Role : IT-Senior Software Systems Engineer
Location : Basking Ridge,NJ
Duration : 6+ Months
Rate : $50/hr on C2C(Max)
Job Description :
Senior Security Engineer works on defining security frameworks for existing and new systems.
Responsible for supporting the implementation and enforcement of secure application design principles
Responsible for explaining and demonstrating vulnerabilities to application/system owners, and provide recommendations for mitigation.
Responsible for defining and designing security code analysis tools and framework, Performing code and design reviews of all internal and external software products.
Work with application developers ensure adoption of security principals and best practices.
Provides direction and support in security management and security architecture standards and documentations.
Responsible for defining processes to manage and enforce application security.
Conducts active penetration tests; discover vulnerabilities in information systems.
Participate in IT security compliance and audit efforts (eg PCI CPI 810)
Required experience and skills include:
Expert knowledge of information security principles, web applications and a level of familiarity with malicious code and common techniques used by hackers
Experience with application security code review practices / static analysis and methods, such as OWASP Top Ten
Detailed knowledge and understanding of the Payment Card Industry (PCI) data security standards (PCI DSS) as well as experience in the implementation of controls to mitigate PCI issues
Experience with Application Security Firewalls, F5 ASM / Citrixs Teros etc.
Experience using vulnerability assessment tools/platforms such as Qualys, Nexpose, Burp Suite, Paros, Samurai WTF, and BackTrack along with centralized logging and penetration testing
Knowledge of Security Flaws and its Resolution as listed in sites like OWASP, SANS etc.
Experience with OWASP WebGoat project and OWASP AppSec
Design and code from specifications, analyzes, evaluates, tests, debugs, documents, and implements complex software apps
- Uses coding methods in specific programming languages to initiate or enhance program execution and functionality
- Participate in the evaluation, recommendation, and selection of hardware and software solutions
- Perform project management of estimating, scheduling, and monitoring tasks
- Performs expert-level engineering tasks associated with the analysis, design, and development of computer hardware, firmware, embedded systems, and/or operating systems
- Develop, maintain, and report intranet metrics
- Interface with different departments within the organization regarding new deployments
- Manage, administer, and maintain all internet and intranet sites
- Research/analyze data processing functions, methods and procedures - Monitor program execution for expected performance Requires a bachelor's degree in area of specialty and at least
- 8+ years front-end integration experience working with development teams on the deployment of web based applications (Java, ASP, ASP.NET)
- Experience in network design, operational support, hands-on implementation and configuration of network infrastructure
- Strong knowledge and experience in VPN, Firewall, load-balancing, network security, and network management platforms
- Experience in configuring and installing technologies such as switched Ethernet/Fast Ethernet/Gigabit Ethernet and various routing
- Experience in auditing network security compliance Current CCNP, CNA, CISSP or equivalent knowledge desired?