What are the responsibilities and job description for the Information Security Consultant position at Springhead Technologies?
SUMMARY:
The primary responsibility of this role will determine security requirements by evaluating business strategies, researching information security standards, conducting systems security and vulnerability analysis. This role is highly technical.
Reporting to the Division Information Security Officer, the person in this role will support the Information Security department's objective is to foster a deep integration with the business and ensure strong alignment with their needs.
What You’ll Be Doing :
- Analyze system architectures to design appropriate security requirements which enforce Information Security policies and standards.
- Identify and communicate current and emerging security threats to the business and across security domains.
- Create solutions that balance business requirements with information and cyber security requirements
- Collaborate with business units, application teams, architectural teams, and third-party vendors to provide guidance on security controls for managing risk for TFS.
- Perform risk assessments of information systems and infrastructure; develop appropriate risk treatment and mitigation options, and effectively articulate findings and recommendations to IT project teams and management.
- Design security architecture elements to mitigate threats as they emerge. Identify security design gaps in existing and proposed architectures and recommend changes or enhancements
- Maintain highly developed knowledge of security best practices and technologies.
- Aid strategic leaders across the business in designing their product roadmaps.
- Communicate technical topics to diverse audiences including technology teams, leaders, and business users without a technical background
- Manage multiple simultaneous fast-paced projects covering diverse business initiatives. Work on multiple projects and tasks concurrently.
Security Architecture Governance :
- Understand the role of the security department and how it contributes to the overall goals and business strategy of the Company.
- Align standards, frameworks, and security with overall business and technology strategy.
- Create baseline architecture standards for security controls for cloud and data center-hosted solutions.
Qualifications :
What You Bring :
- Associate Two-Year College Degree.
- Progressive relevant work experience.
- Previous experience as a Security Architect, Security Manager, or equivalent.
- A solid background with experience in managing system delivery, including SDLC and security tools and technologies. Agile framework.
- Familiarity with standard network security technology solutions: e.g., firewall, router, VPN, IDS.
- Additional familiarity with the use of standard security technology solutions and processes such as access control, user provisioning, directory, SIEM, vulnerability management, Cloud Access Security Brokers, Data Loss prevention solutions, anti-virus, single sign-on, auditing, PKI, and Cryptography.
- Understanding network protocols, network topologies, virtual infrastructure, network segmentation, operating systems, databases, applications, and mobile security.
- Experience designing security in large public cloud technologies (AWS/Azure/GCP).
- Excellent organizational, written, and verbal communication skills.
- Need to be a Senior level and manage projects independently with solid knowledge of Security and Technology Architecture.
- High level of personal integrity and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
Added Bonus If You Have :
- A bachelor’s degree in Computer Science, Business Administration, Management Information Systems, related discipline, or equivalent progressive work experience
- Certified Cloud Security Professional (CCSP)
- Certified Information Systems Security Professional (CISSP).
- Information Systems Security Architecture Professional (ISSAP).
- AWS Certified Security Specialty.
- AWS Developer Associate.
- Certified Cloud Security Knowledge (CCSK).
- Certified Chief Information Security Officer (C|CISO).
- Other Industry-specific certifications.
- Experience as a principal information Security consultant/Architect in Banking and Financial Services
Job Types: Full-time, Contract
Pay: $50.00 - $60.00 per hour
Experience:
- Information Security Consultant: 5 years (Required)
Work Location: One location