Friday, May 19, 2017

Information Security Architect

The requirements for this position are 15+ years in the Information Systems industry with 10 years of direct Information Security experience. 
The successful candidate will have hands-on Information Security systems experience.  The candidate will have some hacking abilities; meaning had actually done hacking, not just observed.  The candidate will be able to script.  The candidate will be able to architect network and information security systems and analyze existing architected systems.  The candidate will be able to configure security tools and devices.
Required Skills
The candidate must have the following skills:
•             Hands-on experience is a must
•             Must be able to architect, configure, modify and implement different types of security solutions
•             Plan, implement, and upgrade security measures and controls
•             Must be able to script in bash, batch, PowerShell, and Regular Expressions
•             Must be able to hack
•             Must be able to troubleshoot issues
•             Maintain data and monitor security access
•             Be able to manage, configure, implement IDS, IPS, FW, access controls (AD, LDAP), network security policies, application security, OS security, group policies, web security policy
•             Working knowledge of Forescout, Tripwire, Splunk, Burpsuite, Metasploit, Nmap, Nikto, Wireshark, and other security tools
•             Understands DLP, anti-virus and anti-malware
•             Must understand SSL/TLS, HTTP, HTTPS, DNS, SNMP, IPsec, PKI, proxies, TCP/IP, VM, Wireless, VPN
•             Understands TCP/IP, computer networking, routing and switching
•             Understand both Linux and Windows Operating systems
•             Understand Network protocols and TCP/IP packet analysis
•             SIEM experience (e.g. McAfee SIEM, QRadar, etc.)
•             Must be able to use Visio
•             Must be able to write process and procedures
•             CISSP, GIAC Gold/Platinum certification or similar top level security certification
•             Strong IT / IT Security / Architecture background
•             Cloud Technology and Security experience desired
•             Good understanding of application security
•             Understanding of risks in banking/ financial services sector preferred
•             Knowledge of IT Risk and Security governance
•             Web proxies, Web Application Firewalls and XML Gateways, Application execution controls

