Job Details

Security Consultant (Risk Management)

NEW YORK-10001, NY, US
06/11/2019

-


Required Skills

    cybersecurity frameworks, VMWare
Company

Infinity Consulting Solutions, Inc

Experience

-

Job Description

The role will require the successful applicant to deliver company-wide technical security risk assessment and consulting services across business groups, manage the pipeline of work from their client base, operate within a global team, report issues and recommendations for management follow up, and manage client relationships.

Key responsibilities

Deliver authoritative, practical and responsive consulting services on all aspects of enterprise information security risks to the company.

Provide security consulting services to projects throughout their lifecycles, to help ensure the application and infrastructure solutions being deployed meet appropriate and adequate security standards.

Identify and assess key IT security risks and recommend appropriate and practical treatment plans.

Build and maintain productive, collaborative relationships with stakeholders in group and the business.

Determine security design issues and drive attack surface analysis and most "at-risk " components.

Partner with third-party solution providers to assess information technology security posture and organizational risk to company.

About you

Detailed knowledge of technical security concepts and their practical application.

This knowledge is required across the application, operating system and network layers.

Experience in technical security risk assessment – across enterprise infrastructure, web technology and applications platforms.

Note: this is specific technology, rather a technical information security-based role.

Understanding of current and emerging security technologies, security threats and trends.

Experience working within DevOps structured teams (including continuous integration and delivery).

Proven practical experience with security across multiple cloud / virtualization environments: AWS, Azure, OpenStack, VMWare, etc.

Proven experience with threat modelling and risk analysis.

Technology savvy, with exceptional communication skills, both written and verbal.

Logical thought mindset and experience developing reusable processes / data architecture.

Knowledge of security architecture – across enterprise infrastructure, web technology and applications platforms.

Ability to communicate and engage stakeholders or service providers in technical and non-technical discussions.

The following characteristics are considered essential for the role

Strong and self-confident, adaptable and flexible – capable dealing effectively with colleagues and business users in a constantly evolving environment.

Ability to gather written and verbal information from multiple sources, assess and consolidate risks, provide appropriate recommendations.

Ability to handle multiple tasks, prioritize effectively, remain calm under pressure and when faced with adversity or urgent issues

Comfortable working as part of global team across geographies, cultures and time-zones.

Focused on business enablement whilst being able to reach balanced judgements vs. security.

Empathetic, enthusiastic and creative, an inquisitive nature with an attention to detail, yet able to think outside the box and consider the big picture.

Ability to influence and educate stakeholders and management regarding appropriate security and IT risk management.

Minimum required experience

Significant experience in technical security risk assessment in a consulting capacity.

Proven ability to deliver end to end Information security / risk assessment services.

Excellent analytical and problem-solving skills.

Financial services experience preferred.

Qualifications/Certifications

College degree in computer science or engineering, or equivalent.

Technical security certifications including platform/infrastructure-specific
certifications, e.g. CISSP, GIAC, CCNA.

Risk management certifications (preferred, not mandatory), e.g. PCI-DSS, CISA, CISM, SABSA.

Familiarity with industry standard audit documentation, e.g. SOC, ISSA, SSAE, ISO.

Knowledge of cybersecurity frameworks and benchmarks e.g. NIST, CIS.


Security Analyst
Information Technology

No Preference
Contract Only
Other
1

Candidate Requirements
-
Bachelors

Walkin Information
-
-
-

Recruiter Details
Doug Klares
1350 Broadway, Suite 2205, NEW YORK-10018, NY, US
-