InfoSec Analyst III in Portland, OR at Volt

Date Posted: 7/29/2018

Job Snapshot

  • Employee Type:
    Direct Hire
  • Location:
    Portland, OR
  • Duration:
    N/A
  • Date Posted:
    7/29/2018
  • Job ID:
    117667
  • Contact Name
    Volt Branch
  • Phone
    714-283-7391

Job Description

VOLT Workforce Solution is currently working with a client in Portland, OR on their need for an InfoSec Security Analyst. 

A hands-on security operations practitioner able to bring meaningful, strategic change in the sphere of information protection with a particular focus on application security in an agile development organization. An effective communicator and a change agent. Sufficiently fluent in application protocol analysis to read and interpret packet traces, web logs and similar; has deep understanding of networking protocols – in particular HTTP- and both how they are used and how they are abused; correlates events with or without a SIEM to assemble the bigger picture, and crafts an efficient and effective response based on breadth of knowledge of application firewalls, software development best security practices, threat modeling, architectural risk analysis and a variety of tools and technologies. 

The analyst leverages these skills to monitor applications in server, cloud-based and hybrid deployments to protect the confidentiality, integrity and availability of data and assets on the network and to help steward customer data. The best analysts respond to any incidents or other reactive work with alacrity and aplomb. 

The analyst will be responsible for the implementation of virtual patching, naming standards and alerting as well as helping to implement attack-aware applications, dynamic defense and IAST.  Implementation and management of SDLC and configuration management will be essential to success. A good understanding of microservices/containers will be helpful. 

The ideal candidates will have experience in task automation through PowerShell, Python, Perl or through SOAP or RESTful APIs.

Responsibilities:

  • Work in partnership with applications development teams to implement and monitor strong protections using a combination of SDLC best practices, OWASP guidelines, various benchmarks, WAF, DAP and similar.
  • Collect and aggregate information from a wide variety of sources and format them for relevance to our environment while leveraging SIEM or other tools.
  • Create hypotheses for analytics and testing of threat data and test methodically to prove or disprove the hypothesis.
  • Share lessons learned, initial indicators of detection, and opportunities for strengthening detection capabilities.
  • Maintain and enhance the documentation standard for discoveries and reporting of malicious tactics, techniques, and procedures as well as tips and tricks for Smartbooks and established procedures in Run Books.
  • Perform analysis of compensating controls and validate efficacy of existing controls.
  • Recommend security controls and/or corrective actions for mitigating technical and business risk.


Qualifications

Qualifications: 

  • Bachelor or Masters Degree in related field or equivalent experience
  • 5+ years of experience in application security or similar
  • 1+ year of experience in Security Operations or an equivalent function with incident response as a core job function for 25% or more of the role
  • Professional certifications are preferred for this role and candidates are expected to have clearly demonstrated technical acumen through attaining multiple technical certifications in addition to work experience and any published work. Certifications which include a hands-on practicum are weighted more heavily in consideration than those without. Some examples would be a variety of combinations of the following:
    • ICCSP
    • CSSLP/CAP/CCSP/ISSEP
    • CCNP

Volt has over 60 years of staffing experience. We work with many of the Fortune 500 and 1000 companies to provide workforce solutions. We offer many direct hire full-time positions as well as many contingent/temporary positions. We offer our workers competitive pay and benefits, as well as educational programs and redeployment assistance.

To learn more about Volt, please visit:http://www.volt.comand to see more of our job postings, please visit:http://jobs.volt.com

Volt is an Equal Opportunity Employer.