Wednesday, July 25, 2007

Security Analyst in NEW YORK, NY

Wednesday, July 25, 2007
My client seeks a Security Analyst that will function as the lead of a cross functional teams and who will be responsible for safeguarding the confidential information, assets and intellectual property, technology infrastructure which belongs to. The position will participate in the implementation and monitoring of the Company’s Information security policies and procedures to ensure that information is handled in an appropriate manner and meets all legal requirements.

Security Analyst Requirements:

1. Best Practices. Collaborate with Business, Technical, Legal, HR and PR Teams to develop, document, implement, and manage a successful IT security practice in accordance to the leading “best practice” methodologies.

2. Security Awareness. Oversee the development and be the enterprise champion of a corporate security awareness training program.

3. Prioritizing Critical Information. Collaborate with the appropriate members of TSI to define, identify and classify critical information assets consistent with the corporate strategic plan. Assess threats and vulnerabilities regarding those assets and implement safeguard recommendations.

4. Security Policy Development. Collaborate with the appropriate members of TSI to develop and implement a comprehensive security policy, standards, guidelines and procedures to ensure ongoing maintenance of security. For example these policies may include the creation of an acceptable use policy, email policy, router security policy, server security policy, third party network connection agreement, etc.

5. Risk Management. Work with the Technical team to develop, implement and manage the overall enterprise processes for technical and physical risk management and associated architecture.

6. Incident Response Teams. Collaborate with the appropriate members of TSI to plan and create a global computer security incident response team. Additionally, create a training program to ensure that all teams are prepared and ready to respond to worst- case scenarios.

7. Audit Team. Work with the technical team to create an internal audit team that will conduct audits to ensure integrity of information/ resources, investigate incidents, ensure conformance to security policies, and monitor/user/system activity where appropriate.

8. Software Security. Perform an inventory of all current software version used for desktop applications, servers, routers, database, etc. and work with the Technical teams to ensure that all of the latest security patches and updates are applied.

9. Privacy Policy. Collaborate with the appropriate members of TSI to create a comprehensive privacy policy to ensue that all critical information assets are kept in accordance with the current federal and state privacy legislations.

10. Site Security Plan. Work with the Technical team to develop and implement a site security plan. This may include hardening and documenting the following items: border router, partner connections, intrusion detection, and DMZ, firewall and site network. Development of test plans for disaster recovery and business continuity.

11. Security Breaches. Oversee the investigation of security breaches and assist with disciplinary and legal matters associated with such breaches as necessary.

12. Project Management. Manage the progress, pace of the projects and personnel associated with security functions. Additionally, create status reports for all stakeholders to keep them informed of the project’s development and ensure that all projects are delivered on time and on budget.

Qualified candidate should send their resume to: AND
Experience: Security Analyst MINIMUM REQUIREMENTS:

(a) Bachelor’s degree in computer science or related area or equivalent experience.
(b) Three (3) plus years experience as a Security Administrator or Data Security Practitioner
(c) CISSP or CISM Certification is highly desired.
(d) Project coordination experience required, utilizing Microsoft Project for creation of Gantt charts, resource utilization, task
reports and over-all project scope.
(e) In-dept knowledge of networking, protocols, operating systems, databases, application security and web operations
(f) Background in multi-platform environments, including Microsoft Windows, Web services / portals and Linux.
(g) Experience implementing security policies and procedures
(h) Working knowledge of Microsoft desktop and operating system environments.
(i) Ability to work in a team environment
(j) Excellent telephone, organizational and interpersonal skills
(k) Written and verbal communication skills must be very strong as they are essential to performing this job successfully

To Apply to this job go to http://www.GadBall.com or click here