Title: Senior Information Security Analyst
Company: Geographic Solutions, Inc.
Must have the following in order to apply:
High School Diploma or equivalent
Four (4) years of experience in one or more of the following Database Environments: Microsoft SQL Server, Oracle, Sybase, DB2 and MySQL
4+ years of hands on experience in one or more of the following Operating Systems: Windows Server 2003/2000/NT, Linux and UNIX
4+ years of experience in TCP/IP Networking
Knowledge of Industry Standards, e.g., ISO 17799/27001, FISMA/FedRAMP, NIST Publications and other Industry Related Security Standards
Knowledge of Industry Regulations, e.g., Gramm-Leach-Bliley Act (GLBA), Payment Card Industry (PCI) or Corporate Compliance
Active participation in Enterprise level Risk Assessment and Business Impact Analysis
Active participation in disaster recovery and business continuity planning and execution
Consulting experience in Information Security
Proficiency in configuration, optimization, and utilization of information security tools such as McAfee EPO, McAfee ENS, McAfee NSM/ePO, Qualys, HP Fortify, Nessus, Kismet, Airsnort, NMAP, Ethereal, WebInspect, SNORT, Security Onion, and Nikto.
Knowledge of Governance, Risk, and Compliance frameworks and activities such as performing risk assessments, vulnerability assessments, and audits
Understanding of manual techniques to exploit vulnerabilities in the Open Web Application Security Project (OWASP) top 10 including but not limited to cross-site scripting, SQL injections, session hi-jacking and buffer overflows to obtain controlled access to target systems
Attack and Penetration experience in testing of Internet infrastructure and Web-based applications utilizing manual and automated tools
Proficiency in static and dynamic scanning methodologies
Valid Florida driver’s license
Background Checks (Local/State/Federal); Reference Check; Drug Free Workplace.
The Senior Security Analyst will be responsible for identifying and reporting all security issues, prioritizing threats, and confirming threats have been mitigated in accordance with company standards. The Senior Security Analyst will be a resource of experience and practices to for the Security and Compliance team.
Duties and Responsibilities:
Perform network traffic forensic analysis, utilizing packet capturing software, to isolate malicious network behavior, inappropriate network use or identification of insecure network protocols.
Perform general inspection and implement preventative measures on intrusion detection systems.