Category: / Tags: no tag /
Remember, I have not signed an NDA. Looks like budget dollars are flowing. Would you take this? Job Responsibilities: This team also provides additional security services including vulnerability scanning, data leakage prevention, 2-factor authentication, proxy, network access control (NAC), log management and O/S hardening standards. The Security Engineer must have a deep knowledge of operating systems and networking. This position will be responsible for designing and implementing endpoint security solutions including defining O/S hardening standards, DLP, and log management. In addition, this individual will assist in defining the security requirements for critical IT services like Active Directory, messaging, desktop standards, and virtualization as ADP continues to execute a global deployment strategy. The candidate must have strong engineering skills and security experience to successfully recommend, design and implement comprehensive security solutions at an O/S andnetwork level. Continually improve Log Logic log management service to align capabilities with security, compliance and operational requirements. Improve security services through automation and integration leveraging vendor APIs when appropriate. Define security requirements for critical global IT services like Active Directory, desktop, messaging, mobility, etc. Provide tier 3 operational/application support for DLP, NAC, RSA 2-factor, and Log Logic infrastructure. Define / update operating system hardening guidelines as needed. Define and implement security process and technical improvements. Perform other duties as assigned Experience, Skills, Academic Requirements: Must be well versed in multiple security technologies: · Vulnerability Scanning (Qualys) · Data Leakage Prevention (Symantec) · Log Management (Log Logic, Snare) · Antivirus (MacAfee) · End-point security (MacAfee HIPS) · Web Proxy/Content Filtering (Bluecoat, Websense) · Network Access Control (Cisco, McAfee, 802.1 xs) · Active Directory · PKI, Radius · RSA SecureID · Strong experience in Windows and *nix environments (Windows XP, 7, 2003, 2008, Solaris, SUSE Linux Enterprise Server, AIX) · Familiarity with most major TCP/IP application protocols (DNS, DHCP, SMTP, HTTP, BGP, LDAP, IMAP, SSH, FTP, KRB5, DHCP, CIFS) · Enough SQL familiarity to generate nested queries and joins in a major SQL dialect · Functional experience with text and data representation and manipulation (XML, HTML, Regular Expressions, SQL) · Solid understanding of general enterprise core service types (web/mail/dns/dhcp/file servers) and core infrastructure elements (switch/router/proxy/firewalls) · General experience with systems automation in a major scripting language (Python, Perl) · Knowledge of Proof point is a plus · Experience with Encryption software(Voltage\Sophos) is a plus · Digital Rights Management (DRM) experience is a plus · Efficient communications skills (listen, write, oral) Effective time management and organizational skills · Strong troubleshooting and problem solving skills · Team player with the ability to work autonomously Education: BS Computer Science or equivalent CISSP or GSEC Any of the following are a plus: GCWN, GCUX, GAWN, CCSP, VCP