[SJ-JOB] Sr. Security Analyst, Leesburg
[email protected] 26 Nov 2008 18:43:58 -0000
| Newsgroups | gmane.comp.security.jobs |
|---|---|
| Message-ID | <[email protected]> |
--------------------------------------------------- SECURITYFOCUS JOBS - NEW OPPORTUNITY --------------------------------------------------- JOB DESCRIPTION --------------------------------------------------- Position: Sr. Security Analyst Location: Leesburg, Virginia, United States Type: Permanent F/T Closing Date: 2008-12-19 Sr. CSIRT Analyst (457)=0D =0D Applicants selected will be subject to a government security investigatio= n and must meet eligibility requirements for access to classified informa= tion. DOD Secret clearance is required and must be clearable to Top Secre= t. =0D =0D • Must be willing to work in a 24/7/365 security operations center w= orking either a fixed 10 or 12 hour shift. Must also be willing to work h= olidays and at least one weekend day/night per shift. =0D • Must understand hacker motives, means, and methodologies =0D • Must understand common vulnerabilities and exploits of Windows, Li= nux/Unix systems, and common applications =0D • Must understand Windows Active Directory and associated services a= nd common vulnerabilities =0D • Should have had previous system administration experience with Win= dows, Unix/Linux systems and peripherals =0D • Must have a strong understanding of TCP/IP networking and at least= a basic to mid-level understanding of routing, switching, routing protoc= ols, VPN concentrators, gateways, and proxies – previous experience = and/or certification in network engineering strongly preferred =0D • Should have experience with Security Information Management Tools = (ArcSight, netForensics, e-Security, GuardedNet )– ArcSight experien= ce is strongly preferred =0D • Must have experience with enterprise anti-viral solutions – M= cAfee is strongly preferred =0D • Should have experience with enterprise content filtering, anti-mal= ware/spyware solutions =0D • Must have experience with firewalls such as Checkpoint, Cisco PIX/= ASA, Sidewinder =0D • Must have experience with vulnerability scanning tools such as Fou= ndstone, Nessus, Nmap, Retna, nCircle – Foundstone and Nessus experi= ence is very strongly preferred =0D • Should have knowledge of and experience in cyber intelligence gath= ering techniques, such as hacker web sites, open and closed source threat= centers such as US-CERT, JTF-GNO, SANS, Internet Storm Centers, etc. =0D • Should have experience writing IDS/IPS signatures – experienc= e with Snort and one or more of the following is strongly preferred: Cisc= o, ISS, NFR, Sourcefire, Intrusheild =0D • Should have experience in malcode investigation – malcode rev= erse engineering experience strongly preferred =0D • CISSP, SANS/GIAC, other security industry certifications strongly = preferred =0D • Foreign language skills (read/speak) strongly preferred – esp= ecially Asian, Middle-Eastern, European/Eastern European languages JOB REQUIREMENTS --------------------------------------------------- • Bachelor's degree in Computer Science or Information systems. =0D • Minimum four years of relevant professional experience is consider= ed equivalent to a Bachelor’s degree. =0D =0D In addition to required education or equivalent experience: =0D • Minimum six years IT experience. =0D • Must have had experience with network and host-based intrusion det= ection/prevention systems such as Cisco, ISS, Snort, eTrust, NFR, Intrush= ield – two or more of these are strongly preferred. =0D • Must have prior experience with analysis at the packet level using= tools such as TCPDump, Ethereal, WireShark. =0D • Must have experience in security analysis, incident response, or c= omputer network defense in a large enterprise environment. =0D • Must have three years experience administering Windows and/or UNIX= -based systems and at least five to six years network security analysis, = using intrusion detection systems. =0D • For Watch Officers: MUST have experience with leading security inv= estigations, with customer interfacing, report preparation, documentation= , configuration change control, conducting briefings to both technical an= d non-technical staff, and in preparing shift reports. CONTACT --------------------------------------------------- Knowledge Consulting Group Brad Birch Contract Recruiter [email protected] --------------------------------------------------- SECURITYFOCUS JOBS --------------------------------------------------- SecurityFocus now offers an online interface for searching and managing job opportunities and resumes. http://www.securityfocus.com/jobs