Hi,
Greetings from Indus Group Inc!!!
Kindly find the below Requirements and revert me back with a suitable resume. Email: dave@indus-grp.com.
Job Title: Information Security Specialist
Location: Sacramento, CA, Onsite
Client: State of California
Department: State Controller’s Office
Duration: 3 years
Job Description:
Additional Information:
- Candidate MUST have at least 10 years of total IT experience*
- Must provide copies of the licenses and certifications required to meet the Bidder’s minimum and desirable qualifications Services will be completed both remotely and onsite. Onsite services shall be performed at a SCO facility to be determined.
Project Scope:
The State Controller’s Office (SCO) is seeking a contractor to provide continuous information technology (IT) security assessment services on the State Controller’s Office (SCO) systems, applications, and network. IT security assessment services shall also include consulting services as the Contractor shall work directly with SCO in determining remediation and follow-up IT security assessments. All services provided shall ensure SCO is compliant with the SCO Security Compliance Standard as determined by the SCO Security Standard Assessments.
Responsibilities:
- An Information Security Specialist interprets information security policies, standards and other requirements as they relate to internal information system and coordinates the implementation of these and other information security requirements.
- The Information Security Specialist redesigns and reengineers internal information handling processes so that information is appropriately protected from a wide variety of problems including unauthorized disclosure, unauthorized use, inappropriate modification, premature deletion, and unavailability.
- The Information Security Specialist will provide highly specialized experience in one or more information, computer, or network security disciplines (e.g. penetration testing, accreditation, or risk assessment and mitigation); develop system security plans, certification and accreditation reviews; analyze and establish processes for comprehensive systems and data protection; assess and mitigate system security threats and risks; perform security audits, evaluation, risk assessments and make strategic recommendations; and manages, supports, installs and maintains security tools and systems, and tracks security patches and incidents.
- The Information Security Specialist will possess knowledge and experience in standard methodologies used in certification and accreditation processes; extensive experience following NIST guidelines in risk assessment and management; conducting vulnerability analysis; developing mitigation plans; and performing penetration testing, password protection testing and application security testing.
- This Classification must have a minimum of five (5) years of experience applying security policies, standards, testing, modification and implementation.
- At least three (3) years of that experience must be in information security analysis.
- This classification requires the possession of a bachelor’s degree in an IT-related or Engineering field.
- Additional qualifying experience may be substituted for the required education on a year-for-year basis
Mandatory Skills:
1. An Information Security Specialist interprets information security policies, standards and other requirements as they relate to internal information system and coordinates the implementation of these and other information security requirements.
2. The Information Security Specialist redesigns and reengineers internal information handling processes so that information is appropriately protected from a wide variety of problems including unauthorized disclosure, unauthorized use, inappropriate modification, premature deletion, and unavailability.
3. The Information Security Specialist will provide highly specialized experience in one or more information, computer, or network security disciplines (e.g. penetration testing, accreditation, or risk assessment and mitigation); develop system security plans, certification and accreditation reviews; analyze and establish processes for comprehensive systems and data protection; assess and mitigate system security threats and risks; perform security audits, evaluation, risk assessments and make strategic recommendations; and manages, supports, installs and maintains security tools and systems, and tracks security patches and incidents.
4. The Information Security Specialist will possess knowledge and experience in standard methodologies used in certification and accreditation processes; extensive experience following NIST guidelines in risk assessment and management; conducting vulnerability analysis; developing mitigation plans; and performing penetration testing, password protection testing and application security testing.
1. This Classification must have a minimum of five (5) years of experience applying security policies, standards, testing, modification and implementation.
2. At least three (3) years of that experience must be in information security analysis.
3. This classification requires the possession of a bachelor’s degree in an IT-related or Engineering field.
4. Additional qualifying experience may be substituted for the required education on a year-for-year basis.
Desirable Skills:
1. Global Information Assurance Certification (GIAC) Exploit Researcher and Advanced Penetration Tester (GXPN)
2. Offensive Security Experienced Penetration Tester (OSEP)
3. GIAC Penetration Tester (GPEN)
4. Offensive Security Certified Professional (OSCP)
5. Offensive Security Exploit Developer (OSED)
6. Offensive Security Exploitation Expert (OSEE)
7. Offensive Security Web Expert (OSWE)
8. CompTIA PenTest+
9. Certified in Risk and Information Systems Control (CRISC)
10. Certified Information Systems Security Professional (CISSP)
11. Certified Information Systems Auditor (CISA)
Thanks & Regards
Dave
Talent Acquisition Specialist |
Indus Group Inc
Phone:(609) 604-2787
Site: www.indus-grp.com
Email:Dave@indus-grp.com
LinkedIn: linkedin.com/in/devender-banoth-1860b5263