Sr Contract Security Analyst

GOAHEAD SOLUTIONS LLC
  • Pleasanton, CA
    Today

    Job Description

    Job Description

    Job Description
    Seeking a Sr Security Analyst Consultant to lead staff in the implementation & execution of technical aspects of the client’s enterprise security plan. Will be the SME on security issues & projects so that ESEC team members can increase their security knowledge.

    Duration: 12 months
    Job type: Contract position
    Location: Pleasanton or Vacaville (onsite for the 1st week, onsite as needed onward)

    Duties/responsibilities:
    -Provide the highest quality services in the shortest timeframe possible with effective & efficient transfer knowledge to client’s employees.
    -A self-starter that can come up to speed in domain knowledge in a very short period. Proactively identify & assess threats to client users, network & data.
    -Monitor & respond to reports of malicious activity. Respond & investigate intrusions & security events. Demonstrate an understanding of client threat landscape.
    -Perform thorough analysis of attacks & anomalous network behavior.  Provide summarized & detailed analysis & documentation in support of ESEC
    -Perform proficient forensic analysis using security tools  & processes. Identify Actionable Intelligence by processing Threat Intelligence (TI).
    -Demonstrate ability to identify, contain, eradicate & recover from security incidents.  Collaborate with client business units, partners & individuals to mitigate security threats.
    -Advise the CISO & ESEC team on matters involving organizational, strategic, tactical & security best practices related to forensics & sec. incidents mgt.
    -Attend meetings/represent ESEC as a sr. lead for all sec. matters. Act as lead/co-lead/backup on assigned ESEC projects
    -Mentor jr. staff colleagues. Create SOP & training documents.
    -Other duties, to be assigned as needed.

    Tech. stack environment exp:
    -Hardware: Network Switches, Routers, Load Balancers, Servers, Storage Systems, End-User Systems, Mobile Devices, or other devices that enable the organization to complete its mission.
    -OS:  UNIX, LINUX, WINDOWS.
    -Network: LAN WAN, Internet, Proxy/Filtering, Firewall, VPN, DMZ
    -Network protocols: TCP/IP, SNMP, SMTP, NTP, DNS, LDAP, NFS, SAMBA, etc.
    -DB’s: Oracle, SQL, MySQL.
    -Cloud Platforms: IAAS, PAAS, SAAS.
    -Sec. concepts: Encryption, Hardening, etc.
    -Sec. GRC.
    -Forensic analysis tools.
    -AD.
    -Programming languages a plus.
    -Computer forensics exp. a plus.
    -Prior SIEM exp. a plus.
    -Malware analysis skills a plus.

    Exp.
    -
    At least 10yrs of overall enterprise information security exp. 
    -At least 5yrs. of technical exp. conducting sec. incident response & forensic analysis. 
    -At least 5yrs of Cyber Threat Intelligence exp. & making the information usable through the sec. incident process. 
    -Working exp. of applying IOCs to identify threats in current environment & apply information to prevent future vulnerabilities in the infrastructure tech sec. 
    -Working exp. using best practices standards & frameworks: ISO 27001/27002; PCI DSS v4, GLBA; HIPPA/HITECH; NIST 800-53; CIS CONTROLS, NIST CSF; CIS RAM.

    Numbers & Facts

    LocationPleasanton, CA

    Skills

    • Analysis Skillsunmatched
    • Best Practicesunmatched
    • Business Strategyunmatched
    • Cloud Computingunmatched
    • Computer Forensicsunmatched
    • Computer Hackingunmatched
    • Computer Securityunmatched
    • Contract Analysisunmatched
    • Cryptographyunmatched
    • DMZunmatched
    • DNS (Domain Name System)unmatched
    • Enterprise Protectionunmatched
    • Firewallsunmatched
    • Forensic Scienceunmatched
    • HIPAA (Health Insurance Portability and Accountability Act)unmatched
    • ISO (International Organization for Standardization)unmatched
    • Incident Responseunmatched
    • Information/Data Security (InfoSec)unmatched
    • Infrastructure as a Service (IaaS)unmatched
    • Internet Securityunmatched
    • LDAP (Lightweight Directory Access Protocol)unmatched
    • Linux Operating Systemunmatched
    • Load Balancingunmatched
    • Local Area Network (LAN)unmatched
    • Malware Analysisunmatched
    • Mentoringunmatched
    • Microsoft Windows Operating Systemunmatched
    • Mobile Devicesunmatched
    • MySQLunmatched
    • NFS (Network File System)unmatched
    • NTPunmatched
    • Network Protocolsunmatched
    • Network Routersunmatched
    • Network Switchingunmatched
    • Operating Systemsunmatched
    • Oracle Databaseunmatched
    • PCI-DSSunmatched
    • Platform as a Service (PaaS)unmatched
    • Programming Languagesunmatched
    • SMTP (Simple Mail Transfer Protocol)unmatched
    • SNMP (Simple Network Management Protocol)unmatched
    • Sambaunmatched
    • Security Analysisunmatched
    • Security Attacksunmatched
    • Security Consultingunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Software as a Service (SaaS)unmatched
    • Standard Operating Procedures (SOP)unmatched
    • Support Documentationunmatched
    • TCP/IP (Transmission Control Protocol/Internet Protocol)unmatched
    • Unix Operating Systemsunmatched
    • VPN (Virtual Private Network)unmatched
    • Wide Area Network (WAN)unmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder