Job Description
Job Description
INFORMATION SECURITY ENGINEER
Position Summary
The Information Security Engineer will be responsible for providing engineering design, analysis, and support for information security platforms and devices, routers, firewalls, networks, and operating systems, identifying relevant threats, recommending corrective actions, developing solutions for security issues, and investigating security incidents and breaches. The Information Security Engineer will help plan and carry out the organization’s information security strategy and program to include developing a set of security standards and best practices for the organization, developing policy and procedure, recommending security enhancements to management as needed, and developing strategies to respond to and recover from a security breach.
Minimum Qualifications
- BS in Computer Science, Information Security, or a related field is highly desirable
- 5+ years of experience in information security, especially in a security engineering role
- 3+ years of past experience in a role on a Computer Incident Response Team (CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Center (CSIRC) or a Security Operations Center (SOC) is highly desirable.
- Certified Information Systems Security Professional (CISSP) or equivalent required
Functional Competencies
- Technical expertise in network security knowledge, to include VPN, Firewall, network monitoring, intrusion detection, web server security, SIEM, NAC, PAM, IAM, CIS Security Controls, other security related applications, and wireless security
-
- Strong knowledge of common vulnerabilities and exploitation techniques
- Practical experience with database security, content filtering, vulnerability scanning, and anti-malware
- Proficiency with at least one scripting language (e.g.: Perl, Python, PowerShell)
- Knowledge of risk assessment tools, technologies, and methods
- Experience designing secure networks, systems, and application architectures
- Knowledge of disaster recovery, computer forensic tools, technologies, and methods
- Experience planning, researching, and developing security policies, standards, and procedures
- Ability to communicate network security issues to peers and management
- An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business An understanding of organizational mission, values, and goals and consistent application of this knowledge
- Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one
- An ability to effectively influence others to modify their opinions, plans, or behaviors.
- Strong understanding of PCI, GLBA and IS/IT risk assessment, the Federal Financial Institution Examination Council (FFIEC) IT examination handbooks, and National Institute of Standard and Technology (NIST) 800-53 and Cybersecurity Framework.
Job Type: Full-time
Pay: $141,000.00 per year
Benefits:
- 401(k)
- Dental insurance
- Health insurance
Schedule:
- 8 hour shift
- Monday to Friday
Experience:
- in information security, in a security engineering role: 5 years (Required)
- (CIRT) or (CERT), or (CSIRC) or (SOC): 3 years (Required)
License/Certification:
- Certified Information Systems Security Professional (CISSP) (Required)
Ability to Commute:
Company Description
SVS Group has extensive experience in many industries. We understand the opportunities, and how to find the best fit for your company. Our national search capability allows us to do the legwork to match candidates to opportunities in top locations.
Company Description
SVS Group has extensive experience in many industries. We understand the opportunities, and how to find the best fit for your company. Our national search capability allows us to do the legwork to match candidates to opportunities in top locations.