Security Consultant, San Francisco

View: New views
1 Messages — Rating Filter:   Alert me  

Security Consultant, San Francisco

by Phanmaly.Somsanith :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

---------------------------------------------------
SECURITYFOCUS JOBS - NEW OPPORTUNITY
---------------------------------------------------


JOB DESCRIPTION
---------------------------------------------------
Position:       Security Consultant
Location:       San Francisco, California, United States
Type:           Permanent F/T

Closing Date:   2008-12-12

The National Incident Response Team (NIRT), a National Information Technology Operation (NITO), for the Federal Reserve System delivers effective and efficient national intrusion detection, incident response, security intelligence, threat assessment, and vulnerability assessment services for the Federal Reserve System. As a member of NIRT’s Information Security Assessment Team, you will interact with NIRT’s customers who are located around the Federal Reserve System evaluating the security of their information systems and applications. The primary areas of responsibility include overseeing, coordinating and performing information security assessment activities. The ideal candidate will have the ability to blend technical, organizational, business, and information security skill sets and knowledge. This means scoping and coordinating the assessments in addition to performing both high-level assessment analysis translating technical vulnerabilities into business risk and low-level assessment work such as running vulnerability assessment tools and conducting ethical hacking.

 

Job Responsibilities:

·         Develop understanding and serve as liaison to business areas;

·         Coordinate security assessments with business areas;

·         Oversee and conduct vulnerability assessments and penetration testing;

·         Oversee and perform the review and analysis of security vulnerability data to identify applicability and false positives;

·         Prepare and distribute security assessment reports to customers;

·         Assist in the selection and tailoring of approaches, methods and tools to support service offering;

·         Perform additional incidental duties as assigned.




JOB REQUIREMENTS
---------------------------------------------------
Job Requirements:

·         Bachelor degree in Information Technology/Computer Science, or related disciplines and/or equivalent work experience;

·         Demonstrated ability to work on multiple projects simultaneously and to work in a highly dynamic, rapidly changing environment;

·         Excellent analytical skills;

·         Excellent interpersonal, communication, organizational, and project management skills;

·         Team player with excellent consultative and communication skills, and the proven ability to work effectively with client, internal management and staff, vendors and consultants;

·         Strong written and verbal communications skills;

·         Proven ability to communicate technical issues to technical and non-technical business area representatives;

·         Hands-on experience with commercial and open-source network and application security testing tools;

·         Experience testing web applications for common web application security vulnerabilities as defined by OWASP including input validation vulnerabilities, broken access controls, session management vulnerabilities, cross-site scripting issues, SQL injection and web server configuration issues;

·         Ability to travel;

·         Approximately 3-5 years of experience in the security aspects of multiple platforms, operating systems, software, communications, and network protocols;

·         Ability to obtain US Security Clearance;

·         CISSP certified or the ability to work towards obtaining the certification.

 

 

Desired

·         Knowledge of the roles and responsibilities of the Federal Reserve’s IT organizations, National Information Technology Operations (NITOs), and other System support organizations;

·         Broad understanding of information technology and information security;

·         Broad understanding of the Federal Reserve System’s businesses and business goals;

·         Familiarity with FISMA, FIPS, the NIST 800 series.




CONTACT
---------------------------------------------------
To be considered for the position, please apply on-line at www.frbsf.org

Please, no phone calls about this job!

Federal Reserve Bank of San Francisco
Phanmaly Somsanith
Recruiter
Phanmaly.Somsanith@...



---------------------------------------------------
SECURITYFOCUS JOBS
---------------------------------------------------
SecurityFocus now offers an online interface for
searching and managing job opportunities and resumes.

http://www.securityfocus.com/jobs