Senior Technical Security Engineer - Georgia IT Inc.
Dulles, VA
About the Job
Job Title : Senior Technical Security Engineer
Location : Dulles, VA
Position Type : Full Time
Salary + benefits (HealthCare and PTO Etc.)
US Citizen, Green Card and GC EAD only.
No sponsorship available for this job, direct hire and NO 1099 or C2C
(Please include the expected Salary Range)
Job Description:
About the Job
The Senior Technical Security Engineer position is within Client's IT Security group whose mission is to deliver information security solutions and services to protect Client information assets, computing infrastructure, applications and data. The Sr. Engineer will work within the compliance and vulnerability management team helping to identify and mitigate risks against Client.
What You Will Be Doing
The Sr. Engineer will perform technical security engineering activities including the following:
Desired Skills!
Location : Dulles, VA
Position Type : Full Time
Salary + benefits (HealthCare and PTO Etc.)
US Citizen, Green Card and GC EAD only.
No sponsorship available for this job, direct hire and NO 1099 or C2C
(Please include the expected Salary Range)
Job Description:
About the Job
The Senior Technical Security Engineer position is within Client's IT Security group whose mission is to deliver information security solutions and services to protect Client information assets, computing infrastructure, applications and data. The Sr. Engineer will work within the compliance and vulnerability management team helping to identify and mitigate risks against Client.
What You Will Be Doing
The Sr. Engineer will perform technical security engineering activities including the following:
- Perform vulnerability scans, analysis, validation and remediation activities
- Perform network and application penetration testing
- Classify and prioritize the risk of new vulnerabilities according to the specifics of Client environment's risk level, mitigating factors, and assessment of the impacts of internal and external threats
- Engineer application, system and network security solutions to meet security requirements for varied operating environments
- Research and assess new threats, vulnerability security trends and security alerts, recommend remedial action
- Work with customers to oversee remediation of identified security issues
- Perform technical and non-technical compliance activities
- Provide security subject matter expertise to Client product teams including developers and system administrators
- Perform security validation for configuration settings on different systems
- Bachelor's degree with a minimum of 5 years of information security work experience
- A strong interest in the field of information security
- Strong Understanding of common network vulnerabilities, OS vulnerabilities (Linux, Window and OSX), patching and attack patterns
- Good written and verbal communication skills.
- Solid organizational skills and strong customer service skills
- Fluent in a variety of web application protocols, operating systems and networking technologies.
- Experience in system administration, software engineering, or related technologies.
- Experience with parsing / analysis of large data sets (e.g. vulnerability scan results).
- Strong analytical skills
Desired Skills!
- Certified Information Systems Security Professional (CISSP)
- Expertise with OWASP/NIST security concepts and common application security risks, such as
- XSS, XSRF, SQL Injection, Cookie Manipulation among others.
- Familiarity with Enterprise Vulnerability Management tools such as Rapid 7 Nexpose, Nessu and Qualys.
- Familiarity with Amazon Web Services security
Source : Georgia IT Inc.