Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [SJ-JOB] Sr. Security Engineer, Washington |
|---|---|
| Date: | 2 Nov 2007 21:58:40 -0000 |
--------------------------------------------------- SECURITYFOCUS JOBS - NEW OPPORTUNITY --------------------------------------------------- JOB DESCRIPTION --------------------------------------------------- Position: Sr. Security Engineer Location: Washington, District of Columbia, United States Type: Permanent F/T Closing Date: 2007-12-03 Position Summary: This position is responsible for being the internal expert on all matters pertaining to the security of information in the network infrastructure and web applications and will report to the Senior Vice President of Network Operations. Core responsibilities include developing and maintaining security policy, controls, procedures, and guidelines to ensure adequate internal security controls and the proper documentation to that enables efficient operation and the mitigation of known risk to operations. Duties and Responsibilities: • Provide security assessments and analysis to identify and mitigate risks associated with network infrastructure and web applications of a public-facing web portal. • Review/assess network security of existing networks and web applications; make recommendations, and develop strategic policies for constant improvement of network and web application security. • Analyze network vs. host based intrusion detection systems. • Ability to work 8:30-5:30 as well as 24/7 availability to troubleshoot any network security issues that present themselves. • Identify both physical hardware and web software security issues. • Implement security products including firewalls, intrusion detection systems, and various other security products. • Conduct highly technical web application security testing to include SQL injection and forcing errors. • Vendor identification to include reading and responding to RFPs, screening, selection, and the ability to partner with outside vendors to ensure compliance with Revolution Health security policies. • Conduct security audits and assessments. • Work with other members of RH technology team to ensure that company-wide policies are adhered to in all instances of network administration and web application development. • Train any members of the technical team on security policies and procedures. • Point person for management of partner assurance program to ensure all partners meet levels of security identified in Revolution Health’s information security policies, written by the Sr. Information Security Engineer. JOB REQUIREMENTS --------------------------------------------------- Skills and Competencies: • Experience writing security policy and procedures. • Strong understanding of two factor authentication. • Must have clear verbal communication skills, as this position requires explanation of network and web application security policy to non-technical/non-security people within the company. • Must have clear written communication skills, as this position requires the creation of policy documentation for an audience that may not be highly technical. • Must be well versed in the most up-to-date versions of all operating systems and network infrastructure hardware, including a thorough understanding of known risks with the latest versions of each. • Must have solid organizational skills and the ability to team with others to develop and implement complex security projects, define priorities, and communicate requirements. Technical Qualifications: • In depth knowledge of Windows and Unix operating systems as well as SSO/VPN administration. • Expert knowledge of RedHat boxes and Tomcat, Apache webservers. • IPSec, IKE, SSL, HTTP, HTTPS, TCP/IP, UDP, PPP, 802.1x, T1, T3, OSPF, SNMP, NTP, Radius, TACAS, DNS. • Knowledge and experience with Netscreen, Cisco PIX, Checkpoint firewalls, various IDS systems, and self-defending Juniper networks. Preferred Work Experience and/or Qualifications • Minimum 5+ years experience in the information security arena to include an equal balance between both network infrastructure and web application experience. • CISSP, CCSP, ICS2, GIAC, CISA, SANS, Cisco, Microsoft certifications are all pluses. • Consulting background with experience doing presentations to non-technical audience is a plus. • Ability to travel up to 10% for the occasional conference or partner training. • BS Degree is Computer Science, Engineering, or applicable work experience is required. CONTACT --------------------------------------------------- Send resume to Liam Darmody oif Revolution Health Networks at liam.darmody@revolutionhealth.com Revolution Health Networks Liam Darmody HR Manager liam.darmody@revolutionhealth.com --------------------------------------------------- SECURITYFOCUS JOBS --------------------------------------------------- SecurityFocus now offers an online interface for searching and managing job opportunities and resumes. http://www.securityfocus.com/jobs
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | [SJ-JOB] Security Engineer, Alpharetta, mike |
|---|---|
| Next by Date: | [SJ-JOB] Security Engineer, Norfolk, katie . hanson |
| Previous by Thread: | [SJ-JOB] Security Engineer, Napa, terry . gautier |
| Next by Thread: | [SJ-JOB] Security Engineer, Norfolk, katie . hanson |
| Indexes: | [Date] [Thread] [Top] [All Lists] |