Job Seekers, Please send resumes to resumes@hireitpeople.com
Job Responsibilities:
- Reviews software source code to identify potential security issues and vulnerabilities that could be exploited by hackers to gain unauthorized access to data and system resources.
- This individual will be first in-line to triage requests on behalf of the Security Architecture team, analyzing information and ensuring that documentation is complete while aligning with various security capabilities.
- The role is expected to create diagrams, author documents as needed and organize information.
- The Security Analyst must have good communication and interpersonal skills.
- Participate and complete tasks associated with the implementations for systems and network security technologies.
- Executes testing plans; coordinates and prepares reporting of data security events and incidents.
- Provides technical support to business and technology both inside of and under contract with BCBSA.
- Serves as a core team member of the security architecture function developing functional and technical security requirements and seeing them through the project lifecycle.
- Provides support for technologies owned and operated by the security organization.
- Design, build and deploy security solutions supporting enablement of cloud application deployments.
- Conducts research to identify new attack vectors facing computing environment.
- Works with and influences business contacts in regards to technology controls, risk mitigation techniques related to application layer security.
- Develops and maintains applicable security architecture program metrics for continual measurement and improvement.
- Collaborates with Enterprise Architecture to define and promote architecture processes, standards and patterns.
- Demonstrates a commitment to core values of safety, integrity, process improvement, and customer satisfaction.
- 5+ years of experience, strong understanding of cryptographic algorithms and principles, strong understanding of networking fundamentals, addressing, TCP/IP, protocol and network analysis.
- Must have experience in web application security
- Must have an understanding of application security and development processes.
- Possess an understanding of systems programming, graphical user interfaces and control languages.
- Technical domain knowledge in three or more areas of concentrated technical expertise.
Qualifications:
- Bachelors or MS in Computer Science or Information Technology or equivalent experience required.
- Ability to develop and maintain basic code in order to automate security processes.
- Minimum 5+ years’ relevant experience needed in various security domains including, security engineering.
- Technology Experience Preferred: Java and the J2EE Environment, strong UNIX administration skills, scripting and automation experience, strong understanding of cryptographic algorithms and principles.
- Must have a strong understanding of networking fundamentals, addressing, TCP/IP, protocol and network analysis.
- Must have experience in web application security.
- Must have an understanding in application security and development processes.
- Must Possess an understanding of systems programming, graphical user interfaces and control languages.
- Must have an ability to present to top management, corporate committees, and workgroups and to communicate information security and risk management concepts
- Demonstrated ability making operational decisions, monitoring progress and reporting results Certified Information Systems Security Professional (CISSP) Deliverables:
- An ability to participate and complete tasks associated with the implementations for systems and network security technologies.
- Executes testing plans; coordinates and prepares reporting of data security events and incidents.
- Provides technical support to business and technology both inside of and under contract with BCBSA.
- Serves as a core team member of the security architecture function developing functional and technical security requirements and seeing them through the project lifecycle.
- Provides support for technologies owned and operated by the security organization.
- Design build and deploy security solutions supporting enablement of cloud application deployments.
- Conduct research to identify new attack vectors facing computing environment.
- Works with and influences business contacts regarding technology controls, risk mitigation techniques related to application layer security.
- Develops and maintains applicable security architecture program metrics for continual measurement and improvement.
Minimum years of experience: 5 years
Interview Process (Is face to face required?) Yes
Does this position require Visa independent candidates only? No