CISSP Jobs - Network Security Engineer, 16445

at PEAK Technical Staffing USA
Location Littleton, CO
Date Posted August 28, 2020
Category Default
Job Type Contract to Hire

Description

Network Security Engineer

Primary Desired Skills and Experience:

Network Firewalls (Check Point, Fortinet, Palo Alto, Cisco, Juniper, McAfee, TippingPoint, etc.)

Intrusion detection/prevention (TippingPoint, McAfee, Sourcefire, IBM, etc.)

Network infrastructure (HPE, Aruba, Cisco, Juniper, etc.)

Sandboxing and Analytics (FireEye, Damballa, Check Point, Fortinet, Palo Alto, etc.)

Application security (F5, Imperva, Citrix, Akamai, etc.)

Network proxies (Blue Coat, Zscaler, McAfee, Websense, etc.)

Network admission control (NAC) (Aruba ClearPass, ForeScout, Cisco, etc.)

Firewall management and auditing (FireMon, Tufin, AlgoSec, RedSeal, Skybox, etc.)

Network packet brokers (Gigamon, IXIA, NetScout, etc.)

SSL decryption (Blue Coat, F5, Gigamon, IXIA, etc.)

Cloud access security brokers (CASB) (Symantec / Blue Coat / Elastica, Adallom, Skyhigh, etc.)

Additional Desired Skills and Experience:

Desktop security solutions (Symantec, McAfee, Bit9, Tanium, Trend Micro, Palo Alto Traps, CrowdStrike, Cylance, Bromium, etc.)

Network and/or desktop encryption (BitLocker, Check Point / Pointsec, Gemalto / SafeNet, Thales / Vormetric, etc.)

Public key infrastructure (PKI)

Hardware security modules (HSM)

Authentication solutions (RSA, Entrust, smartcard, biometrics, etc.)

Database security (Microsoft, Oracle, IBM, Imperva, etc.)

Data encryption solutions (HPE Secure Data, Gemalto / SafeNet, Thales / Vormetric, etc.)

Data loss prevention (DLP) (Symantec, McAfee, Websense, etc.)

Data governance (SailPoint SecurityIQ, etc.)

E-mail encryption (Proofpoint, HPE SecureData, Microsoft, etc.)

Virtualization on a large scale (VMware, Microsoft, Citrix, etc.)

VM segmentation (VMware NSX, Illumio, vArmour, GuardiCore, etc.)

Mobile device management (MobileIron, AirWatch, etc.)

System management and automation solutions (Symantec / Altiris, Microsoft, IBM / BigFix, etc.)

Log collection and aggregation (ArcSight, McAfee / Nitro, Splunk, IBM/QRadar, etc.)

OS Hardening (Windows, Linux, UNIX, etc.)

File integrity monitoring (Tripwire, NNT, etc.)

A technical bachelor degree is preferred.

Preferred security certifications:

 CISSP

 GIAC

Preferred vendor certifications:

 Check Point

 Palo Alto

 Symantec / Blue Coat

 F5

 Zscaler

 McAfee

Good understanding of private and public cloud design considerations and limitations in the areas of virtualization and global infrastructure, distributed systems, load balancing and networking, massive data storage, Hadoop, MapReduce, and security.

Knowledge of security technologies such as SIEM, Firewall/NGFW, EDR / DLP, UEBA and hybrid/Cloud Security environments

EDUCATION & WORK EXPERIENCE REQUIRED

8+ years of relevant professional system engineering or administration experience, with significant exposure to a variety of technologies and domains

5+ years of advanced working knowledge of Windows and Linux operating systems

Experience automating server configurations to include standard build installations and system security hardening

Experience writing standard operating procedures, system requirements, and other technical documents

Experience centrally monitoring systems for alerts and incident management functions; preferable with Amazon CloudWatch

Scripting language experience (Python, NodeJs, etc.), Strong working knowledge of automation tools such as (Puppet, Jenkins, and Chef). Working knowledge of RDS database such as PostgresSQL, Oracle, and MySQL

Should possess one or more of the following certifications – CISSP, SANS GCIH, Vendor Certifications (CISO, Palo Alto, McAfee, IBM etc).

Bachelors degree required

Drop files here browse files ...