Author name: Bruce

I have been doing IT and Cybersecurity specifically GRC for 20 years. I want to help people get into this field.

Uncategorized

Need Security Engineer in Montpelier, VT

Title:                                  Security Engineer (17276871) Position:                          1 Location:                          Montpelier, VT Job Description Manage and use security stack of tools Manage all upcoming upgrades and patches Platform Management Experience in MacAfee, Web Sense, Proof point , F secure running on proof point, MacAfee on exchange , Voltage Neeraj Kashyap Technical Recruiter 22nd Century Technologies Inc.(TSCTI) Direct : (908) 765-0003 Ext: 334

Uncategorized

Offer Asap for Program Manager in Saint Paul, MN

Project Title: Program Manager Position Id: RFO0111 Client:                        Minnesota Department of Health, MN Duration:                      3/15/2016 to 6/30/2016 Work Location: Orville Freeman Building 625 Robert Street, Saint Paul, MN, Public Health Lab 601 Robert St. N, Saint Paul, MN, and Golden Rule Building, 85 7th Place E, Saint Paul, MN. Interview Type:  Phone/ IN Person- In person prefered Skill matrix to be filled by candidate : Required minimum qualifications Minimum Number Years of experience 4 years’ experience working on IT security controls projects in environments that use the following technologies: Oracle, MS-SQL, Active Directory, Java, JavaScript, Linux, Windows server 2012, Windows 7, TCPIP. 3 years’ experience working with NIST recommended Security Controls for Federal Information Systems and Organizations, Special Publication 800-53 revision 4. 2 years’ experience with Identity and Access Management (IAM) system(s). Desired Skills Minimum Number Years of experience Experience with Keycloak identity management authentication server. Experience with ArcSight event manager. Experience with RSA Archer platform. At least one engagement in which the applicants had to participate in a SSAE16 SOC 2 or equivalent (e.g. Fed RAMP) industry security standards audit Project Deliverables: Detailed project work plan with prioritized deliverables, level of effort in hours, dates, and task assignments. Access Controls Risk Assessment document for Applications, Network, Operating Systems, and Databases based on compliance with MN.IT Enterprise Security Control Standards and data classification for each system. Documented application access controls, procedures, remediation plans, and exceptions that adhere to the MN.IT Enterprise Security Control Standards. Documented network access controls, procedures, remediation plans, and exceptions that adhere to the MN.IT Enterprise Security Control Standards. Documented operating system access controls, procedures, remediation plans, and exceptions that adhere to the MN.IT Enterprise Security Control Standards. Documented database access controls, procedures, remediation plans, and exceptions that adhere to the MN.IT Enterprise Security Control Standards. The documented access controls and procedures must adhere to the appropriate data classifications that are documented in the MN.IT Enterprise Security Control Standards. Documented procedures must include how access is/or will be monitored and tracked. Documented procedures must include any tools that are/or will be used to monitor and track access. Documented application controls and procedures must include remediation for migrating to Keycloak Authentication Server if applicable. Create an MDH Access Control documentation package that can be used to test and verify application, network, operating system, and database access controls that adhere to MN.IT Enterprise Security Control Standards. Project Environment: Resources will work in a team environment under the direction of the MN.IT@MDH Chief Information Security Officer and the IT Security team.

Uncategorized

Immediate Interview for Network Engineer San Francisco, CA

The Telecommunications LAN/WAN Program provides the Trial Courts with a standardized level of network infrastructure and security services as the foundation to sustain both local and enterprise Court applications.  The primary objectives of the Program include an annual technology refresh, network security services and a network maintenance services. The network engineers are primarily responsible for the design and validation of Court network including internal and external telecommunication.  They also provide technical oversight throughout the deployment and testing of each network infrastructure and security architecture project at all Trial Court facilities.  The engineers work with Judicial Council resources, Court IT staff and 3rd party vendors throughout the deployment of each Court Project.  Ad-hoc Project assistance is provided to Trial Court IT personnel as needed. Engineers will ensure adherence to judicial branch standards, as well as providing secure and reliable connectivity to justice partners.  The position requires that the engineers work with personnel with different levels of technical expertise on a daily basis. This position is not an operational “hands-on” engineering position.  While trouble-shooting is part of the Project tasks, this position will lead and direct network resources responsible for making operational changes to network devices.     Minimum Job-Specific Skills/Qualifications Required (in order of relative importance):   Skills Experience ·         Minimum of 10 year of experience in Information Technology ·         Minimum of 7 year of experience with Cisco network infrastructure and security architecture deployments ·         Minimum of 7 year of experience with government IT projects (Local, State, or Federal) ·         Experience working on multiple simultaneous network projects throughout the entire life cycle from design to deployment • Possess extensive and detailed knowledge and experience with the following platforms and technologies: a. Cisco ASA firewalls b. Cisco 1900, 2900, 3900 and ASR routers c. Cisco catalyst switches d. Cisco Nexus switches e. Cisco VPN solutions f. Cisco IPS platform g. Cisco wireless platform h. BGP and EIGRP routing i. AT&T MPLS / DMVPN / AVPN solutions ·         Manage intrusion detection services ·         Datacenter class network infrastructure ·         Possess knowledge of the following enterprise infrastructure design concepts: a. Multi-tier design b. Client / server system architecture c. System security processes d. Data center technology infrastructure e. Web-based application deployment f. Multi-vender platform integration ·         Current or previous Cisco certifications:  CCNP or CCDP in routing and switching; additional certifications in security or wireless is a plus. ·         Experience with AT&T deployment services ·         Excellent oral, written, analytical and communication skills with the ability to lead a technical discussion to both technical and non-technical staff ·         Must demonstrate high level of technical documentation experience – samples of relevant published work are highly desired such as technical implementation plans, architectural as-built documentation, test plans, and especially detailed network diagrams ·         Must possess excellent communication and presentation skills for both technical and non-technical audiences, including creating and presenting executive summaries to management and technical committees ·         Ability to work in a team environment taking direction from Program/Project Managers and leading small IT deployment teams Excellent analytical, verbal and conflict resolution skills.   Additional Skills/Qualifications Desired:   Skills Experience Current Cisco CCIE or CCDE in routing and switching, security and wireless Certified Information Systems Security Professional (CISSP)     Tasks and Responsibilities to be Performed   Task No. Description of Tasks and Responsibilities 1 PLANNING:  Actively participate in the emerging technology investigation and evaluation that support the Judicial Branch goals.  Attend quarterly technology road map conferences with Judicial Council resources and 3rd party vendors.  Provide direction to the Program defining five year road maps and infrastructure standards.  Conduct feasibility network assessments. 2 STANDARDS:  Document and maintain technical LAN/WAN Infrastructure Program standards.  Development and maintenance of the network policies, standards and guidelines supporting branch and trial courts. 3 DESIGN:  Collect network requirements and provide subject matter expertise along with 3rd party vendors to produce and maintain detailed network diagrams using MS VISIO.  Ensure that all network requirements are documented, technically correct, and comply with information security policies. 4 DEPLOYMENT:  Provide technical oversight and support directly to the Trial Court IT Staff during the implementation phase of the Projects. 5 VALIDATION:  Provide technical oversight and support to all resources during the configuration validation and system testing phases of the Projects.  Validate that vendor implementation matches JUDICIAL COUNCIL design and requirements. 6 3rd LEVEL SUPPORT:  Provide direction and subject matter expertise in the analysis and resolution of complex networking problems. 7 AD-HOC SUPPORT:  Provide engineering support to Court IT Staff as-needed on smaller court infrastructure projects. 8 TRAINING:  Maintain current knowledge regarding industry practices regarding networking and information security. 9 Participate in weekly Project meetings as required. 10 Provide weekly status reports to JUDICIAL COUNCIL management. 11 Occasional after-hours/weekend projects as needed.   References: (Provide references from at least three (3) companies/firms/agencies in below mentioned format.)   Job Classification for this Assignment Duration of Assignment (List Dates) *Project Title/Description of Assignment *Name of Company/Firm/Agency *Company Point of Contact (Name) *E-mail Address and Phone Number for Company Point of Contact       Thanks & Regards Alecia Martin (Sr. Technical Recruiter)       Phone – (703) 945 1793 EXT 649 Fax No– (703) 542 3536 Email – aleciam@22ndstaffing.com Website – www.22ndstaffing.com

Uncategorized

Multiple Positions for Configuration Manager in Naval Hospital Jacksonville

Position 2: Senior Configuration Manager Agency: Naval Hospital Jacksonville (NHJ) Location: Jacksonville, FL Duration: Long Term Qualification: Must have Bachelor’s degree OR ten (10) years of experience in Configuration and Patch Management. Minimum 10 years of experience in deploying Navy Medicine (or equivalent) Clinical Applications via SMS/SCCM, group policy, to include AHLTA, AHLTA Client files, Essentris with Complete understanding of the Configuration Control process within the Navy Medicine (or equivalent) Domain. Must have Security + CE (continuing education) NHJAX Computing Environment (CE) training/certification in Windows 7 Experience with System design integration planning for multiple large-scale installations, to include hardware and software evaluation, System Test and Evaluation, planning execution and management. Experience with administering Windows Server Update Service (WSUS), Microsoft SMS/ SCCM, What’s Up Gold, DameWare, Hyena, Symantac Ghost and other tools to accomplish the assigned tasks. Experience in set-up, configuration, and management of Blackberry devices, Blackberry users accounts and troubleshooting. Demonstrated detailed knowledge of IA concepts and requirements. Demonstrated comprehensive knowledge DOD military specifications and standards Thanks & Regards                                                                                    Sahil Associate Recruiter    Ph. No: 703-945-1793 Ext 665 Fax:     703-542-3536 Email: sahilk@22ndstaffing.com

Uncategorized

Immediate Joining Raytheon Software Engineer Tucson AZ

Title:                                     Software Engineer I (5329625) Location:                             AZ802 1151 East Hermans Road Building 802 Tucson AZ United States Duration:                             0-18 month(s) Hours:                                  8:00am to 5:00pm Security Clearance Required      Secret Job Description Innovative technologies. Superior solutions. Outstanding opportunities. The Engineering Product Support Directorate (EPSD) SWCM department is to looking for an individual with Rational Team Concert (RTC) experience. The individual would provide SWCM support to multiple programs. They would also provide support to our organization by analyzing our current Automation suite and providing solutions for similar functionality in RTC. The Software Configuration Management (SWCM) department follows the basic principles of Configuration Management. SWCM establishes and maintains the integrity of the products for the program through the entire life-cycle of computing products. The EPSD SW Configuration Management Department provides innovative solutions through automation, continuous improvement and a skilled workforce to provide support for all computing products including embedded software, configurable logic, test equipment, simulations, COTS and tools. The Software Configuration Management Engineer plans, coordinates, and executes Configuration Management (CM) activities, including: • Manage the change request process for software work products (CRs, CNs) • Prepare for and support SCCB, PCB, and Scrum meetings • Control, maintain, and store software work products, including COTS • Build, baseline, and release software using established SWCM procedures • Identify and follow configuration standards to ensure integrity of products and artifacts • Create, distribute, maintain, safeguard, and destroy media, both classified and unclassified • Administer, customize, and maintain tools • Create, generate, and report metrics • Represent the organization as a prime technical contact who will interact with senior engineers • Successfully complete special projects, either through his or her own efforts, or through the efforts of others The successful applicant will work as a self-starter. He or she will interact effectively with program personnel through written and verbal communication. Working knowledge of the software development lifecycle and SEI CMMI standards is highly desirable. Additional Job Details: Required Skills: • Strong proficiency with IBM Rational Synergy Administration and Configuration Management • Experienced in Agile methodologies • Strong proficiency in Windows, DOS, Linux, and Unix Operating System Environments • Knowledge of scripting languages • Excellent communication skills • Able to lead and influence others through the SWCM process • Ability to manage competing priorities and deadlines Desired Skills: • Proficiency with IBM Rational Team Concert Administration and Configuration Management • Certified Scrum Master • Demonstrated ability to provide outstanding customer service • Software development background • Familiarity and understanding of embedded, test, and simulation software • Understanding of Continuous Integration (CI) and Jenkins Required Education (including Major): • BS in technical discipline, such as Engineering, Computer Science Thanks & Regards Kathleen Brown Associate Recruiter Phone:908-765-0002 Extn:-284 Fax:     609-228-4044 kathleenb@tscti.com www.tscti.com

Uncategorized

Need Information Security Admin in Cedar rapids IA

Title                                       Sr Information Security Administrator 1(12438) Location:                             Cedar Rapids, IA Duration:                            6 Months+ PLEASE NOTE: -candidates must be US Citizens -submittal limit is 3 per supplier -HS Diploma/Equivalent plus at least 5 years related experience REQUIRED Job Description: This position will be responsible for configuring, implementing, and fine-tuning McAfee Network IDS and Checkpoint Firewall appliances. Must be able to independently drive hardware and software configuration, as well as identify, troubleshoot, resolve, and debrief any issues encountered. Must be able to help identify and map network data streams to ensure appropriate network visibility. Must be able to configure and administer Network Gigamons to appropriately capture traffic. Must be able to understand and tune network IDS alerts to reduce false positive alerts to acceptable level, in order for alerts to be actionable. Must be able to document configuration, implementation steps, and work processes relevant to the Network IDS and Checkpoint Firewalls. Skills: -Network traffic and routing understanding to ensure appropriate detective control coverage. -Gigamon hardware and software configuration and management to ensure traffic is appropriately captured and available to network IDS sensors. -McAfee NIDS hardware and software experience to ensure appropriate configuration to best alert on malicious or unusual traffic patterns. -Ability to fine-tune McAfee configuration to reduce false-positives and produce accurate, actionable intelligence. -Ability to configure and manage McAfee EPO to structure and process Network alerts to best increase understanding of security events on the network. -Checkpoint Firewall hardware and software experience to ensure appropriate configuration before shipping firewalls to remote locations for implementation. -Ability to manage logistics with the replacing and/or upgrade of Checkpoint Firewalls, including contacting remote data centers, arranging firewall implementation schedule and insuring firewall replacements/upgrades complete within project timeline. -Experience with Checkpoint Smart Dashboard -Ability to create technical documentation Must be a team player willing to engage and work with other team members, including those working remotely. Must be able to professionally frame risk management decisions, and work with leadership to determine best course of actions for securely moving the project forward. Must be able to professionally communicate security concerns and positions to non-security and/or non-technical audience. Thanks & Regards, Parmender Singh Technical Recruiter

Uncategorized

Hiring Network Security Engineer | Raleigh, NC | 6+Months Contract

Title: Network Security Engineer Location: Raleigh, NC              Duration: 6+Months Contract Description Senior knowledge with broad experience; responsible for protecting the client’s global assets and interests which include systems, software, networks, computational elements and data through deep knowledge of network and communication channels.  Responsible to bring industry best methods and practices concerning perimeter defenses around organizational assets and to also bring knowledge of perimeter security around extracting unauthorized withdrawals of corporate information or data.   Deep network engineering skills and an understanding of the protocols throughout the OSI seven layer stack are required of this position. Required Skills: 6+ years’ experience in Security Incident response and investigation. 6+ years’ experience in analyzing security logs generated by Intrusion Detection/Prevention Systems (IDS/IPS), firewalls, network flow systems, Anti-Virus, and/or other security products Ability to identify, recognize, respond and troubleshoot security issues in a timely manner, including experience performing malware analysis Experience tracking source and destination IPs used during suspected malicious communication activities Experience performing security analysis utilizing SIEM technologies. Experience performing analysis utilizing IDS consoles Experience monitoring daily security reports and develops new reports as needed by security, management, and auditors. Excellent troubleshooting skills, self-motivated, results-driven and well organized. Excellent communication skills (written and verbal) and the ability to communicate with all levels of staff and management. Preferred Skills: Certified in one of the following: Certified Information Systems Security Professional (CISSP) Certified Authorization Professional (CAP) Certified Security Analyst (CSA) Certified Information Security Manager (CISM) BS degree or higher from an accredited college or university in Software Systems, Computer Science, Electrical Engineering or a similar technical discipline Thanks & Regards Baqi Owais COMPQSOFT, Inc. HUB Zone, SDB, MBE Certified An ISO 9001:2008 & ISO 27001:2005 Certified Phone: 713-893-4183І  Fax: 281-657-6717

Uncategorized

Glibc: Major bug threatens thousands of Linux apps and IoT devices

A SEVERE BUG in a widely used open source library has left hundreds of thousands of Linux app and hardware open to hackers and malware. Serial bug spotters Google and Red Hat discovered the flaw in the GNU C Library (glibc) The flaw is in a function known as getaddrinfo() when used by apps and hardware such as routers based on glibc code to communicate with IP addresses using domain name servers (DNS). More at the inquirer.net http://www.theinquirer.net/inquirer/news/2447451/glibc-major-bug-threatens-thousands-of-linux-apps-and-iot-devices

Uncategorized

Systems Engineer project in downtown Denver

Our client has an immediate need for a Systems Engineer.  If interested or know someone who is interested and fit the criteria, please email your updated RESUME with a DAYTIME CONTACT # Job Title:          Systems Engineer Duration:           7-12 Months Location:           Downtown Denver Start:              ASAP Pay Rate/Hr:        $60 – $70/hr Duties: About You You have solid development and scripting experience and a proficient background in Systems Administration, Operations, and applications support. You are an excellent problem solver, collaborator, and self-motivated professional who loves a challenge and can start contributing to the team on day one. About the Position You will be joining an team of cross-functional professionals on a Special Projects team within Production Applications department. You will collaborate with this team and other groups within the department to vet, recommend, or develop, small and effective solutions to maximize operational effectiveness and efficiency. These solutions will be developed rapidly, but must be high quality, reusable, and follow industry standards. You will provide strong documentation and communication with members and other teams. Additional services provided by our team to other groups within the department include: technical consulting, process and standards development, and technical training. Skills: 5+ years of Systems Administration/Operations experience in Microsoft Windows/VMware ESX environments Microsoft Windows 2008, 2012 in larger/enterprise environments Microsoft Active Directory and related technologies Microsoft Cluster Services and related technologies Microsoft SQL and related technologies Subject matter expertise and strong systems support and troubleshooting in the following environments: VMware ESX and related virtualization technologies, including storage, networking. 5+ years of development experience with a strong emphasis on .NET Framework ASP.NET, C#, SQL, and Classic ASP, PowerShell, VBScript are required Visual Studio 2008/2010 higher and TFS and are required Subversion with TortoiseSVN, AnkhSVN, PrimalScript, PowerGUI or other IDEs are a plus Web Front-End HTML, CSS, JavaScript, jQuery are required HPSA, HPOO or general understanding of automation delivery platforms are a plus SSIS, SSRS, and other automation technologies are a plus SQL T-SQL, stored procedures, in Microsoft SQL a plus Professional Skills Strong analytic and troubleshooting skills are required Strong verbal and written technical communications skills Technical documentation and/or training are a strong plus Light project management is a plus 800-732-4680 x709  

Uncategorized

Senior Network Security Engineer

If you are a Senior or Lead level Network Security Engineer with a comprehensive understanding of network architecture, please read on! Located in the heart of the Silicon Valley, we are a rapidly growing software organization that has created a robust product suite focused on cyber security and vulnerability management. Due to recent growth and on-boarding of new clients, we have an immediate need to hire a full-time Senior Network Security Engineer to join our Professional Services team that covers North America. Our ideal candidate is someone that is located in the San Francisco Bay Area, but we are also very open to someone working remotely anywhere in the United States. Our Professional Services Team is responsible for product deployments with customers, training customers on our product suite, providing value-added services and consultative advice, and designing solutions for our clients. As a Senior member on our team, you will be looked on to lead projects and implementations while mentoring some of the more mid-level PS Engineers on the team. Top Reasons to Work with Us 1. Opportunity to work remotely with minimal travel requirements! 2. Excellent Compensation Plan – Salary + Bonus + Full Benefits + Equity 3. Ability to work with a cutting edge Cyber Security product suite! What You Will Be Doing In this role, you will provide a wide range of Profession Services solutions to our clients from coast-to-coast. This role will require a strong understanding of network architecture and design because a lot of the day-to-day will encompass solving the customers problems by building network models that emulate the customers network. Once you have modeled the customers network, you will be checking for vulnerabilities and customizing our product suite to make sure it is fully optimized for the client’s environment. You will be interacting with clients over the phone, via Web Ex, Skype, and other virual tools. There could be a little bit of travel involved with the role, but it would be minimal (up to 10%). You will be leading clients through the onboarding process and providing value added services to help automate processed and help with integration / implementation activities. You will need to be able to create scripts on your own (Python / Perl) to create automated processes and customize our products to fit client specifications. As a Senior member of the team, you will need to be comfortable leading client meetings and managing projects from planning to completion. What You Need for this Position 7+ years of experience in a professional Network Security engineering capacity 3+ years of experience in a Professional Services / Client-facing role Comprehensive understanding of network architecture with a focus on Layer 3 networking Strong background and hands-on experience with firewalls (CISCO, Juniper, Check Point) Experience with vulnerability scanners and vulnerability management tools Ability to create network models based on a client’s existing network Scripting skills in Python or Perl Experience leading customer projects, providing consultative advice to clients, and lead client training sessions Intermediate – Advanced Linux experience (administration, configuration, etc..) – our products are all Linux based (CentOS) Bonus Points for Penetration Testing experience or experience with MySQL queries Professional Certifications highly desired (CISSP, CCNP, CCIE, etc..) What’s In It for You Competitive Salary ($120,000 – $150,000 DOE) Excellent Bonus Potential (20%) Comprehensive Benefits Package 401k Paid Time Off Flexible Work Hours & Opportunity to Telecommute So, if you are a Senior Network Security Engineer looking for new challenges and a great growth opportunity, please apply today! Applicants must be authorized to work in the U.S.

Scroll to Top