What are the responsibilities and job description for the Sr. Information Security Systems Engineer position at LaSalle Network?
Job Details
LaSalle Network is seeking a Senior Information Security Systems Engineer with a strong security foundation and extensive experience in vulnerability assessments. The ideal candidate should have expertise in Linux environments and DevOps, with a significant advantage for those with experience in development or static code analysis. We are looking for someone who can work with developers on plans on how to remediate and prioritize tasks appropriately.
Senior Information Security Systems Engineer Responsibilities:
- Manage and deploy vulnerability scanning software (Rapid7/Qualys/Veracode) related to internal and external host vulnerability and configuration scans, SAST and DAST application scanning
- Comply to regulatory standards including PCI-DSS, SOC2, Type2, and FedRAMP
- Build and test Linux based OS and Windows OS to verify system hardening based on CIS benchmarks
- Review and remediate internal and external networks, application vulnerability, and configuration scans
- Provide technical advice on controls, processes, and procedures
- Collaborate with team to assist with SIEM, IAM, and related information security systems monitoring and response
- Review security vulnerabilities and threat information to determine its significance, validate its accuracy, and assess its reliability based on NIST standards
Senior Information Security Systems Engineer Requirements:
- 3-5 years experience in security operations, security engineering, or security architecture
- Past development experience, coding experience
- Experience working with static code scanning, DAST and SAST
- Strong expertise in vulnerability management
- In-depth knowledge of cyber threats, common security controls, detection capabilities, and other practices/solutions for securing digital environments. Including packet flows / TCP & UDP traffic, firewall and proxy technologies, anti-virus, intrusion detection/prevention systems and other host-based monitoring, email monitoring and spam technologies, SIEMs, etc.
- Hands on experience with various types of system deployments such as Windows Server/Workstation and Linux distributions
- Understanding of forensic analysis data captures from networks/packet capture, hosts, electronic media, log data, and network devices in support of intrusion analysis
- Bachelors Degree in Computer Science or similar
- Certifications: Security , CEH, CISSP, etc.
- Firewall experience
- Experience with Rapid7 or Qualys
- Experience with LogRhythm
- Urgency and leadership mindset
Thank you,
Josh Novekoff
Recruiting Lead
LaSalle Network
LaSalle Network is an Equal Opportunity Employer m/f/d/v.
LaSalle Network is the leading provider of direct hire and temporary staffing services. For over two decades, LaSalle has helped organizations hire faster and connect top talent with opportunities, from entry-level positions to the C-suite. With units specializing in Accounting and Finance, Administrative, Marketing, Technology, Supply chain, Healthcare Revenue Cycle, Call Center, Human Resources and Executive Search. LaSalle offers staffing and recruiting solutions to companies of all sizes and across all industries.
LaSalle Network is the premier staffing and recruiting firm, earning over 100 culture, revenue and industry-based awards from major publications and having its company experts regularly contribute insights on retention strategies, hiring trends and hiring challenges, and more to national news outlets. LaSalle Network offers temporary Field Employees benefit plans including medical, dental and vision coverage. Family Medical Leave, Worker's compensation, Paid Leave and Sick Leave are also provided. View a full list of our benefits here:
LNPW