In this contingent resource assignment, you may: Consult on complex initiatives with broad impact and large-scale planning for Information Security Engineering.
Review and analyze complex multi-faceted, larger scale or longer-term Information Security Engineering challenges that require in-depth evaluation of multiple factors including intangibles or unprecedented factors.
Contribute to the resolution of complex and multi-faceted situations requiring solid understanding of the function, policies, procedures, and compliance requirements that meet deliverables.
Strategically collaborate and consult with client personnel.
Required Qualifications:
5+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work or consulting experience, training, military experience, education.
5+ years of technology management experience (managing software upgrades, ensuring availability, etc.)
5+ years of application security experience
5+ years of software development or scripting experience
Experience with Agile and CI/CD technologies such as Jira, Kubernetes, Jenkins, etc.
Knowledge of cloud technologies particularly GCP/Azure.
Experience with integrating application security tools into Enterprise vulnerability management systems (e.g., ServiceNow)
Thoroughly understand secure application design principals, including the areas of authentication, authorization/least privilege, logging, encryption, data masking, data retention, and secure data transmission
Assist in the development and management of security policies, standards, procedures, and guidelines
Design, document, plan, coordinate, and implement complex solutions
Leadership and management experience
Preferred:
Solid understanding of Agile and Modern Engineering practices
Solid understanding of vulnerability management source of record (Threadfix/Service NOW AVR, Brinqa or similar technologies )