Cyber Security Consultant
2 weeks ago
As one of the most experienced staffing firms in Denver Colorado, North Star Staffing Solutions prides itself on exceptional services and relationships we've built over the years. We have continued to provide the recruiting and staffing expertise our clients expect and they have acknowledged over and over again that our services are integral to their success.
Job DescriptionLocations:
- Multiple positions in various locations such as St. Louis, San Francisco, San Antonio, New York, Houston, Detroit, Los Angeles, and 5 in Atlanta.
Job Description & Duties:
- Align information security strategy with business needs.
- Investigate complex cyber breaches, remediating detect and respond approaches.
- Optimize information security spending as well as making the Cyber Program Management (CPM) more cost-effective and sustainable.
- Security Operations Center capabilities improvements.
- Monitor, maintain and enforce compliance with access management policies, address legal and regulatory compliance issues.
- Ensure resources and skills for implementing technology and processes are applicable.
- Helps create solutions that combine hardware, software, and services to normalize, aggregate, correlate, and visualize data from disparate security products.
- Assisted organizations in reducing complexities associated with managing vast amounts of security event data while maximizing control over the security infrastructure.
- Assess, design and implement a security strategy and governance program framework.
- Design, implement and integrate security solutions that will prevent risks and exposures.
- Design and implement security policies, procedures and standards that describe pragmatic, risk-based mechanisms to maintain the confidentiality, integrity and availability of information systems and the data processed therein.
- Design and implement security solutions to monitor the efficiency and effectiveness of security operations, controls and infrastructure.
KEY RESPONSIBILITIES:
- Enhance the Software Development Life Cycle (SDLC).
- Establish a security program for the SDLC capture that will utilize the client's current application.
- Supervise the overall application review process.
- Identify application vulnerabilities.
- Suggest architectural changes and design at procedural and technology levels.
- Perform Quality Assurance (QA) review of web-based applications in order to identify and validate application vulnerabilities and perform remediation at architectural and source code levels.
- Complete the draft, final reports and other deliverables specified within the planning documentation.
- Ensure project documentation is complete and archived appropriately.
- Subject matter in programming languages and web application environments.
- Propose vulnerability risk level and estimated level of remediation effort.
- Propose code fix or architectural strategies to remediate identified vulnerabilities.
- Collaborate to confirm appropriateness of a proposed remediation approach or suggest an alternative action and then perform remediation.
- Collaborate with the engagement team to plan the engagement and develop work programs, timelines, and planning documentation.
- Document the business processes dependent on IT while working with the team.
- Perform high-quality client service by directing daily progress of fieldwork, informing supervisors of engagement status, and managing staff performance.
- Thorough understanding of complex enterprise systems.
- Knowledge of the current IT environment and industry trends to identify engagement and client service issues.
- Communicate with the engagement team and management through written correspondence and verbal presentations.
Job Requirements & Qualifications:
- Requires a bachelor's degree and a minimum of 2 years of related work experience or a graduate degree and approximately 1-2 years of related work experience in the fields of Computer Science, Information Systems, Engineering, Business or related major.
- Required experience performing application security vulnerability assessments and attacks including creation of proof-of-concept exploits.
- Experience using Fortify, AppScan, WebInspect, Burp, ZAP.
- Used enterprise application development in one or more of the common development platforms such as Java/J2EE, .NET/C#, C/C++, PHP, Python, Flash.
- Performed Information Security strategic planning, architecture migration strategies or security engineering strategy.
- Proficient in networking and system-level concepts such as web application architecture, REST APIs, SOAP, jQuery, AJAX, message oriented architecture.
- Experience in key Information Security domains such as identity, access management, cryptography.
- Enterprise experience with application development for mobile platforms such as iOS or usage of mobile frameworks such as Kony, PhoneGap is a plus.
- Moderate understanding of best practice methodologies in Application Security including OWASP, mobile.
- Utilized development methodologies such as waterfall, agile, continuous integration.
- Written enterprise security standards, policies, coding guidelines.
- Able to examine issues both strategically and analytically
- Ability to interact with senior management, technical SMEs, business partners and influence decisions
- Must have strong written and verbal communication skills.
- Able to effectively communicate with business partners using non-technical terms.
- Ability to work on multiple simultaneous initiatives/projects/tasks.
- Must hold or be willing to pursue related professional certifications such as the CISSP, Open Group Certified Architect or CEH certification.
- Willingness and ability to travel domestically and internationally
MUST:
- Fortify, AppScan, WebInspect, Burp, ZAP, Java/J2EE, .NET/C#, C/C++, PHP, Python, Flash, web application architecture, REST APIs, SOAP, jQuery, AJAX, message oriented architecture,
- Information Security domains such as identity, access management, cryptography.
- Understanding of development methodologies such as waterfall, agile, continuous integration.
All your information will be kept confidential according to EEO guidelines
-
Cyber Security Analyst
1 day ago
San Diego, California, United States XiFin Full timeAre you interested in harnessing technology and AI to transform healthcare?At XiFin, we believe a healthier, more efficient healthcare system starts with strong financial and operational foundations. Our innovative technologies help diagnostic providers, laboratories, and healthcare systems manage complexity, drive better outcomes, and stay focused on what...
-
Cyber Defense
7 days ago
San Francisco, California, United States Deloitte Full timeManager - Cyber Incident ResponseDeloitte's Cyber Serviceshelp our clients to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Cyber Risk practice helps organizations with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and...
-
Director of Cyber Security/IT Risk
2 hours ago
San Francisco, California, United States RGP Full timeWe are seeking a Director, IT Risk Assurance, with focus on cybersecurity and data privacy who will be responsible for supporting business development as well as leading, managing and, when necessary, executing projects in the pursuit of delivery excellence across a portfolio of clients. You must demonstrate a high level of executive presence and...
-
OT Cyber security Specialist
1 day ago
San Diego, California, United States Military, Veterans and Diverse Job Seekers Full timeKey Responsibilities:Lead and/or assist technical and analytical Cyber security support activities for Facility Related Control Systems (FRCS), Operational Technology (OT) and Information Technology (IT) to develop, engineer and implement a cyber secure baseline.Assist the ISSM with initial engineering requirements to determine proper FIPS 199 system...
-
Cyber Security, Palo Alto
7 days ago
San Jose, California, United States Realign Full timeJob Type: ContractJob Category: ITJob DescriptionRole: Cyber Security, Palo AltoLocation: San Jose, CADuration: 7 months Experience (Years): 4-6 Role Description:Support Day 1 readiness by ensuring secure connectivity, identity continuity, and infrastructure stability for CYBR employees within the PANW environment.Maintain functionality of identity...
-
Cyber Security Architect
4 days ago
San Diego, California, United States 'ike Group Full timeSenior Cyber Security ArchitectThe Senior Security Architect designs and drives the secure architecture of DataHouse platforms and client solutions across cloud and hybrid environments. This role leads threat modeling, control selection, and reference architectures aligned to ISO/IEC 27001, NIST, and HIPAA, partners with engineering to embed security in...
-
Senior Associate, Security GRC
2 weeks ago
San Francisco, California, United States Gemini Full time $112,000 - $160,000About the CompanyGemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and institutions in over 70 countries. Our mission is to unlock the next era of financial, creative, and personal freedom by providing trusted access to...
-
Sr. Cybersecurity Consultant.
3 days ago
San Francisco, California, United States Iris Software Inc. Full timeOur Client which is a large Audit is urgently looking to hire Sr. Cybersecurity Consultant.Sr. Cybersecurity Consultant.Location - San Francisco CA ( 100 % Remote )Privileged Access Management EngineerDesign, deploy, and maintain CyberArk or Microsoft PIM solutions to control and monitor privileged access to critical systems.Develop and implement privileged...
-
Cyber security Operations Analyst
2 days ago
San Diego, California, United States Military, Veterans and Diverse Job Seekers Full timeDuties and ResponsibilitiesMaintain and operate cybersecurity technology and and provide expertise in area of focus (e.g. Risk Assessments, Controls Engineering or Incident Response).Collaborates with the business to understand their needs in order to tailor security offerings unique to their environment.Uses working knowledge of IT system functionality,...
-
School of Cyber
2 weeks ago
San Bernardino, California, United States California State University, San Bernardino Full timeSchool of Cyber & Decision Sciences - Assistant Professor in Cybersecurity California State University, San BernardinoJob no: 552958Work type: Instructional Faculty - Tenured/Tenure-TrackLocation: Southern California|San Bernardino - San Bernardino CampusCategories: Bargaining Unit|Unit 3 - CFA - California Faculty Association,Appointment...