Thursday, January 07, 2010

Security Engineer in Dallas, TX

Description Our client, one of the largest banks in the US with wealth management, investment banking, and international business, Is seeking a Security Engineer. Location: Dallas , TX Type of Position: Contract Key ?Production Support Generalist? individual contributor, with accountability for Production support on the Level 3 Security Services team. The candidate must have a minimum of 5 years of hands-on technical experience in any 3 of the below disciplines and with heavy exposure to the rest. o Firewall o Load Balancing o Proxy o Web Access Management o Federated Identity o Directory Services o Intrusion Detection/Intrusion Prevention This engineer will be a member of a 24 x 7 team of engineers with similar skills and responsibilities, and will be required to work collaboratively to ensure all critical business needs are being met. Tasks included but not limited to troubleshooting to restore services for Production issues. Proactively identifying and resolving potential problems before they become issues. Researching, implementing changes. Ensure ownership of problem resolution. Exercises judgment within broadly defined practices and policies in selecting methods, techniques, and evaluation criterion for obtaining results. Work leadership may be provided by assigning work and resolving problems. The candidate must follow all company s change control processes and work within the operating guidelines of domestic associates. The candidate must have excellent verbal and communication skills. Responsibilities included, but are not limited to: 24x7 production support, participate in shift work (most likely 2nd shift 1 PM ET - 9 PM ET) Make decisions to prevent negative impact in the environment Identifying and driving improvements in operational model and platforms, and to identify improvement opportunities from service and performance metrics Participating in define requirements for monitoring and operational readiness Oversight on systems documentation, including operational run books (as necessary) Participating in internal and external changes that may impact the environment Partner with external teams to proactively develop resolutions Strengthen 3rd party vendor relationships to improve availability Automate manual processes to improve quality and speed of service. Ability to communicate with Senior Leaders and business partners. Training peers and team of new features and support requirements. Disaster Recovery and Business Continuity This is a technical position and the Engineer will have access to systems within the scope of the delivery channel to collaborate and drive technical actions. This engineer is expected to have significant knowledge of the delivery channel and the technologies it utilizes, as well as: Strong analytical skills to evaluate the information gathered from multiple sources, reconcile conflicts, decompose high-level information into details, abstract up from low-level information to a more general understanding. Observation skills, to validate data obtained via other techniques Interpersonal skills, to help negotiate priorities and to resolve conflicts among stakeholders. IT Technical Expertise within a core NCG technology area (distributed, mainframe, application technologies) Operational Support Experience Strategic Quick thinker Comfortable leading in uncertain situations Experience and Technical Skill Set required: Candidates should possess a strong understanding of Internet TCP/IP networking and related protocols (DNS, HTTP, FTP, Telnet), should have a solid working knowledge of Internet network security and best practices, Candidates who have a 5 - 7 Years of hands-on of direct experience in 3 of the following technologies/platforms are preferred: Firewall Checkpoint Firewall-1 and the companion Provider-1 management system. Strong knowledge with models, capabilities and architectures of the following: Nokia appliance (High Availability Configuration) Crossbeam Nortel ASF appliance Proxy Blue Coat Proxy NetApp s NetCache Load Balancing Big-IP GTM Big-IP LTM Directory Services (LDAP) CA s eTrust Web Access Management CA s SiteMinder Federated Identity CA s SiteMinder SAML compatible solution Intrusion Detection System/Intrusion Prevention System Leading industry vendors Additional Technical Skill Set required: BIND (DNS) Sun Solaris 8 and higher Unix Scripting Perl TCP/IP Any Sniffer tools for packet capture (such as Wireshark, Ethereal) Ability to perform network protocol analysis and raw data capture Network device monitoring with SNMP tools Knowledge in implement, maintain and monitor HA Firewall configurations Knowledge in maintain and monitor IDS/IPS technologies Strong technical drawing and documentation skills Experience working for a large organization is a plus Industry certifications in any of the following would be considered an added value: Check Point Certified (CCSA/CCSE and higher) CISSP (ISC2) CompTIA Security+ CompTIA Network+ SANS Institute certified (GCFW/GCIA/GSE)
Apply to this job