Job summary:
Title:
Security Architect - W2 Only
Location:
Columbia, SC, United States
Length and terms:
Long term - W2 Only
Position created on 11/16/2018 07:00 pm
Job description:
*** W2 only - no c2c ***Very long term project; initial PO for 1 year and usually goes for more than 4 years ***
Interview : Skype/Phone.
SCOPE OF THE PROJECT:
- Cyber Threat Response and Incident Handling
- Cyber Security Operations
- Network Engineering
- Security Service Portfolio Management
DAILY DUTIES / RESPONSIBILITIES:
- The Consultant will work directly for the Director of Information Security to drive innovation and maturation of the Agency Cyber threat detection and response capabilities. We are looking for candidates who are highly organized, can work independently in a fast-paced environment and produce multiple quality deliverables within defined deadlines. Candidates should be self-starters, creative problem solvers and have an eagerness to implement tactics, techniques and procedures which make the most effective use of Agency staff, resources, products and technologies quickly.
- Perform threat identification and analysis of risks to the Medicaid Enterprise
- Drive innovation and maturation of the OIA (Cyber) Security Operations Center
- Assist in the implementation and advancement of Continuous Monitoring and Incident Response processes and procedures
- Expertly deploy and manage tools such as Tenable Nessus, Splunk, QRadar, etc.
- Serve as Security Subject Matter Expert for Secure Application and Infrastructure Design, Development and Implementation
- Design, deploy and manage secure network infrastructure to include switches, routers, firewalls and other devices as necessary to ensure the security of Agency data and associated services
- Organize and write supporting documents/artifacts describing vulnerability assessment activities
- Create documentation on specific remediation steps to close vulnerabilities or mitigate risk to acceptable levels
- Create documentation that can readily to be added to Agency procedures
- Revise documents and artifacts as tactics and techniques evolve to address new and emergent threats and trends
- Work with Information Technology, Application Development and Business Teams to advance security efforts of the Medicaid Enterprise
Required Skills
- Documentation/LanguageAbility to write, edit, and prepare graphic presentations of technical information for both technical and business personnel
- Federal Information Security Management Act (FISMA)
- OWASP Top 10 remediation techniques
- risk/vulnerability assessments
- Experience with UNIX, Windows, Linux, MacOS, Cisco, Juniper, web apps, databases, strong authentication, operating systems and network security protocols and procedures.
- Local Area Network (LAN)
- LAN (VLAN)
- MS Office (Word, Excel, PowerPoint, Visio)
- GRC solutions
- Vulnerability ScanningYes1AdvancedWithin 6 Months4 - 6 Years
- 10+ years of experience of I.T. working with Windows, Linux, Mainframe technologies and Web-based applications
- 5+ years of experience with Firewalls, Load-Balancing, LAN and WAN infrastructure
- Ability to communicate clearly, verbally and in writing; to interact effectively with internal and external vendors, project team members, management and agency departments; to build relationships and use facilitation skills with both technical and non-technical personnel
- Ability to write, edit, and prepare graphic presentations of technical information for both technical and business personnel
- Experience in organizing information in a way that is appropriate for technical explanations without losing sight of the needs and aptitude of the audience
- Ability to collaborate and coordinate with multiple teams and vendors
- Ability to work independently and as a member of a team
- Ability to multitask and prioritize tasks effectively in order to meet deadlines
- Must be intermediate to advanced skills in additional Microsoft Office products (Word, Excel, PowerPoint, Visio) and working with templates and style guidelines for branding consistency
- Keen attention to detail while maintaining the ability to see the big picture
- Ability to absorb and retain complex processes
- Strong English language skills
- Demonstrable understanding of the rules of English grammar and usage
- Ability to accept changes and constructive criticism in a fast turn-around environment
PREFERRED SKILLS (RANK IN ORDER OF IMPORTANCE):
- Experience identifying, testing and leading remediation efforts of OWASP Top Ten, CWE/SANS TOP 25 Most Dangerous Software Errors, etc.
- Prior experience performing vulnerability assessments in organizations subject to FISMA or similar requirements
- Prior experience in working with eGRC systems
Contact the recruiter working on this position:
The recruiter working on this position is Rajendra Reddy
His/her contact number is +(1) (202) 4706751
His/her contact email is rajr@msysinc.com
Our recruiters will be more than happy to help you to get this contract.