TSC is recruiting in the following areas:
Principals only. Positions are located in San Francisco, San Jose, and the New York city area. If you are interested in any of these positions, review the job descriptions below, and send your resume to: jobs@thesecurityconsortium.net
Senior Security Analyst
Senior Security Analysts are responsible for the successful delivery of a wide range of Information Security services to clients, including audits and assessments, penetration testing, application security assessments, Information Security architecture design, as well as assistance in identifying and implementing Information Security solutions.
Senior Security Analysts are required to stay current on industry developments and trends, provide direction and mentoring for Security Consultants, assist with pre-sales support, and manage multiple projects across different clients - assuming a variety of roles, including project manager, technical lead, and network or application security engineer.
Responsibilities
Senior Security Analysts provide the following services:
- Information Security Audits and Assessments,
- Network and Application Scanning and Penetration Testing,
- Information Security Design,
- Configuration, and Installation,
- Information Security Policy and Procedure Development,
- Information Security Program Development,
- Incident Response and Digital Forensics
Position Requirements
Candidates are required to possess advanced technical expertise in current Information Security technologies, a solid understanding of Information Security assessment methodologies, strong business knowledge, excellent project management skills, and proven experience in information technology, preferably with internetworking and application development.
Specifically, candidates must be able to demonstrate the following:
- 5+ years Information Security experience,
- 10+ years Information Technology and/or Networking consulting experience.
- Experience with Information Security technologies, including firewalls, VPNs, intrusion detection/prevention systems, and vulnerability scanning tools
Experience
- Analysts are expected to possess experience with infrastructure components, databases, routers, switches, and special purpose appliances as well as experience with Microsoft Windows and Linux/Unix operating systems.
- Analysts should possess familiarity with Information Security regulations, including HIPAA, GLBA, and PCI.
- Knowledge of Information Security risk assessment methodologies and standards, including ISO17799, OSSTMM, NSA-IAM, OWASP, and NIST standards.
- Experience with Information Security Policy and Procedure development and implementation.
- Strong project management experience.
Education / Certifications
- BS in Computer Science, Information Systems or related field.
- CISSP, GIAC, or other relevant Information Security certifications.
- Microsoft, Cisco, or other relevant Information Technology certifications.
Personal Attributes
- Excellent oral and written communication skills.
- Experience developing technical documentation, including reports, proposals, statements of work, case studies and whitepapers.
- Ability to communicate effectively with client staff at all levels, from technical to executive.
- Ability to work independently, undertaking and completing project tasks on schedule with minimal supervision
- Proven analytical and problem-solving abilities.
- Ability to effectively prioritize and execute tasks in a high-pressure environment.
- Ability to present ideas in business-friendly and user-friendly language.
- Highly self motivated and directed.
- Keen attention to detail.
- Team-oriented and skilled in working within a collaborative environment.
Work Conditions
- On-call availability
- Sitting for extended periods of time.
- Sufficient dexterity of hands and fingers to efficiently operate a computer keyboard, mouse, and other computer components.
- Lifting and transporting of moderately heavy objects, such as computers and peripherals.
Enterprise Security Architect
To provide enterprise security architecture for the company’s Information Systems, which involves defining, with the stakeholders, the as-is and to-be enterprise security environment for the company. Responsible for establishing and managing the security architecture transition plan, working with key stakeholders to set security standards and guidelines, and performing a hands-on security advisory function for the company’s technology staff.
Major Responsibilities:
- Manage the Information Systems security architecture function of the company, which includes working collaboratively with other enterprise architects, IS Security department, and other IS departments.
- Develop the information security architecture function in alignment with enterprise architecture objectives.
- Interact with the company’s internal and external auditors and regulators regarding compliance issues.
- Develop, as appropriate, conceptual, logical, and physical security models to work within based on internal network standards: firewalls, load balancing, virtualization, remote access, member extranets, operating systems security, application security, security program compliance, SANs and disaster recovery sites.
- Define security standards for infrastructure, application and data layers.
- Provide mentoring and technical leadership to others in the implementation of information security standards and in realizing the transition plan for information security architecture.
- Ensure safeguarding of the company’s information systems' assets through robust security architecture and controls.
- Provide practical application of the defined information security architectural methods and technologies.
- Perform other duties as needed.
Skills/Knowledge:
- Bachelor’s degree in Computer Science, Finance, or Math, or equivalent work experience, required. Master’s degree or certification in Security Architecture strongly preferred.
- Minimum five years experience in information security field, preferably within a SEC registered financial institution.
- Minimum of five years’ direct experience with SSO, Kerberos, ole-based access control, identity management and provisioning, LDAP, Active Directory, virtualization, web services (SOAP), securing SOA, web access, firewalls, securing exchange server, SANs.
- Ability to create security architecture prototypes in the applications, infrastructure and data areas of information technology.
- Strong technical skills and hands-on practical knowledge and experience with IS security technologies.
- Proven track record of designing and implementing information security architectures in a financial institution.
Sales Executive
TSC is currently looking for a high energy Sales Executive with the following background:
- Experience in the development and implementation of the general sales strategies for a high tech company.
- Proven track record and demonstrated ability in growing sales opportunities, managing corporate accounts, and introducing fresh revenue streams.
- Experience in implementing marketing policies that lead to successful sales campaigns and advertisement.
Other vacancies
We're also currently hiring Network Test Engineers, Project Managers, and Security Architects. Join our team and work on great projects with well-known experts.
Send your resume to: jobs@thesecurityconsortium.net