, Sunnyvale, jeffg |
| Indexes: | [Date] [Thread] [Top] [All Lists] |