Knowledge and understanding of the common, multi-tiered, application design models.
- Knowledge and understanding of the common, multi-tiered, application design models.
- Ability to facilitate the creation of the System Design Workbook and Security Controls Questionnaire.
- Analyzing technical diagrams and data flows and host systems for compliance with policies and best practices
- General knowledge and understanding of common security controls and what purpose they serve and
- Ability to use Microsoft Access
- Import data to database tables
- Run reports
- Extensive knowledge and understanding of security controls and where they should be applied
- Experience with Networking technologies; Firewalls, Routers, etc.
- Experience with Security technologies: Intrusion Detection Systems, etc.
- Experience with Host Systems: Windows, Unix, etc.
Specific skills/experience (required)
- 6 or more years of current technology based security experience.
- Vulnerability assessment \ Systems auditing experience.
- System Administration experience, strong troubleshooting skills.
- Technology investigation experience; member of an incident response team, experience performing computer forensics.
- Networking technology experience
- Strong client consulting skills including verbal communication and understanding the business perspective.
- Vulnerability Assessments: Databases
- Vulnerability Assessments: Servers
- Security Intelligence: daily processing, distribution, etc.
- Incident Response (Investigations, CIRT, VIRT, Forensics etc...)
Education/Certifications
- Bachelor's degree
- Masters degree preferred
- CISSP and/or CISM certification strongly preferred