Find Laws Find Lawyers Free Legal Forms USA State Laws
100,000's of Government Jobs
Search Government Jobs
Advanced Search

PRINC INFO SECURITY ANALYST

Job Field: Office Jobs
Location: Mountain View, CA
Salary: $Not stated
JOB SUMMARY:
</tr>
<tr><td valign="top" width="450"><b>Job FunctionInformation Technology Function
ResponsibilitiesLead security incident
coordination and response within Infrastructure
Operations. Identify resources and methodologies.
Partner with the Network, Data Center and third
party teams in the execution of periodic security
audits including intrusion and penetration
testing, recommending remediation activities where
applicable
Participate in network, infrastructure, and
service architecture design and review ensuring
solutions adhere to security policies and
practices.
Act as main PoC in the coordination and
standardization of responses to customer-provided
security surveys/requests and questionnaires
Work with Operations Audit and Compliance staff
to develop and train team on auditing and review
methodologies and practices to identify and
respond to anomalous or security related
activities.
Perform risk assessments and threat analysis on
business products implemented in production class
environments, the documented results of which will
form the basis for risk and threat mitigation
strategies.
Regularly review security tools and frameworks to
identify and investigate malicious or unauthorized
activity. This may include such tools as HIDS,
NIDS, Log Analyzers, SEIM and other solutions.
Liaise with Corporate InfoSec, Product and
Engineering teams to lead security related
investigations and remediation efforts.
Participate in company and industry security
communities and groups to stay current on security
threat landscape and latest investigation
methodologies and solutions
QualificationsBachelors Degree in Computer
Science, Management Information Systems, or
related field
6  8 years security experience working with
Internet facing environments and platforms.
Exceptional experience in Unix, Linux and Windows
platforms.
Advanced knowledge of intruder techniques and
software exploitation methods such as DDOS, SPAM,
SQL Injection, Cross-Site Scripting, Session
Hijacking, Broken Authentication and Session
Management, Request Forgery, Root Kits, etc.
Advanced knowledge and experience with Transport
and Internet Layers TCP, UDP, IPv4, ICMP, IPSec.
Must be competent at performing security analysis
utilizing common tools and frameworks such as
EnCase, Nessus, Cenzic, Metasploit, DIRBuster,
Wireshark, SNORT, TCPDump, NMAP,
Understanding of common Internet facing network
topologies and security designs found in large
scale distributed deployments.
Excellent analytical, reasoning, and creative
problem solving skill
Good oral and written communication skills,
One or more of the following
certificationsCISSP, CISA, CEPT, CASS, CPT, or
equivalent
For more detail please see the url.

KEY REQUIREMENTS:
None Bachelors degree
Tips