Information security Engineer

21 Jun 2024

Vacancy expired!

JD:

  • Worked on Threat Platforms providing

    Security information and recommendations on latest emerging threats &

    Vulnerabilities. Reported on customer data from

    Customer security appliances and

    SIEM to

    identify risks on cloud-based accounts.
  • Design and develop integration and automation between the

    organization’s cyber security departmental tooling and software suites that

    maintain platforms.
  • Functioned

    as primary focal point for customer regarding

    vulnerability scanning,

    reviewing results,

    organizing findings into spreadsheet,

    facilitating recurring calls to

    disseminate and

    prioritize findings, providing recommendations to mitigate, and continuing to follow-up.
  • Create and modify custom cyber security tools and engage in

    new cyber security tool development

    for internal cyber security departmental discretion and use.
  • As a part of blue team, We Developed and enforced security programs and processes related to

    risk and

    compliance,

    vulnerability management,

    incident response, and

    co-ordination,

    secure application design are implemented and support the company's
  • SOC Analysis
  • Analyze and review data from

    SIEM - QRadar for suspicious activity and trigger alerts to the concerned teams and applying rules and Building Blocks to

    SIEM
  • Dedicated security monitoring and analysis of

    cyber security events (Triage) of

    tracking phishing URLs, and emails and deep dug investigations
  • Designed architecture layout For

    VPN Integration with

    Ping Identity for

    Multifactor Authentication with

    Ping Identity Products

Preferably with the following certifications:
  • Qualys Certified – Vulnerability management
  • CISSP certified
  • ISC2-certified secure software life cycle professional (CSSLP)
  • Certified in CompTIA Cloud+
  • Cylance Certified Professional Engineer
  • Certified in Malware and Reverse engineering
  • CEH Trained

TECHNICAL SKILLS:

SIEM Tools: QRadar, Splunk, Symantec MSS

EDR: Crowd strike, MS-Defender ATP, Mcafee, Cylance

Security/Vulnerability: Snort, Wireshark, Insight Vm Nexpose, Nessus, Qualys Appscan, Web inspect, Fortify

Firewalls Checkpoints, Palo Alto next gen PA820, PA3200, PA220 Fortigate 1500,3600,3700

Compliance: SOX (CoBIT, Coso) PCI, NIST SP 800-53,53A, HIPAA, HITRUST, MARS-E 2.0, FISMA

Networking Protocols: TCP/IP, HTTP/HTTPS, SSH, SSL, DNS, SNMP

Networking Monitoring: Routers, Switches, Load balancers, Cisco VPN, NAC/NAP

Email Security Tools: O-365 Suite, Barracuda-spam firewall, Guava-E-mail Filtering Service

MFA & SSO: Ping Identity (Ping-one, Ping-Federate)

Encryption: Two fish, Blowfish, AES

Threat Management: Fire eye, MacAfee epos & Hips, Websense, I prism (URL filtering service), Fortinet’s

Network Monitoring: ScienceLogic, Solar winds (NPM, SAM)

Patch Management: Lumension-Prism Patch, SCCM

Certificate Monitoring: Digi-cert

Operating Systems: Linux (kali Linux, red hat Linux), Windows

Ticketing Systems: Service Now, Remedy, Heat, Clarify

DAM: IBM Info Sphere Guardium

DLP & EDR TOOLS: SYMENTEC, digital guardian

  • ID: #43423230
  • State: Arizona Phoenix 85001 Phoenix USA
  • City: Phoenix
  • Salary: Depends on Experience
  • Job type: Contract
  • Showed: 2022-06-21
  • Deadline: 2022-08-19
  • Category: Security