*Hi*

*Please go through the below position and if you feel comfortable, then
please send me your updated resume*



*Role: Security Engineer*

*Location: Redwood City, CA*

*Duration: 6+ months to a year*

*Interview : phone and Skype*







*Required skills:*

Familiarity with Python, Node, Ruby, and Java

Familiarity with Linux (CentOS) Windows 2012 and Ubuntu.

Familiarity with Databases, specially Mysql / postgresql / percona, DMP and
Vertica for reporting/analytics DB

Jenkins, Maven and puppet knowledge would be a plus; Knowledge of Ruby is
acceptable.

Must know the CVSS and other industry standards and trends in security.

AWS ACL’s and resource policy definition knowledge would be added value.

Security Engineer Responsibilities

*Scans, PenTest and Remediations*

Periodic Scans of Infrastructure (Networks and Hosts) to assess them for
vulnerabilities – Qualys scan management and filing of remediation in Jira

Summary reporting of vulnerabilities discovered, remediated & average time
to remediation.

Application penetration testing, Bug Crowd Sourcing, following up on
remediation from Bug Crowd reports, filing Jiras, recommending remediation,
triaging and testing.

*SIEM*

Deploy, Manage and support SIEM / Log Analytics tool i.e. Elastic Search

Build security specific Dashboards and If required create notifications for
anomalies / alerts.

Responding to OSSEC HIDS alerts and remediating or followup on remediations

Security Incident Response co-ordination

Security Incident Remediation

Security fixes for Incidents

Forensics where required

Identification of security incidents/anomalies, periodic review and updates
to Incident response processes and procedures

*Audits*

Relevant SOX compliance audit reporting for engineering organization

Ensuring Security Policy implementations

DR Plan improvement, Simulations, DR Drill activity co-ordination with
technical teams as identified.

DR Results documentation with gaps and reporting/follow up actions

*RFx Responses and Security Documentation*

RFx Responses for security specific questions

Security Policy periodic reviews and updates

*Security Implementations*

Security patching on systems, zero-day fix implementations where required

SSL Certificate renewals, request generation for new certificates, key file
passphrase removal

Evaluate, Deploy, Manage and support credential vault (freeware tool
preferred, with UI available, should be capable of multi-node
infrastructure that can be used as grid/cluster)

*Secure Build Infrastructure*

Assists in securing and maintaining security of overall Infrastructure

AAA implementations

Identity management through LDAP

Develop Self-serve security tools with documentation and monitoring and
productionize them, should be person independent.







[image: logo]

*Ankush Nirala* | Technical Recruiter | Apetan Consulting LLC

Tel: 201- 620- 9700* 112 | Mail: 72 Van Reipen Avenue # 255 Jersey City, NJ
07306 |

Corp.Office: 15 Union Avenue,  office # 6,  Rutherford, New Jersey 07070 |

ank...@apetan.com | G-talk: ankush...@gmail.com | www.apetan.com

*[image: https://s3.amazonaws.com/images.wisestamp.com/icons/facebook.png]*
<http://www.facebook.com/Apetanconsulting> *[image:
https://s3.amazonaws.com/images.wisestamp.com/icons/linkedin.png]*
<http://www.linkedin.com/company/apetan-consulting-llc?trk=top_nav_home>
*[image:
https://s3.amazonaws.com/images.wisestamp.com/icons/twitter.png]*
<http://twitter.com/ApetanLLC> [image: e verify]

*Disclaimer*: We respect your Online Privacy. This e-mail message,
including any attachments, is for the sole use of the intended recipient(s)
and may contain confidential and privileged information. Any unauthorized
review, use, disclosure or distribution is prohibited. If you are not the
intended recipient, please contact the sender by reply e-mail and destroy
all copies of the original message. If you are not interested in receiving
our e-mails then please reply with a "REMOVE" in the subject line at
rem...@apetan.com and mention all the e-mail addresses to be removed with
any e-mail addresses, which might be diverting the e mails to you. We are
sorry for the inconvenience.

Reply via email to