Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Jobs
[Top] [All Lists]

[SJ-JOB] Application Security Engineer, Wilmington

Subject: [SJ-JOB] Application Security Engineer, Wilmington
Date: 12 Jul 2007 16:44:26 -0000
---------------------------------------------------
SECURITYFOCUS JOBS - NEW OPPORTUNITY
---------------------------------------------------


JOB DESCRIPTION
---------------------------------------------------
Position:       Application Security Engineer
Location:       Wilmington, Delaware, United States
Type:           Permanent F/T

Closing Date:   2007-08-12

Security Risk Assessor

BarclayCard US is headquartered in Wilmington, Delaware, the U.S. credit card 
operations of Barclays PLC.  Barclays Bank Delaware is one of the fastest 
growing credit card issuers in the United States.  Barclays has more than 40 
existing card partnerships with some of the most successful travel, 
entertainment, automotive, educational and financial institutions in the United 
States.  To support our growth in the field, we are actively seeking to add 
experience professionals to our Technology team.

We are pleased to provide to our employees a comprehensive benefits package, a 
generous 401k and a tuition reimbursement program.  We also have a business 
casual work environment.

Position Summary:

This position will be responsible for ensuring the Security of all applications 
and systems running in the Barclaycard US domain.  This includes developing a 
detailed understanding of all existing web based (Java & .NET) and other third 
party applications running in the environment, reviewing security provisions of 
all new applications and major changes in the environment, and providing 
front-end project support by identifying security requirements as they relate 
to the common 10 security domains. Works with application development team 
leads to ensure application security is aligned with both security best 
practices and business needs.  This individual should have strong business 
acumen and detailed understanding of all Security best practices and the 
Software development lifecycle including Change Management.   




JOB REQUIREMENTS
---------------------------------------------------
Knowledge, Skills, Education, Experience, and Competencies:

·        Bachelor degree in Computer Science or Information Technology 
preferred

·        At least 3 years of Information security or IT Audit experience

·        Credit Card experience preferred

·        Knowledge of regulatory requirements, security standards and 
compliance issues (FFIEC guidelines, Sarbanes Oxley, GLBA, ISO 17799, NIST risk 
management, CobiT v4.0, and Payment Card Industry Data Security Standard (PCI 
DSS))

·        Experience with root cause analysis, risk mitigation, security 
assessments, analysis of security threats, trends and architecture preferred

·        Experience and knowledge in a corporate environment with the 
following:

o       Information classification methods

o       Principles of development of baselines and their relationship to 
risk-based assessments of control requirements

o       Life-cycle-based risk management principles and practices

o       Risk mitigation strategies used in defining security requirements for 
information resources supporting business applications

o       Threats, vulnerabilities and exposures associated with confidentiality, 
integrity and availability of information resources

·         In addition to security, proficient in other IT control areas 
(i.e., change management, SDLC, Operations). 

·         Strong project management (and time management) skills 
required.   Ability to work on numerous projects/activities simultaneously

·         Strong written and verbal communication, coordination and 
organizational skills required

·         Superior attention to details

·         Ability to work well with and communicate effectively with all 
levels with the IT Organization. 

·         Ability to quickly grasp the big picture, yet remained focused 
on coordinating tasks at the detailed level

Interested candidates please apply to:  jjohnston@barclaycardus.com

The above statements reflect the general details considered necessary to decide 
the principal functions of the job identified, and shall not be construed as a 
detailed description of all work requirements, which may be inherent in the job.



CONTACT
---------------------------------------------------
Interested candidates please apply to:  jjohnston@barclaycardus.com


Barclays
J Johnston

jjohnston@barclaycardus.com



---------------------------------------------------
SECURITYFOCUS JOBS
---------------------------------------------------
SecurityFocus now offers an online interface for
searching and managing job opportunities and resumes.

http://www.securityfocus.com/jobs

<Prev in Thread] Current Thread [Next in Thread>
  • [SJ-JOB] Application Security Engineer, Wilmington, jjohnston <=