Vacancy expired!
Our client has an immediate need for a
Cyber Security Engineer/Analyst, who will be responsible for deploying, operating, and managing various cybersecurity tools in support of the overall Corporate Cybersecurity strategyRequirements:- BS/BA degree in Computer Science, Information Systems, related discipline, or equivalent experience, or over 5 years’ experience
- 3+ years of cybersecurity experience
- 6+ years of IT experience
- Information Security certifications, at least one of the following.
- Certified Information Systems Security Professional (CISSP)
- GIAC Security Essentials (GSEC)
- CompTIA Security+
- Extensive knowledge of threats, risk analysis, and the development of security systems and protocols
- Experienced analytical skills to define risk, identify potential threats and develop and document action/mitigation plan
- Experience managing an array of security tools such as Tenable, Splunk, Crowdstrike, Proofpoint, Zscaler, and Imperva
- Experience in cloud and application security
- Experience with NIST CSF, Attack Framework and NERC
- Any of the following Information Security certifications are a plus
- GIAC Defensible Security Architecture (GDSA)
- GIAC Certified Web Application Defender (GWEB)
- CompTIA Advanced Security Practitioner (CASP+)
- Certified Application Security Engineer (CASE)
- Experience with secure SDLC and secure SDLC models is a plus
- Experience with OWASP Top 10, threat modeling, SAST, and DAST is a plus
- Experience following secure coding standards that are based on industry-accepted best practices such as OWASP Guide, or CERT Secure Coding to address common coding vulnerabilities is a plus
- Experience creating a software source code review process that is a part of the development cycles (SDLC, Agile, CI/CD) is a plus
- Experience understanding of passive and active TAPS in a network is a plus
- Experience understanding of Network Protocols and ability to analyze PCAP traffic is a plus
- Working closely and collaborating with the Cybersecurity Incident Response Team (CIRT) and assisting with investigations, responses, and remediations in cloud and on-premises environments
- Managing Cybersecurity infrastructure technology tools such as vulnerability management, email protection, endpoint protection, network security, SIEM, and others
- Ensuring operational functionality and support of Cybersecurity infrastructure technology tools
- Deploying and operationalizing new and upgraded Cybersecurity infrastructure technology tools
- Developing and documenting
- Cybersecurity processes, procedures, metrics, and reporting
- Technical controls for cloud, on-premises, and hybrid environments mapped to company policy and industry standards
- Providing technical guidance on security policies and standards development
- Managing expectations and effectively communicating and collaborating with colleagues and project team members
- Developing project plans and design documents
- ID: #49209392
- State: Pennsylvania Pittsburgh 15201 Pittsburgh USA
- City: Pittsburgh
- Salary: Depends on Experience
- Job type: Contract
- Showed: 2023-02-14
- Deadline: 2023-04-03
- Category: Et cetera