<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4961146288674383918</id><updated>2012-01-24T11:24:18.673-05:00</updated><title type='text'>Information  Security Career Opportunities</title><subtitle type='html'>Cyber Security Career Opportunities</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://intrudetect.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>33</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-3737582858784136293</id><published>2012-01-24T11:23:00.000-05:00</published><updated>2012-01-24T11:24:18.775-05:00</updated><title type='text'>Data Security Engineer - Washington DC</title><content type='html'>OVERVIEW&lt;p&gt;This position will be responsible for overall design, security,&lt;br&gt;administration and management of data for financial research&lt;br&gt;environment in addition to supporting other Data Security environment&lt;br&gt;systems. Position is responsible for all activities related to&lt;br&gt;architecture, implementation, management, and support of the systems&lt;br&gt;and processes and standards to ensure effective solutions for Data&lt;br&gt;management. Other responsibilities include but are not limited to&lt;br&gt;participating in other Data and Network Security engineering efforts,&lt;br&gt;Security Assessments, and special projects as assigned. The successful&lt;br&gt;candidate will be required to pass background investigations.&lt;p&gt;REQUIRED SKILLS:&lt;p&gt;Minimum five or more years of demonstrated experience in implementing,&lt;br&gt;administering, and supporting information security systems. Direct&lt;br&gt;experience managing security permissions for Windows and UNIX based&lt;br&gt;systems. Extensive understanding and/or experience with system&lt;br&gt;hardening best practices. Must be able to navigate and manage files&lt;br&gt;within the UNIX based system command line. Solid understanding of&lt;br&gt;directory schema (Active directory, LDAP, etc.). Extensive&lt;br&gt;understanding and/or experience with application security&lt;br&gt;(authentication, authorization, etc.). Experience with basic scripting&lt;br&gt;(TCL, Perl, Visual Basic, etc.). Extensive understanding of, and/or&lt;br&gt;experience with, configuring SSL for web applications and services.&lt;br&gt;Experience supporting Microsoft and UNIX based applications to&lt;br&gt;include, but not limited to, installation of software, management of&lt;br&gt;local rights, users, and file permissions. Solid understanding of&lt;br&gt;network topologies, protocols, SSL, and DNS. Capable of interpreting&lt;br&gt;task requirements, selecting appropriate methodologies, and carrying&lt;br&gt;out complex tasks to completion with minimum supervision. Extensive&lt;br&gt;understanding of information security best practices.&lt;p&gt;Our client is a large government organization that uses cutting edge&lt;br&gt;technology. A drug and background check will be required.&lt;p&gt;REQUIRED EDUCATION/SKILLS&lt;p&gt;- BS degree in Computer Science or related field plus 3+ years related&lt;br&gt;work experience&lt;br&gt;- Knowledge of Federal Government Data Security Standards, security&lt;br&gt;information management, operational, and technical requirements, NIST&lt;br&gt;Special Publications, FIPS 199, 800-60, etc.&lt;br&gt;- CISSP or equivalent industry certification&lt;br&gt;- U.S. Citizenship required and the ability to obtain and U.S. Public&lt;br&gt;Trust Suitability and/or Top Secret Clearance&lt;br&gt;- Microsoft SQL, SharePoint, Windows and Unix OS Platform Security,&lt;br&gt;AJAX, Java, Ruby, Python, .NET, Erlang&lt;br&gt;- Superior writing and analytical skills&lt;p&gt;LOCATION&lt;p&gt;- Downtown Washington DC&lt;p&gt;Email your resume to &lt;a href="mailto:careers@intrudetect.com"&gt;careers@intrudetect.com&lt;/a&gt;. Intrudetect, Inc. is an&lt;br&gt;EEO Employer&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-3737582858784136293?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3737582858784136293'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3737582858784136293'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2012/01/data-security-engineer-washington-dc.html' title='Data Security Engineer - Washington DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-938437596836506750</id><published>2011-06-28T18:34:00.000-04:00</published><updated>2011-06-28T18:34:41.484-04:00</updated><title type='text'>Developer, Government Cloud (PT/FT) Washington DC, Remote</title><content type='html'>&lt;div dir="ltr" style="text-align: left;" trbidi="on"&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;OVERVIEW&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;We are looking for goal oriented and self-motivated developer who is confident, independent and willing to invent and change the competitive landscape in the software space. If you have a hunger to contribute to the cloud technology, a desire to put the customer needs first, and care deeply about product quality, this is a job for you. We are looking for individuals who can take ownership of difficult problems and show resourcefulness and leadership to find an optimal solution.&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;JOB DESCRIPTION&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Provides support for all incoming CRM requests for Google Apps, Amazon EC2 and other Cloud providers, works on issues related to bugs in scripts, gadgets, visualization API’s&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Reviews security integration and reporting and to improve communications between departments and maintain operations and security of performance matrix and security reporting capabilities&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Provides support for Google Apps for Government and Amazon EC2 environment delivering consolidated reporting for cyber security data calls, performance trends and history, maintenance of real-time security status, FISMA, CyberScope and new OMB initiatives&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Participates with client in the strategic design process to translate new security and business requirements into optimized technical designs&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Provides support for mobile reporting capabilities, user management and email security and compliance service monitoring with POSTINI and Google Apps Audit API, Amazon EC2&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Ensures compliance with government security policies and procedures and responsible for designing, developing or recommending integrated security system solutions that will ensure proprietary/confidential data and systems are protected&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Develop products and services and manage APIs, appscripts, and virtualizations and reporting and follow approved change management and software development lifecycle processes, documentation and source management.&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Contributes to the development of organization's goals and objectives and regularly interacts with customers, senior management&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;REQUIRED EDUCATION/SKILLS&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- BS degree in Computer Science or related field plus 3+ years related work experience&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Knowledge of Federal Government security management, operational, and technical requirements&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- CISSP or equivalent industry certification&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- U.S. Citizenship required and the ability to obtain and U.S. Public Trust Suitability and/or Top Secret Clearance&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Google Apps for Government, Google Documents, API Google Web Toolkit, AJAX, Java, Ruby, Python, .NET, Erlang&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Superior writing and analytical skills&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;LOCATION&lt;/div&gt;&lt;div style="margin-bottom: 0px; margin-left: 0px; margin-right: 0px; margin-top: 0px;"&gt;- Remote Access and Downtown Washington DC&lt;/div&gt;&lt;br /&gt;Email your resume to  careers@intrudetect.com. Intrudetect, Inc. is an EEO Employer  &lt;a href="http://www.facebook.com/sharer.php" name="fb_share" type="button"&gt;Share&lt;/a&gt;  &lt;script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"&gt;&lt;/script&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-938437596836506750?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/938437596836506750'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/938437596836506750'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2011/06/developer-government-cloud-ptft.html' title='Developer, Government Cloud (PT/FT) Washington DC, Remote'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-632366570755799889</id><published>2010-08-17T14:00:00.000-04:00</published><updated>2010-08-17T14:01:20.310-04:00</updated><title type='text'>Security Engineer, Washington DC</title><content type='html'>&lt;font size="2"&gt;JOB DESCRIPTION: &lt;br&gt;&lt;br&gt;The primary functions of this position  will include the following activities: IT Security Engineering and  Security Architecture review and support; and design, develop and/or  recommend integrated security system solutions that will ensure  proprietary/confidential data and systems protected. This includes but  is not limited to: managing a large systems engineering task, or  performing as overall technical lead (chief engineer) for a large or  complex project. Provide technical planning and technical monitoring and  control support to the Program Manager. Manages a team of systems  engineers, or serves as overall technical lead for a medium sized  project or for portions of a large or complex project. May lead or  participate in risk management and preparation of technical reviews. May  lead or participate in FISMA certification and accreditation activities  to include vulnerability analysis, NIST 800-53 ST&amp;amp;E plan  development, Security Risk Assessments, and Privacy Impact Assessments.  Supports business development and proposal activities. Position will  allow candidate to be located in Columbia, MD or McLean, VA.&lt;br&gt;&lt;br&gt;EDUCATION:  &lt;br&gt;&lt;br&gt;Bachelors degree in related technical discipline and 6+ years of related  experience or minimum 12 years of related experience without degree.  Must be U.S.Citizen&lt;br&gt;&lt;br&gt;REQUIRED SKILLS: &lt;br&gt;&lt;br&gt;Knowledge of NIST guidelines  including 800-18, SP 800-26, 800-40, 800-53. Knowledge and experience  with any of the following policies/processes: NISPOM, DCID 6/3, DITSCAP,  or DIACAP; C&amp;amp;A testing experience; experience configuring operating  system security. Knowledge of Windows, Oracle and/or UNIX, LAN/WAN/MAN,  IPv*, and telecommunications devices. Ability to effectively write,  organize and conduct briefings. Supports business development and  proposal activities.DESIRED SKILLS: Possess an active IRS MBI, BI,  medium risk or higher clearance. Knowledge of IRS Modernization planning  efforts. Experience in designing, developing, documenting, installing,  and supporting security requirements and controls for Network Security  and Internet Security; CISSP, CISSM or other security certification; OMB  regulations, including OMB A-130 or FISMA; Experience with application  development or IT auditing, J2EE, Cisco, Nortel, STM, Sniffer, Firewall,  Ehternet, Wireless, VOiP, mainframe equipment, PKI, VPN; Knowledge of  Identity and Access Management concepts; Excellent analytical skills;  and Excellent oral and written communication skills&lt;/font&gt; &lt;div style="visibility: hidden; display: inline;" id="avg_ls_inline_popup"&gt;&lt;/div&gt;&lt;style type="text/css"&gt;#avg_ls_inline_popup {  position:absolute;  z-index:9999;  padding: 0px 0px;  margin-left: 0px;  margin-top: 0px;  width: 240px;  overflow: hidden;  word-wrap: break-word;  color: black;  font-size: 10px;  text-align: left;  line-height: 13px;}&lt;/style&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-632366570755799889?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/632366570755799889'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/632366570755799889'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2010/08/security-engineer-washington-dc.html' title='Security Engineer, Washington DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-4981014377728175623</id><published>2010-03-30T00:42:00.004-04:00</published><updated>2010-05-10T00:31:07.840-04:00</updated><title type='text'>Cloud Integrator (Security Engineer) (NW DC, Remote) - Full Time/Contract</title><content type='html'>OVERVIEW &lt;br /&gt;&lt;br /&gt;We are looking for goal oriented and self-motivated individuals who are  confident, independent and willing to invent and change the competitive  landscape in the software space. If you have a hunger to contribute to the cloud  technology, a desire to put the customer needs first, and care deeply  about product quality, this is a job for you.  &lt;br /&gt;&lt;br /&gt;We are looking for individuals who can take ownership of difficult  problems and show resourcefulness and leadership to find an optimal  solution. &lt;br /&gt;&lt;br /&gt;JOB DESCRIPTION &lt;br /&gt;&lt;br /&gt;- Integrates and develops Google's products (Google Apps, Google  Gadgets) and services into large businesses and government agencies &lt;br /&gt;- Participates with the client in the strategic design process to  translate security and business requirements into technical designs &lt;br /&gt;- Ensures compliance with government and company security policies and  procedures &lt;br /&gt;- Responsible for designing, developing or recommending integrated  security system solutions that will ensure proprietary/confidential data  and systems are protected &lt;br /&gt;- Provides technical engineering services for the support of integrated  security systems and solutions &lt;br /&gt;- Contributes to the development of organization's goals and objectives.   &lt;br /&gt;- Regularly interacts with customers, senior management &lt;br /&gt;&lt;br /&gt;REQUIRED EDUCATION/SKILLS &lt;br /&gt;&lt;br /&gt;- BS degree in Computer Science or related field plus 3+ years related  work experience &lt;br /&gt;- Knowledge of Federal Government security management, operational, and  technical requirements &lt;br /&gt;- CISSP or equivalent certification &lt;br /&gt;- U.S. Citizenship required and the ability to obtain and U.S. Public  Trust Suitability and Top Secret Clearance &lt;br /&gt;- Google Apps, API Google Web Toolkit, AJAX, Java &lt;br /&gt;- Superior writing and analytical skills &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;LOCATION &lt;br /&gt;&lt;br /&gt;- Remote Access and Downtown Washington DC   &lt;br /&gt;&lt;div id="avg_ls_inline_popup" style="display: inline; visibility: hidden;"&gt;&lt;/div&gt;&lt;style type="text/css"&gt;#avg_ls_inline_popup {  position:absolute;  z-index:9999;  padding: 0px 0px;  margin-left: 0px;  margin-top: 0px;  width: 240px;  overflow: hidden;  word-wrap: break-word;  color: black;  font-size: 10px;  text-align: left;  line-height: 13px;}&lt;/style&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.facebook.com/sharer.php" name="fb_share" type="button"&gt;Share&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;script src="http://static.ak.fbcdn.net/connect.php/js/FB.Share" type="text/javascript"&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-4981014377728175623?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4981014377728175623'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4981014377728175623'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2010/03/cloud-integrator-security-engineer-nw.html' title='Cloud Integrator (Security Engineer) (NW DC, Remote) - Full Time/Contract'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-5529455390900620010</id><published>2009-09-15T15:25:00.001-04:00</published><updated>2009-09-15T15:25:16.049-04:00</updated><title type='text'>C &amp; A Analyst - Washington DC</title><content type='html'>&lt;div style="font-family:times new roman, new york, times, serif;font-size:12pt;color:#000000;"&gt;&lt;DIV&gt; &lt;P class=MsoNormal style="CLEAR: both; MARGIN: 0in 0in 0pt 0.25in; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;STRONG&gt;&lt;SPAN style="COLOR: #0d0600"&gt;Principal Duties and Responsibilities&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN style="COLOR: #0d0600"&gt;: &lt;/SPAN&gt;&lt;SPAN style="COLOR: #0d0600; FONT-FAMILY: Georgia"&gt;&lt;?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;P class=MsoNormal style="CLEAR: both; MARGIN: 0in 0in 0pt 0.25in; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto"&gt;&lt;SPAN style="COLOR: #0d0600; FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&amp;nbsp;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt; &lt;DIV class="post-body entry-content" style="CLEAR: both"&gt; &lt;UL type=disc&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Develop, update, and maintain appropriate Certification &amp;amp; Accreditation packages based on NIST standards for general support systems and major applications&lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Recommend appropriate FIPS 199 impact level designations and identify appropriate security controls based on characterization of the general support system or major application &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Develop and maintain POA&amp;amp;M for all accepted risks upon completion of system &lt;B style="BACKGROUND-ATTACHMENT: scroll; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial"&gt;C&amp;amp;A&lt;/B&gt;. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Integrate with a team of skilled information technology security professionals demonstrating competence in the application of the system certification guidelines and procedures&amp;nbsp; &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Able to provide support and guidance through the POA&amp;amp;M remediation process, &lt;B style="BACKGROUND-ATTACHMENT: scroll; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial"&gt;C&amp;amp;A &lt;/B&gt;progress, including compliance monitoring of &lt;B style="BACKGROUND-ATTACHMENT: scroll; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial"&gt;C&amp;amp;A&lt;/B&gt; artifacts, annual self-assessments (NIST 800-53), vulnerability scans.&lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Awareness of current information security issues and the ability to interpret the requirements of relevant policies and standards set forth in NIST documentation, specifically, 800-37, 800-53, FIPS-199/200, and 800-30. &lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Ability to communicate effectively orally and in writing to build and maintain customer satisfaction and express conclusions in a clear, technically sound manner on matters associated with information technology security.&lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l3 level1 lfo1; tab-stops: list .5in"&gt;Identifies security risks, threats and vulnerabilities of networks, systems, applications and new technology initiatives. Develop, tests and operates firewalls, intrusion detection systems, enterprise anti-virus systems and software deployment tools. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;STRONG&gt;&lt;SPAN style="COLOR: #0d0600"&gt;General Skills:&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN style="COLOR: #0d0600; FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;UL type=disc&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Provides complex engineering analysis and support for firewalls, routers, networks and operating systems. Performs and evaluates vulnerability scans within a multi-platform, large enterprise environment. Reacts to and initiates corrective action regarding security violations, attempts to gain unauthorized access, virus infections that may affect the network or other event affecting security. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Oversees user access process to ensure operational integrity of the system. Enforces the information security configuration and maintains system for issuing, protecting, changing and revoking passwords. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Develops technical and programmatic assessments, evaluates engineering and integration initiatives and provides technical support to assess security policies, standards and guidelines; develops, implements, enforces and communicates security policies and/or plans for data, software applications, hardware and telecommunications. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Performs complex product evaluations, recommends and implements products/services for network security. Validates and tests complex security architecture and design solutions to produce detailed engineering specifications with recommended vendor technologies. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Reviews, recommends and oversees the installation, modification or replacement of hardware or software components and any configuration change(s) that affects security. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Provides complex technical oversight and enforcement of security directives, orders, standards, plans and procedures at server sites. Ensures system support personnel receive/maintain security awareness and training. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l1 level1 lfo2; tab-stops: list .5in"&gt;Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt; &lt;P class=MsoNormal style="MARGIN: 0in 0in 0pt"&gt;&lt;STRONG&gt;&lt;SPAN style="COLOR: #0d0600"&gt;Other&amp;nbsp;Skills/Qualifications (preferred/pluses):&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN style="COLOR: #0d0600; FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;UL type=disc&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo3; tab-stops: list .5in"&gt;Possess security certifications (CISSP, CISM, etc.) &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo3; tab-stops: list .5in"&gt;Good communication skills &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo3; tab-stops: list .5in"&gt;Strong analytical and problem solving skills to troubleshoot and resolve network/operating system security issues &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo3; tab-stops: list .5in"&gt;Ability to perform and interpret vulnerability assessments &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo3; tab-stops: list .5in"&gt;Ability to administer the operations of a security infrastructure &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l0 level1 lfo3; tab-stops: list .5in"&gt;Ability to balance and prioritize work &lt;BR&gt;&lt;BR&gt;&lt;B&gt;Qualifications&lt;/B&gt;&lt;BR&gt;&lt;BR&gt;&lt;STRONG&gt;Basic Qualifications &lt;/STRONG&gt;&lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;UL type=disc&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l2 level1 lfo4; tab-stops: list .5in"&gt;Bachelor's degree or equivalent combination of education and experience &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l2 level1 lfo4; tab-stops: list .5in"&gt;Three or more years of experience in network, host, data and/or application security in multiple operating system environments &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l2 level1 lfo4; tab-stops: list .5in"&gt;Demonstrate experience working with IP networking, networking protocols and understanding of security related technologies including encryption, IPsec, PKI, VPNs, firewalls, proxy services, DNS, electronic mail and access-lists &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l2 level1 lfo4; tab-stops: list .5in"&gt;Demonstrated Experience working with internet, web, application and network security techniques and&amp;nbsp;working with relevant operating system security (Windows, Solaris, Linux, etc.) &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l2 level1 lfo4; tab-stops: list .5in"&gt;Proven experience working with leading firewall, network scanning and intrusion detection products and authentication technologies &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;O:P&gt;&lt;/O:P&gt; &lt;LI class=MsoNormal style="MARGIN: 0in 0in 0pt; COLOR: #0d0600; mso-margin-top-alt: auto; mso-margin-bottom-alt: auto; mso-list: l2 level1 lfo4; tab-stops: list .5in"&gt;Demonstrated experience working with federal regulations related to information security (&lt;B style="BACKGROUND-ATTACHMENT: scroll; -moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial"&gt;FISMA&lt;/B&gt;, Computer security Act, etc.) and with&amp;nbsp;NIST Special Publications and C &amp;amp; A process methodology &lt;SPAN style="FONT-FAMILY: Georgia"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/SPAN&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/DIV&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-5529455390900620010?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/5529455390900620010'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/5529455390900620010'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2009/09/c-analyst-washington-dc.html' title='C &amp; A Analyst - Washington DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-4997217947948055271</id><published>2009-04-29T22:30:00.001-04:00</published><updated>2009-04-29T22:30:10.482-04:00</updated><title type='text'>Security Engineers, Washington DC</title><content type='html'>&lt;div style="font-family:times new roman,new york,times,serif;font-size:12pt"&gt;&lt;div&gt; Requirements:&lt;br&gt;&lt;br&gt;* 4 years of experience in LAN/WAN network&lt;br&gt;* 3 years of experience in network security in areas such as infosec, ids, etc.&lt;br&gt;* 3 years of experience in working with federal IT Security policies and  procedures. &lt;br&gt;*&amp;nbsp; Experience working as as network/security lead is desired.&lt;br&gt;*&amp;nbsp; Excellent communication skills are required&lt;br&gt;&lt;br&gt;The client will accept candidates with Secret clearances and upgrade them to Top&lt;br&gt; Secret. Please respond with you resume if you are interested in hearing more.&lt;br&gt;&lt;br&gt;This is located in downtown DC and our client will interview very quickly.&lt;br&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-4997217947948055271?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4997217947948055271'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4997217947948055271'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2009/04/security-engineers-washington-dc.html' title='Security Engineers, Washington DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-1269850022494390622</id><published>2008-11-11T11:45:00.002-05:00</published><updated>2010-08-16T09:12:39.404-04:00</updated><title type='text'>Information Security Analyst, Washington, DC</title><content type='html'>POSITION DESCRIPTION: &lt;br /&gt;Reports to the Information Technology Security Team Project Manager. The Information Security Analyst acts as a consultant, interfacing between the customer and IT security consulting team throughout the federal information system certification and accreditation life cycle. Responsible for NIST certification and accreditation as primary task area. Provides internal status reports, enforces quality control of project deliverables, and implements efficient processes and procedures for continuing improvement of services for the customer. The ideal candidate is very detail oriented with strong technical knowledge, superior writing skills, and excellent customer relationship management skills. He or she will be responsible for planning, developing, finalizing, and reviewing key deliverables in each stage of the certification and accreditation process. The Information Security Analyst will be actively engaged in identifying unique system characteristics;  interviewing key organizational personnel (technical, administrative, and executive); working with consulting team to compose requisite documentation (security categorizations, risk assessments, contingency planning, etc.); and mapping complex technical requirements, functionality, and capabilities to prescribed security controls, policies, and practices. The analyst will coordinate and plan all certification and accreditation activities for existing systems and those still in development (SDLC); provide ongoing gap analysis of current policies, practices, and procedures as they relate to established guidelines outlined by NIST, OMB, FISMA, etc; work face-to-face with multiple stakeholders through interviewing, planning, or participating in a team effort to bring multiple complex projects to fruition; conduct in-depth technical reviews of new and existing IT systems in order to identify the appropriate mitigation strategies required to bring these systems into compliance  with established policy and industry guidelines; and analyze business models, workflows, and organizational dimensions as they relate to the design, implementation, and support of the information system. &lt;br /&gt;&lt;br /&gt;REQUIRED EDUCATION: &lt;br /&gt;Bachelor's degree in related field and 4+ years of related experience. Must have bachelor's degree or higher; no waivers accepted. &lt;br /&gt;&lt;br /&gt;REQUIRED SKILLS: &lt;br /&gt;Knowledge and hands-on experience with IT security architecture and design (firewalls, intrusion detection systems, virtual private networking, and virus protection technologies, LAN/WAN design, and general internetworking technologies), various operating systems and hardware, and basic programming and database training. Proficiency with advanced features of Microsoft Word 2003 and other Microsoft Office Suite 2003 applications including Outlook, PowerPoint, and Excel. Experience with Adobe Acrobat Professional. Excellent technical writing skills in the English language, excellent  written and oral communication skills, desktop publication skills. Ability to work with minimal supervision, set priorities, and give attention to detail and quality, flexible, strong organizational and time management skills, ability to multi-task, ability to work individually and with a team, positive attitude, self-motivated, reliable, trustworthy, strong interpersonal skills, diplomacy, and ability to handle stress in professional manner. Professional business attire is required for client site work. The candidate must possess one or more of the following certifications: CISSP, CISA, CISM, GIAC, MCSE, CCNA, CCNP, GSSP, GPEN. &lt;br /&gt;&lt;br /&gt;DESIRED SKILLS: &lt;br /&gt;Knowledge of OMB A-130, FISMA, OMB Memos, Privacy Act of 1974, HIPAA, and Sarbanes-Oxley, and NIST Special Publications 800 series, and one or more of the following certifications: ITILv3, COBIT. Experience in the financial services market is beneficial but not required. &lt;br /&gt;&lt;br /&gt;SECURITY CLEARANCE REQUIREMENTS: &lt;br /&gt;U.S.  citizen and High Public Trust clearance (6C). &lt;br /&gt;&lt;br /&gt;WORK LOCATION: &lt;br /&gt;Hyattsville, MD. Travel: 0-25%. &lt;br /&gt;&lt;br /&gt;WORK HOURS: &lt;br /&gt;Day shift, Monday though Friday, 40 hours/week.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-1269850022494390622?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1269850022494390622'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1269850022494390622'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/11/information-security-analyst.html' title='Information Security Analyst, Washington, DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-8140362482224060107</id><published>2008-09-24T18:04:00.001-04:00</published><updated>2008-09-24T18:04:23.600-04:00</updated><title type='text'>Server Security Administrator , Washington DC</title><content type='html'>At least 5 years of experience in the field of Information Security with proven involvement in operations requiring for stringent uptime service levels. Experience in the following areas:&lt;br&gt;- Network Management and Security paradigms.&lt;br&gt;- Intimacy with UNIX, Windows and Linux hardware and software configurations.&lt;br&gt;- Relevant experience in environments supporting databases (Oracle and Sybase), including intimacy with DB concepts and operations.&lt;br&gt;- Problem analysis, systems analysis and user support.&lt;br&gt;- Some exposure to Disaster/Recovery and system backup disciplines.&lt;br&gt;- Practical experience with security tools (compliance monitoring, Scan Tools, IDS/IPS Systems, firewalls, etc.) and some exposure or knowledge of related technologies (PKI, SSO, Smart Cards, etc.)&lt;br&gt;Team player with strong technical and user support skills. Demonstrated ability to work under pressure, in a demand driven environment; Initiative, resourcefulness, flexibility in dealing with issues.  Ability to prioritize workload and balance conflicting demands.&lt;br&gt;Determined team-work orientation as well as a balanced responsiveness to client needs and requirements; strong practical experience.&lt;br&gt;Willingness to work nights, weekends, and holidays on occasion to help mitigate crisis situations.&lt;br&gt;Excellent oral and written communication skills. Able to present and explain technical information to diverse types of audience (management, users, vendor, and technical staff).&lt;br&gt;&amp;nbsp;&lt;br&gt;Specific Requirements:&lt;br&gt;&amp;nbsp;&lt;br&gt;Detailed knowledge and experience on network or host based firewall configuration and management.&lt;br&gt;Proven ability to coordinate and manage multiple concurrent tasks.&lt;br&gt;Academic/professional training to at least a Bachelor's Degree or its international equivalent, preferably in Computer Science, Management Information, or Electrical Engineering. Strong practical experience may substitute for lack of some academic credentials.&lt;br&gt;Experience in  ensuring security compliance.&lt;br&gt;Able to review security vulnerabilities and assess the real impact within the Bank?s environment.&lt;br&gt;CISSP certified or willing to obtain certification.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-8140362482224060107?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/8140362482224060107'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/8140362482224060107'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/09/server-security-administrator.html' title='Server Security Administrator , Washington DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-4887490872887216561</id><published>2008-08-03T14:10:00.002-04:00</published><updated>2008-08-06T13:47:38.189-04:00</updated><title type='text'>ISSO, Arlington VA</title><content type='html'>&lt;table style="padding-right: 5px; padding-bottom: 3px;" border="0" cellpadding="0" cellspacing="0" width="100%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;th class="sr_hdb"&gt;&lt;b&gt;&lt;i&gt;Job Description&lt;/i&gt;&lt;/b&gt;&lt;/th&gt;     &lt;/tr&gt;     &lt;tr&gt;&lt;td&gt;Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. Must be clearable to the Top Secret level.&lt;br /&gt;&lt;br /&gt;The ISSO is the principal point of contact for information assurance activities at the IT system level. The ISSO is responsible for ensuring that management; operational and technical controls for securing either National Security Systems or SBU level IT Systems are in place and are followed. This includes ensuring that appropriate steps are taken to implement information security requirements for IT systems throughout their life cycle, from the requirements definition phase through disposal.&lt;br /&gt;&lt;br /&gt;1. Must develop and implement documentation outlining system operating  environment, to include the overall mission, floor layout, hardware configuration, software, type of information processed, user organizations and security clearances, operating mode, interconnections to other systems/networks of users, their security personnel, and associated responsibilities;&lt;br /&gt;2. Must understand software development lifecycle fundamentals and provide appropriate information security guidance to system owners of major applications and development environments&lt;br /&gt;3. Must be familiar with development applications and development environments and understand risks and vulnerabilities as it relates to information security&lt;br /&gt;4. Assist in the development of the overall system security document, the Information System Security Plan, which contains all necessary security procedures, instructions, operating plans, and guidance;&lt;br /&gt;5. Participate in the development or revision of System-specific security safeguards and local operating procedures that are based on  the above regulations;&lt;br /&gt;6. Provide IT security consulting to system owners as to the other security documents, for example, security incident reports, equipment/software inventories, operating instructions, technical vulnerability reports, and contingency plans; and&lt;br /&gt;7. Provide expertise in classified and unclassified ratings to customers.&lt;br /&gt;8. Work closely with Certifiers to navigate the TSA Certification &amp;amp; Accreditation process and produce all appropriate accreditation documentation.&lt;br /&gt;&lt;br /&gt;&lt;/td&gt;     &lt;/tr&gt;     &lt;tr&gt;      &lt;th class="sr_hdb"&gt;&lt;b&gt;&lt;i&gt;Required Skills&lt;/i&gt;&lt;/b&gt;&lt;/th&gt;     &lt;/tr&gt;     &lt;tr&gt;      &lt;td&gt;Requirements:&lt;br /&gt;Must possess 5 years of related security experience. Bachelor's Degree preferred. Must possess experience with FIPS 199 and NIST standards. It is preferred that this person be a current Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or possess a similar security professional  certification. Strong relevant experience and education can substitute for these certifications.&lt;br /&gt;&lt;br /&gt;Strong communication, interpersonal and client-facing skills required.&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-4887490872887216561?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4887490872887216561'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4887490872887216561'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/08/isso.html' title='ISSO, Arlington VA'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-2339307281023869659</id><published>2008-07-23T16:15:00.002-04:00</published><updated>2008-08-07T02:25:46.759-04:00</updated><title type='text'>C&amp;A Consultant, Washington DC</title><content type='html'>&lt;span style="font-family:Arial;font-size:85%;"&gt;We have a short term opportunity and need a couple of candidates for some C&amp;amp;A work in the DC metro area.&lt;/span&gt; &lt;div dir="ltr"&gt;&lt;span style="font-family:Arial;font-size:85%;"&gt; &lt;/span&gt;&lt;/div&gt; &lt;div dir="ltr"&gt; &lt;ul style="margin-top: 0in;" type="disc"&gt;&lt;span style="font-family:Arial;font-size:85%;"&gt;&lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Recertify and Reaccredit a portion of the Network for the client per FISMA requirements. &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;The IT Security Specialist shall have six years of experience in the Federal and NIST based certification and accreditation process in accordance with NIST 800-37.&lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Must have hands on experience with the following:&lt;/span&gt;&lt;/li&gt;  &lt;/span&gt;&lt;ul style="margin-top: 0in;" type="circle"&gt;&lt;span style="font-family:Arial;font-size:85%;"&gt;&lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Writing system security plan in accordance with NIST 800-18 Rev. 1.&lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Developing Risk Assessment reports in accordance with NIST 800-30. &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Contingency Plan development and testing. &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Vulnerability scanners such as Nessus, WebInspect, AppDetective and/or ISS or Foundstone.&lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Writing ST&amp;amp;E and conducting security test and evaluations for major applications and general support systems  (GSS).&lt;/span&gt;&lt;/li&gt;&lt;/span&gt;&lt;/ul&gt;&lt;span style="font-family:Arial;font-size:85%;"&gt;  &lt;li class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style=";font-family:Arial;font-size:10;"  &gt;Required certifications CISSP or CAP.&lt;/span&gt;&lt;/li&gt;&lt;/span&gt;&lt;/ul&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-2339307281023869659?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/2339307281023869659'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/2339307281023869659'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/07/c-consultant.html' title='C&amp;A Consultant, Washington DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-7826397637780711463</id><published>2008-07-22T06:41:00.002-04:00</published><updated>2008-08-07T02:26:07.536-04:00</updated><title type='text'>ArchSight Admin, Arlington VA</title><content type='html'>&lt;span class="059415315-19072008"&gt;&lt;span style="font-family:Arial;font-size:85%;"&gt;ArchSight Admin to work  from Leesburg, CS bachelors, 5 years experience with Archsight, or 10 years  total experience, Secret clearance.&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-7826397637780711463?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7826397637780711463'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7826397637780711463'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/07/archsight-admin.html' title='ArchSight Admin, Arlington VA'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-7126480030097965028</id><published>2008-07-09T11:33:00.002-04:00</published><updated>2008-07-09T11:36:53.083-04:00</updated><title type='text'>Single Sign-on/CIdM Senior Business Analyst, Washington , DC</title><content type='html'>Description of Duties: &lt;br /&gt;&lt;br /&gt;To support the requirements and project analysis of the Cyber Identity Management in the areas of capability, capacity, performance, use cases, and operations etc.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Activities include:&lt;br /&gt;&lt;br /&gt;1) Collect business and technical requirements from all stakeholders and analyze requirements with architects and engineers to finalize the best approaches and solutions to implement an enterprise-wide Cyber Identity Management system including HSPD-12, PKI, Biometrics, and Single Sign-on services; 2) Ensure the solutions adhere to DHS Enterprise Architecture standards and other applicable DHS standards; 3) Help establish a framework to guide the design of the SSO/CIdM solutions and implementation approaches; 4) Ensure information assurance requirements, procedures, processes, techniques, and technologies are addressed and applied throughout the System Development Life Cycle, Systems Assurance process, IT architecture development  process, Configuration Management, and IT operations processes and procedures; 5) Produce product-specific analysis and testing results documents and use cases; 6) Research, evaluate, acquire, implement, and integrate single sign-on security tools; 7) Understanding the nature of organizational systems and applications to determine the level of protection needed and the level of risk that can be tolerated; 8) Working with Program Offices and Other Components within ICE and DHS to ensure business requirements and processes are fully integrated into the CIdM design and implementation; 9) Conduct cost and ROI analysis to clearly demonstrate risks, benefits, and trade-offs to facilitate decision-making process; 10) Devise configuration management and maintain change control processes;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Qualifications:&lt;br /&gt;&lt;br /&gt;1.       Active DoD Secret clearance or above; preferably current DHS/ICE  clearance&lt;br /&gt;&lt;br /&gt;2.       Over 10 years of experience in IT with at least 7 years specifically in the analyst role for project and/or business operations&lt;br /&gt;&lt;br /&gt;3.       Excellent understanding of project lifecycle management especially in the requirement collection, analysis, and maintenance areas&lt;br /&gt;&lt;br /&gt;4.       Excellent analytical skills with good understanding in project financial and return on investment analysis&lt;br /&gt;&lt;br /&gt;5.       Excellent writing, oral communication, and people skills&lt;br /&gt;&lt;br /&gt;6.       Excellent in mapping organization's missions, goals, and policies into strategies, plans, and tangible deliverables&lt;br /&gt;&lt;br /&gt;7.       Sensitive to organizational culture issues and is able to work through and out of the difference and produce results&lt;br /&gt;&lt;br /&gt;8.        Good understanding of the requirements of HSPD-12&lt;br /&gt;&lt;br /&gt;9.       General understanding of Cyber Identity Management based on Public Key Infrastructure (PKI) with its concept, lifecycle, applications, and operations&lt;br /&gt;&lt;br /&gt;10.   General understanding of the concept and technologies of Single Sign-on&lt;br /&gt;&lt;br /&gt;11.   Good understanding of federal Enterprise Architecture reference model&lt;br /&gt;&lt;br /&gt;12.   An independent thinker and self-motivated worker yet work well in a team-oriented environment&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Clearances/Certifications necessary:  US Citizen, Clearable for DHS Public Trust Clearance&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Location: 1120 Vermont Avenue, Washington , DC 20005&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-7126480030097965028?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7126480030097965028'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7126480030097965028'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/07/single-sign-oncidm-senior-business.html' title='Single Sign-on/CIdM Senior Business Analyst, Washington , DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-2946763107780154824</id><published>2008-07-09T11:31:00.003-04:00</published><updated>2008-07-09T11:37:43.595-04:00</updated><title type='text'>Single Sign-on/CIdM Information Systems Security Officer, Washington , DC</title><content type='html'>Description of Duties:&lt;br /&gt;&lt;br /&gt;To develop, implement, and maintain a Certification and Accreditation (C&amp;amp;A) program to support Cyber Identity Management (CIdM) systems and services.&lt;br /&gt;&lt;br /&gt;Activities include:&lt;br /&gt;&lt;br /&gt;1) Managing and mitigating risks associated with CIdM information systems; 2) Providing guidance and technical direction in support of risk management, certification and accreditation (C&amp;amp;A), FISMA, and various oversight audits;  3) Facilitating interactions with the appropriate DAA, ISSO, and other relevant parties, the risk management activities for CIdM Systems; 4) Preparing acceptable C&amp;amp;A documentation: System Security Plans (SSP), Risk Assessments, Security Operating Procedures or Guides, Security Test and Evaluations (ST&amp;amp;E) Test Plans (Pre-Operational and Operational), ST&amp;amp;E Test Plan Results Reports, Contingency Plans (CP), CP Test Plans and Results, Inter-Agency Security Agreements (ISA) and Rules of Behavior; 5) Preparing and  submit Security Evaluation Reports (SERs) for Certification Official review and approval and submission to the appropriate DAA for the accreditation decision; 6) Provide expert Information Assurance (IA) input throughout the Systems Lifecycle Management (SLM)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Qualifications:&lt;br /&gt;&lt;br /&gt;Required:&lt;br /&gt;&lt;br /&gt;1.       Active DoD Secret clearance or above; preferably current DHS/ICE clearance&lt;br /&gt;&lt;br /&gt;2.       Over 10 years of experience in IT with at least 5 years specifically in the Information Security area &lt;br /&gt;&lt;br /&gt;3.       Excellent understanding of the requirements, methodologies, documentation, and coordination of completing FISMA compliance by following NIST publications&lt;br /&gt;&lt;br /&gt;4.       Excellent understanding of how to integrate information security requirements into the System Development Lifecycle (SDLC) preferably  by  following NIST 800-64&lt;br /&gt;&lt;br /&gt;5.       Excellent writing and oral communication skills&lt;br /&gt;&lt;br /&gt;6.       Good understanding of Cyber Identity Management based on Public Key Infrastructure (PKI) with its concept, lifecycle, applications, and operations&lt;br /&gt;&lt;br /&gt;7.       Good understanding of the requirements of HSPD-12&lt;br /&gt;&lt;br /&gt;8.       General understanding of the concept and technologies of Single Sign-on&lt;br /&gt;&lt;br /&gt;9.       An independent thinker and self-motivated worker yet work well in a team-oriented environment&lt;br /&gt;&lt;br /&gt;Desired:&lt;br /&gt;&lt;br /&gt;1.       CISSP certification desirable but not required.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Clearances/Certifications necessary:  US Citizen, Clearable for DHS Public Trust Clearance&lt;br /&gt;&lt;br /&gt;Location: 1120 Vermont Avenue, Washington , DC 20005&lt;br /&gt;&lt;br /&gt;Team Size:   25 Team members&lt;br /&gt;&lt;br /&gt;Start Date:  ASAP&lt;br /&gt;&lt;br /&gt;Duration: 6 months to permanent&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-2946763107780154824?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/2946763107780154824'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/2946763107780154824'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/07/single-sign-oncidm-information-systems.html' title='Single Sign-on/CIdM Information Systems Security Officer, Washington , DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-6750172793168640814</id><published>2008-07-09T11:29:00.003-04:00</published><updated>2008-07-09T11:37:33.961-04:00</updated><title type='text'>Sr. Security Risk Analyst (x2), Washington , DC</title><content type='html'>JOB DESCRIPTION:&lt;br /&gt;&lt;br /&gt;Scope: Responsible for verifying the integrity of compliance and oversight program duties, including risk management, certification and accreditation, vulnerability and threat analysis, FISMA compliance, and other security activities for a large scale Federal organization. Responsible for conducting evaluation and analysis of artifacts and conducting automated tests. Responsible for developing test scripts and implementing them for automated systems and general support systems. Ensures compliance with government and company security policies and procedures. Reviews and investigates non-compliance issues. Responsible for designing, developing or recommending integrated security system solutions that will ensure proprietary/confidential data and systems are protected. Coordinates the activities of a section or department with responsibility for results in terms of costs, methods used, and employees. Provides  technical engineering services for the support of integrated security systems and solutions. Participates with the client in the strategic design process to translate security and business requirements into technical designs. Configures and validates secure systems and tests security products and systems to detect security weakness. Works on problems of diverse scope. May be responsible for the technical direction, leadership, and training of less experienced staff. Ensures project schedules and performance requirements are met. Contributes to the development of organization's goals and objectives. Regularly interacts with customer and/or functional per group managers. May interact with senior management. Interactions normally involve matters between functional areas, other company divisions or units, or customers and the company.&lt;br /&gt;&lt;br /&gt;REQUIRED EDUCATION/SKILLS:&lt;br /&gt;&lt;br /&gt;BS degree in Computer Science or related field plus 8+ years related work experience. Superior writing  and analytical skills. Knowledge of Federal Government security management, operational, and technical requirements. U.S. Citizenship required and the ability to obtain and U.S. Public Trust Suitability and Top Secret Clearance.&lt;br /&gt;&lt;br /&gt;DESIRED SKILLS:&lt;br /&gt;&lt;br /&gt;Master's Degree, CISSP or equivalent certification.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Clearances/Certifications necessary:  US Citizen, Clearable for DHS Public Trust Clearance&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Location: 1120 Vermont Avenue, Washington , DC 20005&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Start Date:  ASAP&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-6750172793168640814?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/6750172793168640814'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/6750172793168640814'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/07/sr-security-risk-analyst-x2.html' title='Sr. Security Risk Analyst (x2), Washington , DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-5952809697711168564</id><published>2008-07-09T11:28:00.002-04:00</published><updated>2008-07-09T11:35:46.493-04:00</updated><title type='text'>Sr. Security Policy Analyst</title><content type='html'>POSITION OVERVIEW:&lt;br /&gt;&lt;br /&gt;Provide guidance and technical direction in support of the development and promulgation of IT Security policy and guidance and ICE Supplemental Guidance for SBU and NSS systems. Perform extensive review of IT security policy and system compliance with security certification and accreditation (C) requirements and NIST 800-53A Controls established by the DHS Chief Information Security Officer and higher authority. Evaluate new and proposed IT Security policy changes and ensure discussion among interested parties. Participate in ICE, DHS and other government working groups as appropriate and communicate all policy concerns to OCIO and IAD. Develop and maintain an extensive list of ICE waivers and exceptions as appropriate.&lt;br /&gt;&lt;br /&gt;REQUIRED EDUCATION:&lt;br /&gt;&lt;br /&gt;Bachelors degree or 6 years experience in lieu of degree and 8+ years related work experience.&lt;br /&gt;&lt;br /&gt;REQUIRED EXPERIENCE:&lt;br /&gt;&lt;br /&gt;Must have superior writing skills and excellent MS Project and Excel  skills. Outstanding verbal communication skills are required and experience interviewing mid to senior level federal employees regarding detailed aspects of major IT program elements. Experience briefing senior personnel on a wide range of IT security policy issues and technologies. Demonstrated motivation to learn new skills and improve on existing ones while supporting a highly visible program within a major federal agency. Familiarity with established IT security principles and government documents and programs such as the Federal Information Security Management Act (FISMA), DITSCAP, NIACAP, DIACAP, and NIST accreditation requirements and guidelines. U.S. Citizenship is a must and the ability to obtain a U.S. Public Trust Suitability.&lt;br /&gt;&lt;br /&gt;DESIRED SKILLS:&lt;br /&gt;&lt;br /&gt;Experience working on DHS or other government contracts; active secret clearance is a plus.&lt;br /&gt;&lt;br /&gt;Clearances/Certifications necessary:  US Citizen, Clearable for DHS Public Trust  Clearance&lt;br /&gt;&lt;br /&gt;Location: 1120 Vermont Avenue, Washington , DC 20005&lt;br /&gt;&lt;br /&gt;Team Size:   25 Team members&lt;br /&gt;&lt;br /&gt;Start Date:  ASAP&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-5952809697711168564?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/5952809697711168564'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/5952809697711168564'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/07/sr-security-policy-analyst.html' title='Sr. Security Policy Analyst'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-1836448953355392216</id><published>2008-05-30T18:01:00.004-04:00</published><updated>2008-05-30T18:05:28.143-04:00</updated><title type='text'>IDS Engineer (DC Gov)</title><content type='html'>&lt;span style="font-weight: bold;"&gt;JOB REQUIREMENTS&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;· Advanced Functional knowledge of network based and host based intrusion detection systems&lt;br /&gt;· Advanced knowledge of NFR (Checkpoint), ISS Site Protector, Juniper, Snort and COTS Intrusion Detection Systems&lt;br /&gt;· Knowledge of various protocols (HTTP, TCP/IP, UDP, FTP, ICMP, ARP, RIP, SMTP, BGP)&lt;br /&gt;· Knowledge of tools and methods used by hacker/cracker community to comprise target systems&lt;br /&gt;· Functional knowledge of best of breed Intrusion Detection and Prevention system technology&lt;br /&gt;· Knowledge of Network Operations/ OSI model and TCP/IP stack&lt;br /&gt;· Experience with Firewall technology/ Virtual Private Networking/ Routing and Switching&lt;br /&gt;· Knowledge of UNIX/LINUX Operating System environment.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight: bold;"&gt;Minimum Requirement&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;- Bachelors degree in Computer Science or related field&lt;br /&gt;- 5+ years of work experience in the IT Security industry.&lt;br /&gt;- CCNP, CCIE, CEH, CISSP preferred.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-1836448953355392216?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1836448953355392216'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1836448953355392216'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/05/ids-engineer.html' title='IDS Engineer (DC Gov)'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-3902279799906612938</id><published>2008-05-14T18:28:00.001-04:00</published><updated>2008-05-14T18:28:33.849-04:00</updated><title type='text'>Jr. Information Assurance Engineer</title><content type='html'>  &lt;div class="MsoNormal"&gt;&lt;span class="text"&gt;&lt;span style="font-size: 10pt;"&gt;This position is located at the Joint Interoperability Test Command in Indian Head, MD, approximately 30 minutes south of the Pentagon. Conducts Security Certification and Accreditation in accordance with DHS Certification and Accreditation Guidance. Duties may include the writing of Systems Security Plans, and the other C&amp;amp; A documentation for this large, complex system that is central to FEMA IPAWS. Conducts attack and penetration testing against internal and external targets, site surveys, interviews, reviews documentation, identifies current area of risk, and defines parameters of security testing effort. Facilitates input from customer and end users to identify functional and technical security and privacy requirements. Reports progress and issues to C&amp;amp;A team lead.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;KNOWLEDGE DESIRED&lt;/span&gt;&lt;br&gt; &lt;br&gt; W&lt;span  class="text"&gt;eb Site security/Firewalls&lt;/span&gt;&lt;br style=""&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;        &lt;div class="MsoNormal"&gt;&lt;span class="text"&gt;&lt;span style="font-size: 10pt;"&gt;UNIX/LINUX and NT Administration&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br style=""&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style=""&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span class="text"&gt;&lt;span style="font-size: 10pt;"&gt;LAN/WAN Technologies&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br style=""&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style=""&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span class="text"&gt;&lt;span style="font-size: 10pt;"&gt;Intrusion detection/monitoring tools&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;&lt;span style="text-transform: uppercase;"&gt;Additional areas of experience desired are&lt;/span&gt;:&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Experience with DOD/DHS Certification Guidance (DOD 8500/DHS 4300)&lt;/span&gt;&lt;br style=""&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style=""&gt;  &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;span class="text"&gt;&lt;span style="font-size: 10pt;"&gt;Extensive knowledge of internet use and operations&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br&gt; &lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;ABILITIES&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;The candidate must be proficient in the use of a PC, Microsoft PowerPoint, Excel, Word, Visio, and Project Management.&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Ability to review technical documentation to verify compliance with security requirements and security standards and guidelines&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Ability to document and communicate the status of progress against plans, taking corrective action as necessary&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Ability to identify, clarify, and resolve system development and maintenance activity issues and risks&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Express ideas clearly and effectively both verbally and in writing; adjusts style of communication to suit different  audiences&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Ability to understand the business impact of security issues and communicate these to senior management&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;ADDITIONAL REQUIREMENTS&lt;/span&gt;&lt;br style=""&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br style=""&gt; &lt;!--[endif]--&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/div&gt;    &lt;div class="MsoNormal"&gt;&lt;span class="text"&gt;&lt;span style="font-size: 10pt;"&gt;The candidate must be able to attend technically oriented meetings, derive requirements that are a result of such meetings, and develop comprehensive reports, with minimal supervision.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 10pt;"&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;The candidate must be able to attend meetings in &lt;st1:place w:st="on"&gt;&lt;st1:City w:st="on"&gt;Washington&lt;/st1:City&gt;, &lt;st1:State w:st="on"&gt;DC&lt;/st1:State&gt;&lt;/st1:place&gt; and surrounding areas and travel to any area of the CONUS for up to two weeks at any one time.&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;The candidate must present themselves in a  professional manner, possess interpersonal people skills, oral and written communications skills and dress in accordance with professional standards.&lt;/span&gt;&lt;br style=""&gt; &lt;!--[if !supportLineBreakNewLine]--&gt;&lt;br&gt;&lt;br&gt; &lt;span class="text"&gt;NICE TO HAVE&lt;/span&gt;&lt;br&gt; &lt;br&gt; &lt;span class="text"&gt;Knowledge of DHS systems, infrastructure and organization. Previous experience of DHS C&amp;amp;A-related tools. (RMS and TAF).&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-3902279799906612938?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3902279799906612938'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3902279799906612938'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/05/jr-information-assurance-engineer.html' title='Jr. Information Assurance Engineer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-3561776014715949322</id><published>2008-04-17T11:49:00.001-04:00</published><updated>2008-04-17T11:49:44.117-04:00</updated><title type='text'>Information Assurance Risk Assessment Professional</title><content type='html'>&lt;font face="Arial" size="2"&gt;The candidate will be responsible to lead technical risk assessment efforts working with application and infrastructure subject matter experts from cross-functional teams such as business, database administrators, Unix and Windows system administrators, network engineers and application engineers. &lt;/font&gt;&lt;font face="Arial" size="2"&gt;Technical Risk assessment is a process for identifying and mitigating technical risks with Application Service Provider (Vendors), that&amp;nbsp;&lt;span&gt;the client&lt;/span&gt;&amp;nbsp;plans to partner with. &lt;/font&gt; &lt;div&gt;&lt;font face="Arial"&gt;&lt;font size="2"&gt;&lt;strong&gt;Responsibilities:&lt;/strong&gt; &lt;br&gt;Communication with business units, other stakeholders &lt;br&gt;Project management, co-ordination and documentation &lt;br&gt;Architecture analysis and identification of risks &lt;br&gt;Technical negotiations with external vendors &lt;br&gt;Documenting the risks, and help business stakeholders define contractual terms &lt;br&gt;&lt;/font&gt;&lt;/font&gt;&lt;/div&gt; &lt;div&gt;&lt;font  face="Arial"&gt;&lt;font size="2"&gt;&lt;strong&gt;Required skills:&lt;/strong&gt; &lt;/font&gt;&lt;/font&gt;&lt;/div&gt; &lt;div&gt;&lt;font face="Arial" size="2"&gt;At least 6 years experience in full life cycle of technology development, at least 3 years should be in lead role. Broad Knowledge of various technologies such as Application Servers, Databases, Unix and Networks, etc . Understanding of information security best practices and standards. Demonstrated ability to manage multiple projects. Excellent communications skills and ability to communicate effectively with technical and business teams. &lt;br&gt;&lt;br&gt;Desired skills: PMP, CISSP certifications are considered a plus. &lt;/font&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-3561776014715949322?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3561776014715949322'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3561776014715949322'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/04/information-assurance-risk-assessment.html' title='Information Assurance Risk Assessment Professional'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-4868253995612728952</id><published>2008-04-17T11:47:00.001-04:00</published><updated>2008-04-17T11:47:32.005-04:00</updated><title type='text'>Information Assurance Policy / Procedure Writer/Analyst/Engineer</title><content type='html'>&lt;table style="width: 92%;" border="0" cellpadding="0" cellspacing="0" width="92%"&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td style="padding: 2.25pt;" valign="top"&gt;&lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Daily Responsibilities&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt; &lt;td style="padding: 2.25pt; width: 80%;" width="80%"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;* Able to create policy based on federal requirements.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;* Able to communicate with the customer to develop procedures to comply with existing policy, incorporating currently performed practices.&lt;/span&gt;&lt;/span&gt;&lt;span style="font-size: 9.5pt;"&gt;&lt;br&gt;&lt;span&gt;* Able to augment existing procedures as necessary to meet new policies.&lt;/span&gt;&lt;br&gt;&lt;span&gt;* Able to review, edit, quality check work of team members&lt;/span&gt;&lt;br&gt;&lt;span&gt;* At least 3 years IA experience&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt; &lt;td style="padding: 2.25pt;" valign="top"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Required: Years of  experience (min)&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt; &lt;td style="padding: 2.25pt; width: 80%;" width="80%"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;4-5&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt; &lt;td style="padding: 2.25pt;" valign="top"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Required: Degree&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt; &lt;td style="padding: 2.25pt; width: 80%;" width="80%"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Bachelors&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt; &lt;td style="padding: 2.25pt;" valign="top"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Required: Knowledge&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt; &lt;td style="padding: 2.25pt; width: 80%;" width="80%"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Familiarization with FISMA, NIST, and OMB Information Assurance requirements.&amp;nbsp; (Specifically NIST SP800-53)&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt; &lt;tr&gt; &lt;td style="padding: 2.25pt;" valign="top"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;Desired: Skills /  Knowledge / Certifications&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt; &lt;td style="padding: 2.25pt; width: 80%;" width="80%"&gt; &lt;div&gt;&lt;span&gt;&lt;span style="font-size: 9.5pt;"&gt;NIST SP800-53, HSPD-12, SmartCard implementation, Wireless LAN implementation.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-4868253995612728952?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4868253995612728952'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4868253995612728952'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/04/information-assurance-policy-procedure.html' title='Information Assurance Policy / Procedure Writer/Analyst/Engineer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-742429794174989397</id><published>2008-03-20T15:36:00.000-04:00</published><updated>2008-03-20T15:37:01.226-04:00</updated><title type='text'>Security Analyst</title><content type='html'>&lt;span class="704553414-20032008"&gt;&lt;font face="Arial" size="2"&gt;&lt;font size="2"&gt;&lt;br&gt;We have a requirement for one security analyst starting in April  2008 through at least&amp;nbsp; September 2008.&lt;span class="704553414-20032008"&gt;&lt;/span&gt;. The  individual must have a good understanding of the Information Security Body of  Knowledge, with FISMA and NIST security standards, CObIT Controls Framework,  Sarbanes-Oxley Technical Standards, and hands-on experience performing  certification reviews based on NIST security control requirements (Special  Publication 800-53) and Information Security audits based on SOX 404. The  individuals will be assigned to work with existing security staff to assist with  the evaluation of internal controls and will assist with the redesign of  controls that need to be strengthened to satisfy SOX 404 certification  requirements. Individual must have work experience with both FISMA and SOX. &lt;br&gt;&lt;br&gt;Both  CISSP and CISA certification are  required.&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-742429794174989397?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/742429794174989397'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/742429794174989397'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/03/security-analyst.html' title='Security Analyst'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-306142038368707702</id><published>2008-03-20T08:32:00.001-04:00</published><updated>2008-03-20T08:32:29.574-04:00</updated><title type='text'>Certification &amp; Accreditation Professional/Information Security Leader - Washington DC </title><content type='html'>&lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;&lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Location: Washington/DC&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;    &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Travel: &lt;st1:place w:st="on"&gt;&lt;st1:State w:st="on"&gt;New   Mexico&lt;/st1:State&gt;&lt;/st1:place&gt; 30-50%( All covered)&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;&lt;/div&gt;  &lt;div class="MsoNormal"&gt;&lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Clearable &lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Develop and execute a Certification &amp;amp;      Accreditation program within a major Government Agency. Must possess      experience with NIST or DITSCAP standards. Requires 5 years of related       security experience with a BS degree. If candidate does not possess a      degree then he/she must possess 9 years of experience. It is preferred      that this person be a current Certified Information Systems Security      Professional (CISSP), Certified Information Security Manager (CISM), or      similar security professional certification. &lt;br&gt;      &lt;br&gt;      &lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman"&gt;Principal Duties and      Responsibilities&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;: &lt;br&gt;      &lt;br&gt;      **Develop, update, and maintain appropriate Certification &amp;amp;      Accreditation packages based on NIST standards for general support systems      and major applications &lt;br&gt;      **Recommend appropriate FIPS 199 impact level designations and identify      appropriate security controls based on characterization of the general      support system or major application &lt;br&gt;      **Develop and maintain POA&amp;amp;M for all accepted risks upon completion of      system &lt;b  style="-moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;C&amp;amp;A&lt;/span&gt;&lt;/b&gt;. &lt;br&gt;      **Assist the government with developing a network of public and private      sector organizations capable of providing cost effective, quality, system      and network security assessment and certification based on unified federal      guidelines and procedures &lt;br&gt;      **Integrate with a team of skilled information technology security      professionals demonstrating competence in the application of the system      certification guidelines and procedures&amp;nbsp; &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Able to provide support and guidance to      ISSO/SO's through the POA&amp;amp;M remediation process, Certification      &amp;amp; Accreditation (&lt;b style="-moz-background-clip:  -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;C&amp;amp;A&lt;/span&gt;&lt;/b&gt;) progress,      including compliance monitoring of &lt;b style="-moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;C&amp;amp;A&lt;/span&gt;&lt;/b&gt; artifacts, annual      self-assessments (NIST 800-53), vulnerability scans. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Able to assist with many other ISSO      responsibilities including documentation, policy compliance, and CM review,      as well as user training. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Working knowledge of the Trusted Agent &lt;b  style="-moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;FISMA&lt;/span&gt;&lt;/b&gt; Tool (TAFT) and the Risk      Management System (RMS).&amp;nbsp; &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Awareness of current information security issues      and the ability to interpret the requirements of relevant policies and      standards set forth in NIST documentation, specifically, 800-37, 800-53,      FIPS-199/200, and 800-30. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Working knowledge of Microsoft Office Suite (to      include Excel, Word, and Powerpoint).&amp;nbsp; &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size:  12pt;"&gt;Ability to work effectively in a team management      environment and participate in collaborative initiatives which foster the      mutual exchange of knowledge and expertise. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Assist in ongoing training efforts for TAFT, RMS,      &lt;b style="-moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;FISMA&lt;/span&gt;&lt;/b&gt; and related IT Security mandates      which may include developing and presenting briefings given to an audience      of other IT professionals. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Participates in the development and maintenance      of reports which serve to monitor and track multiple &lt;b  style="-moz-background-clip: -moz-initial; -moz-background-origin: -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;FISMA&lt;/span&gt;&lt;/b&gt; related metrics. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Ability to communicate effectively orally and in      writing to build and maintain customer satisfaction and express      conclusions in a clear, technically sound manner on matters associated      with information technology security. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Identifies security risks, threats and      vulnerabilities of networks, systems, applications and new technology      initiatives. Develops, tests and operates firewalls, intrusion detection      systems, enterprise anti-virus systems and software deployment  tools. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;div style="margin: 0in 0in 0.0001pt;"&gt;&lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;General Skills:&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Provides complex engineering analysis and support      for firewalls, routers, networks and operating systems. Performs and evaluates      vulnerability scans within a multi-platform, large enterprise environment.      Reacts to and initiates corrective action regarding security violations,      attempts to gain unauthorized access, virus infections that may affect the      network or other event affecting security. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Oversees user access process to ensure      operational integrity of the system. Enforces the  information security      configuration and maintains system for issuing, protecting, changing and      revoking passwords. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Develops technical and programmatic assessments,      evaluates engineering and integration initiatives and provides technical      support to assess security policies, standards and guidelines. Develops,      implements, enforces and communicates security policies and/or plans for      data, software applications, hardware and telecommunications. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Performs complex product evaluations, recommends      and implements products/services for network security. Validates and tests      complex security architecture and design solutions to produce detailed      engineering specifications with recommended  vendor technologies. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Reviews, recommends and oversees the      installation, modification or replacement of hardware or software      components and any configuration change(s) that affects security. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Provides complex technical oversight and      enforcement of security directives, orders, standards, plans and      procedures at server sites. Ensures system support personnel      receive/maintain security awareness and training. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Assesses the impact on the business unit/customer      caused by theft, destruction, alteration or denial of access to      information and reports to senior  management. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Provides leadership and work guidance to less      experienced personnel. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Applicants selected will be subject to a      government security investigation and must meet eligibility requirements      for access to classified information. Must be clearable to the Top Secret      level. &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;div style="margin: 0in 0in 0.0001pt;"&gt;&lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Other&amp;nbsp;Skills/Qualifications (preferred/pluses):&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Possess security certifications (CISSP, CCNA,      etc)  and/or top secret security clearance &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Good communication skills &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Strong analytical and problem solving skills to      troubleshoot and resolve network/operating system security issues &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Ability to perform and interpret vulnerability      assessments &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Ability to administer the operations of a      security infrastructure &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Ability to balance  and prioritize work &lt;br&gt;      &lt;br&gt;      &lt;b&gt;&lt;span style="font-weight: bold;"&gt;Qualifications&lt;/span&gt;&lt;/b&gt;&lt;br&gt;      &lt;br&gt;      &lt;strong&gt;&lt;b&gt;&lt;font face="Times New Roman"&gt;Basic Qualifications &lt;/font&gt;&lt;/b&gt;&lt;/strong&gt;&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;ul type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Bachelor's degree or equivalent combination of      education and experience &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Seven or more years of experience in network,      host, data and/or application security in multiple operating system      environments &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Demonstrate experience working with IP      networking, networking protocols and understanding of security related      technologies including encryption,  IPsec, PKI, VPNs, firewalls, proxy      services, DNS, electronic mail and access-lists &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Demonstrated Experience working with internet,      web, application and network security techniques and&amp;nbsp;working with      relevant operating system security (Windows, Solaris, Linux, etc.) &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Proven experience working with leading firewall,      network scanning and intrusion detection products and authentication      technologies &lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;Demonstrated experience working with federal      regulations related to information security (&lt;b style="-moz-background-clip: -moz-initial; -moz-background-origin:  -moz-initial; -moz-background-inline-policy: -moz-initial; background-attachment: scroll;"&gt;&lt;span style="font-weight: bold;"&gt;FISMA&lt;/span&gt;&lt;/b&gt;, Computer security      Act, etc.) and with&amp;nbsp;NIST Special Publications and C &amp;amp; A process      methodology &lt;br&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-306142038368707702?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/306142038368707702'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/306142038368707702'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/03/certification-accreditation.html' title='Certification &amp; Accreditation Professional/Information Security Leader - Washington DC '/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-7377314417713060834</id><published>2008-03-14T10:08:00.001-04:00</published><updated>2008-03-14T10:08:58.814-04:00</updated><title type='text'>IT Security Privacy Lead</title><content type='html'>&lt;p class="MsoNormal" style="MARGIN: 0in 0in 10pt"&gt;&lt;span style="COLOR: black; mso-themecolor: text1"&gt;&lt;font face="Calibri" size="3"&gt;&amp;nbsp;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt; &lt;p class="MsoNormal" style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;span style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;u&gt;IT Security&amp;nbsp;&lt;b&gt;Privacy Lead&lt;/b&gt;&lt;/u&gt;&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;span style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&amp;nbsp;&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;b&gt;&lt;span style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Skills&lt;/span&gt;&lt;/b&gt;&lt;span style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/p&gt;  &lt;ul style="MARGIN-TOP: 0in" type="square"&gt; &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level1 lfo1; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Senior IT professional with at least 7 years of IT experience with a concentration in IA and/or Privacy &lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level1 lfo1; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Knowledge of the following Privacy-related areas:&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;ul style="MARGIN-TOP: 0in" type="circle"&gt; &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;General framework of federal statutes and regulations: laws, the United States Code, and the Code of Federal Regulations; &lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;NIST security risk assessment framework;&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Privacy provisions of the Privacy Act of 1974, Paperwork Reduction Act of 1995, and E-Government Act of 2002. Knowledge of OMB privacy policy memoranda and guidance issued since 2006; and&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level2 lfo1; tab-stops: list 1.0in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;NIST impact-based categorization scheme for federal systems.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt; &lt;/ul&gt; &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level1 lfo1; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Two years of experience performing analyses of existing information systems and Information technology initiatives to prepare information collection requests, systems of records notices, and privacy impact assessments.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level1 lfo1; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;One year of experience preparing instructional materials (briefings, policies, and procedures) associated with federal privacy management for civilian agencies.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level1 lfo1; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Strong communications skills; working knowledge of M/S Word and Excel; and ability to write and review Privacy-related documentation.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l1 level1 lfo1; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Bachelors Degree&amp;nbsp;preferred.&amp;nbsp; Otherwise&amp;nbsp;related Associates degree and&amp;nbsp;IT Security related&amp;nbsp;professional certifications.&amp;nbsp;&amp;nbsp;&amp;nbsp;.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt; &lt;/ul&gt; &lt;p class="MsoNormal" style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;span style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&amp;nbsp;&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal" style="MARGIN: 0in 0in 0pt; LINE-HEIGHT: normal"&gt;&lt;b&gt;&lt;span style="FONT-SIZE: 10pt; COLOR: black; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Job Requirements&lt;/span&gt;&lt;/b&gt;&lt;span style="FONT-SIZE: 12pt; COLOR: black; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-themecolor: text1; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&lt;/span&gt;&lt;/p&gt;  &lt;ul style="MARGIN-TOP: 0in" type="square"&gt; &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Serve as the OCIO Security Team expert in Privacy.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Assist in the solution of privacy-related issues and the update of the DOL Privacy Program.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Review DOL IT Security Privacy policies and procedures&amp;nbsp;to ensure compliance with federal Privacy requirements, identify gaps,&amp;nbsp;develop strategy and implement appropriate actions&amp;nbsp;to close the gaps.&amp;nbsp;&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Review DOL IT Security Privacy training to ensure the content is appropriate and complies with federal Privacy training requirements, identify gaps, develop strategy and implement appropriate actions to close gaps.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;&amp;nbsp;Review DOL IT system privacy impact assessments (PIA) to ensure they are complete and comply with DOL and Privacy Act guidance.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Support the DOL SSN Reduction Task Force.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Support the DOL PII Working Group to address OMB privacy mandates.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt;  &lt;li class="MsoNormal" style="MARGIN: 0in 0in 0pt; COLOR: black; LINE-HEIGHT: normal; mso-themecolor: text1; mso-list: l0 level1 lfo2; tab-stops: list .5in"&gt;&lt;span style="FONT-SIZE: 10pt; FONT-FAMILY: &amp;#39;Arial&amp;#39;,&amp;#39;sans-serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt;Update DOL privacy-related policies and procedures.&lt;/span&gt;&lt;span style="FONT-SIZE: 12pt; FONT-FAMILY: &amp;#39;Times New Roman&amp;#39;,&amp;#39;serif&amp;#39;; mso-fareast-font-family: &amp;#39;Times New Roman&amp;#39;"&gt; &lt;/span&gt;&lt;/li&gt; &lt;/ul&gt; &lt;p class="MsoNormal" style="MARGIN: 0in 0in 10pt"&gt;&lt;span style="COLOR: black; mso-themecolor: text1"&gt;&lt;font face="Calibri" size="3"&gt;&amp;nbsp;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-7377314417713060834?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7377314417713060834'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7377314417713060834'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/03/it-security-privacy-lead.html' title='IT Security Privacy Lead'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-3134974799274590273</id><published>2008-03-11T16:37:00.001-04:00</published><updated>2008-03-11T16:37:24.503-04:00</updated><title type='text'>Information Assurance Policy Officer</title><content type='html'>&lt;div class="MsoNormal"&gt;Security Policy Officer will support the OCIO PMO by developing policies and procedures required to effectively and efficiently implement government security regulations to protect government sensitive but unclassified (SBU) information. The Policy will be responsible for the interpretation of government information security policies and auditing compliance of the protection of SBU.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;Serve as the primary point of contact to a customer on issues related to the Federal Information Security Management Act (FISMA). This task requirement includes advising/consulting with Government personnel to produce all Federal Information Security Management Act (FISMA) reports, as well as to assist in the oversight of the development of an automated solution to expedite and standardize the reporting process. &lt;/div&gt;   &lt;div class="MsoNormal"&gt; &amp;nbsp;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;SKILLS REQUIRED:&lt;/div&gt;&lt;div class="MsoNormal"&gt;CISSP, CAP or  CISM &lt;br&gt;&lt;/div&gt;      &lt;div class="MsoNormal"&gt;Experience managing multiple tasks with competing priorities&lt;/div&gt;   &lt;div class="MsoNormal"&gt;Using MS Project and MS Office Suite&lt;/div&gt;   &lt;div class="MsoNormal"&gt;Education:&amp;nbsp; BSc  Information Systems Management&lt;/div&gt;   &lt;div class="MsoNormal"&gt;Years of Experience:&amp;nbsp; minimum 5&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-3134974799274590273?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3134974799274590273'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/3134974799274590273'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/03/information-assurance-policy-officer.html' title='Information Assurance Policy Officer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-7920310097415946686</id><published>2008-03-05T11:34:00.001-05:00</published><updated>2008-03-05T11:34:56.331-05:00</updated><title type='text'>Overseas Job Opportunity</title><content type='html'>&lt;div class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Intrudetect has immediate openings for candidates with:&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;  &lt;ol style="margin-top: 0in;" type="1"&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Secret Clearance&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;An active passport&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Experience working with Microsoft SharePoint and/or .NET, general experience level is junior to mid level&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family:  Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Experience working overseas is preferred (but not required)&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ol&gt; &lt;div class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&amp;nbsp;&lt;/div&gt; &lt;div class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;We currently have two positions that need to be immediately filled with another 5 to 10 positions to be filled later in March/April.&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/div&gt; &lt;div class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;br&gt;&lt;/div&gt; &lt;div class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Position profile:&lt;/span&gt;&lt;/font&gt;&lt;/div&gt; &lt;div  class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&amp;nbsp;&lt;/div&gt; &lt;ol style="margin-top: 0in;" type="1"&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Deployment: 9 months at military bases in the United States (primarily Shaw AFB), 3 months at USAF bases in the middle east as one of four teams (details in ppt)&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Compensation bonuses up to 70% if deployed in overseas hostile areas (Iraq, Afghanistan) Compensation bonuses of 15%-45% for deployment in less hazardous areas (Kuwait, UAE, etc.)&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span  style="font-size: 10pt; font-family: Arial;"&gt;Annual compensation ranges from $ 180,000 to $ 220,000&lt;/span&gt;&lt;/font&gt;&lt;font face="Arial"&gt;&lt;span style="font-family: Arial;"&gt; &lt;/span&gt;&lt;/font&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Overseas deployments are on military bases (not in country) and involve no combat activities (patrols, watch, etc.)&lt;/span&gt;&lt;/font&gt; &lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal"&gt;&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;Lodging and accommodations along with a per diem is provided while deployed overseas.&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ol&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-7920310097415946686?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7920310097415946686'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7920310097415946686'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/03/overseas-job-opportunity.html' title='Overseas Job Opportunity'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-4110809026759236710</id><published>2008-03-03T16:40:00.001-05:00</published><updated>2008-03-04T10:56:50.327-05:00</updated><title type='text'>Information Security Risk Analyst</title><content type='html'>Information Security Risk Analyst&lt;br /&gt;Washington,DC&lt;br /&gt;  &lt;br /&gt;Skill Set requirements;&lt;br /&gt;&lt;br /&gt;§         Minimum 8 years experience in a mission-critical production environment required&lt;br /&gt;§         Minimum 8 years experience with proprietary and sensitive data classifications required&lt;br /&gt;§         Demonstrated knowledge and experience of the Bank Group's and Unit's systems and business processes, policies and procedures, as well as relevant software application systems, hardware configuration and Network Architecture to implement Information Security as a process.&lt;br /&gt;§         Ability to conduct standards based (COBiT/SOX) risk assessment of financial applications and processes, design and implements controls, gather auditable evidence needed to meet compliance standards.&lt;br /&gt;§         Ability to develop specific proactive procedures for detection of security breaches, identifying security risks in the software development process and code promotion procedures.&lt;br /&gt;§         Demonstrated conceptual, analytical and innovative problem-solving and evaluative skills, an ability to conduct independent research and analysis in the event of a security breach, identifying issues, formulating options, proactively closing the security loop-holes, and making conclusions and recommendations.&lt;br /&gt;§         Demonstrate good interpersonal skills; including the ability to work effectively in a team/task force as participant or team leader.&lt;br /&gt;§         Capacity to work independently and willingness to seek advice/assistance.&lt;br /&gt;§         Demonstrated knowledge and experience of working on advanced technologies specifically in the areas of Identity and Access Management, PKI, User Provisioning, Role Mining, Vulnerability Assessment and Penetration Testing tools for Oracle.&lt;br /&gt;§         Analyzing security configurations for Microsoft Windows NT, Microsoft Windows 2000, and Cisco IOS, Oracle 9i/10g platform.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-4110809026759236710?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4110809026759236710'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/4110809026759236710'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/03/information-security-risk-analyst.html' title='Information Security Risk Analyst'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-6691143718588529908</id><published>2008-02-29T18:23:00.001-05:00</published><updated>2008-02-29T18:30:57.521-05:00</updated><title type='text'>Certification &amp; Accreditation Lead - DC Metro Area</title><content type='html'>We are looking for a Certification &amp;amp; Accreditation (C&amp;amp;A) Lead.&lt;br /&gt;&lt;br /&gt;This position is located in Crystal City and does require U.S Citizenship. If you are interested in learning more about this opportunity or know of anyone who may be, please feel free to forward this site.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-6691143718588529908?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/6691143718588529908'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/6691143718588529908'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/certification-accreditation-lead-dc.html' title='Certification &amp; Accreditation Lead - DC Metro Area'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-8882915440767649303</id><published>2008-02-13T16:16:00.001-05:00</published><updated>2008-02-13T16:16:56.226-05:00</updated><title type='text'>Security Engineer, Bethesda MD</title><content type='html'>&lt;font face="Times New Roman" size="3"&gt;&lt;span style="font-size: 12pt;"&gt;&lt;/span&gt;&lt;/font&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;&lt;/span&gt;&lt;/font&gt;   &lt;ul style="margin-top: 0in;" type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Responsible      for managing and maintaining IT security safeguards deployed across      diverse network environments.&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Also include the      configuring, installing, tuning and auditing of multiple firewall policies      and IDS/RNA systems to prevent, or detect network intrusions.&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Create and      maintain comprehensive and current documentation on security system      architecture and configuration.&amp;nbsp;  &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;ul style="margin-top: 0in;" type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Investigate,      validate and mitigate if necessary; security alerts that are generated      from various sources.&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Submit weekly      status reports of all activities.&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Working with      various teams on designing, planning, and implementing future security      enhancements, in efforts to continuously enhance the overall security of      the network.&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;div class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal" style=""&gt;&lt;b&gt;&lt;font face="Times New Roman"  size="2"&gt;&lt;span style="font-size: 11pt; font-weight: bold;"&gt;Required Skills&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;ul style="margin-top: 0in;" type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Must possess;      strong written and oral communication skills, strong customer service      qualities and the ability to work in a team environment&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Must be task      oriented and able to work with limited supervision &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Demonstrated      hands on experience with firewalls, IDS, and IPS systems&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman"  size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Must possess      a solid understanding of the IT security concepts and methodologies, and      be able to display solid networking knowledge&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;div class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal" style=""&gt;&lt;b&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt; font-weight: bold;"&gt;Required Experience&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;ul style="margin-top: 0in;" type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Knowledge of      the principals of IT security Architecture and network design&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Experience       with patch management planning, implementation and&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;validation      processes&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Experience      with IT security system analysis, tuning, configuration and auditing&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Experience using      security penetration testing tools, vulnerability scanners or network      packet analyzers.&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Experience      with enterprise anti-virus system planning, implementation and validation      processes &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Knowledge  of      the security certification and accreditation process for federal      information systems - a plus&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Project      management experience - a plus &lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;  &lt;div class="MsoNormal" style=""&gt;&lt;b&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt; font-weight: bold;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal" style=""&gt;&lt;b&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt; font-weight: bold;"&gt;Skills Candidate should possess: &lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;ul style="margin-top: 0in;" type="disc"&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;At least (1)      of the following - CISSP, CISM, CISA, CCNA or an MCSE  Security.&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;ITIL      foundations certification - a plus&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li class="MsoNormal" style=""&gt;&lt;font face="Times New Roman" size="2"&gt;&lt;span style="font-size: 11pt;"&gt;Position      located in Bethesda ,  MD&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-8882915440767649303?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/8882915440767649303'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/8882915440767649303'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/security-engineer-bethesda-md.html' title='Security Engineer, Bethesda MD'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-1479166692624891660</id><published>2008-02-12T16:04:00.001-05:00</published><updated>2008-02-12T16:04:32.222-05:00</updated><title type='text'>NETWORK SECURITY ENGINEER</title><content type='html'>Job Title:&amp;nbsp; Systems Mgmt Specialist Cisco&lt;br&gt;Location:&amp;nbsp;&amp;nbsp;MANASSAS, VA&amp;nbsp;&lt;br&gt;Duration:&amp;nbsp;&amp;nbsp;&amp;nbsp;1 YEAR&lt;br&gt;&lt;br&gt;Job Description:&lt;br&gt;Our client is looking for Systems Management Specialist Cisco Networks &lt;br&gt;&lt;br&gt;(Nokia/Chkpt. PIX), LBs (F5 &amp;amp; Cisco), Rtrs &amp;amp; Switches (Cisco). A professional (working closely w/Customers) &amp;amp; work diligently within a highly structured change mgmt process environ. Working knowledge of Visio, ss (excel), SNA a plus. On site support at either the Manassas, Va loc. or possibly a Phily loc. - individuals willing to work at either loc. should be submitted. This position involves day-to-day OPs support, 24x7 rotating coverage, PD skills &amp;amp; project related work (some travel). Secondary skills requested The secondary/complementary skills below were also requested. Skill name Level requested Systems Management Specialist Manage System Change 2 Significant job experience Systems Management Specialist Perform Problem  Management 2 Significant job experience Systems Management Specialist Manage Performance/Capacity 1 Knowledge/some job experience Systems Management Specialist Perform Availability Management 1 Knowledge/some job experience Systems Management Specialist Develop Systems Operating Procedures 1 Knowledge/some job experience Systems Management Specialist Use Systems Monitor Tools 2 Significant job experience Systems Management Specialist Perform System Performance Tuning 1 Knowledge/some job experience Systems Management Specialist Implement System Mgmt/Monitor Systems 1 Knowledge/some job experience Systems Management Specialist Implement Cisco 2 Significant job experience &lt;br&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-1479166692624891660?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1479166692624891660'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1479166692624891660'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/network-security-engineer.html' title='NETWORK SECURITY ENGINEER'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-8144758295564385110</id><published>2008-02-08T13:01:00.001-05:00</published><updated>2008-02-08T13:01:08.807-05:00</updated><title type='text'>Network Engineer</title><content type='html'>&lt;div class="MsoNormal"&gt;Job Description:&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Specific responsibilities of the Government Security Team include: &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Supporting the 7x24 Security Operations Center (SOC) with security incident handling.&amp;nbsp; (SOC is in a different location.)&amp;nbsp; A real-time log of observed security events is published and available in real-time throughout the federal government organization.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Correlation and analysis of security inputs from multiple sources including but not limited to IDS/IPS consoles, firewall logs, real time packet traces, host logs, for profit intelligence services.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Vulnerability management.&amp;nbsp; Using multiple tools such as the ISS Enterprise Scanner, MetaSploit, Core-Impact, WebInspect and custom developed tools, perform an iterative technique of testing, notifying, escalating and retesting to manage a vulnerability  detection and remediation program for the customer.&amp;nbsp; The vulnerability management program includes custom remediation advice for System Administrators.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Linux and Windows web service and server support, to include building servers and recommending to customers methods to secure web servers.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Management hotspots detailing serious security incidents detected at the National Gateways.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Change management of key security configuration items such as documentation, firewall policy and IDS/IPS signature sets.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Patch management with audit trail support for infrastructure servers installed at that National Gateways.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Publish weekly significant actions and monthly summaries of detected activity and responses.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Implementation of an extensible secure knowledge base that details specific threats,  security controls and procedures. &lt;/div&gt;   &lt;div class="MsoNormal"&gt;Required &amp;amp; Desired Skill Sets:&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-This position is located in Washington, DC near Union Station (accessible by train, light rail &amp;amp; metro). Individual will work on-site with the customer on projects.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-US citizenship is required. &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-There is NO Government security clearance requirement (candidate is subject to Sprint¿s background employment check) &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-The work hours are: arrive between 7am and 9am and work 5 days a week OR work an AWS (Alternate Work Schedule)¿9 hours/day and have every other Friday or Monday off. &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-The Senior Security Engineer candidate must have a minimum of four years in the network security field, within the focused security arena of intrusion detection.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-The Engineer must have hands-on working skills in  the use and administration of security tools to include the 1) Internet Security Systems (ISS) RealSecure product line and/or the Cisco Intrusion Prevention System (IPS) product line, 2) the use of MetaSploit and 3) WebInspect. &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Experience in working with, supporting and troubleshooting Linux and Windows web servers and securing web services is desired.&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Five years of HANDS-ON WORK Experience in network security. &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Other Requirements.&amp;nbsp; Scripting programming experience &lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Education Requirements:&amp;nbsp; No 4-year College Degree required&lt;/div&gt;   &lt;div class="MsoNormal"&gt;-Preferred: CISSP, GIAC or other security certifications.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-8144758295564385110?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/8144758295564385110'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/8144758295564385110'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/network-engineer_08.html' title='Network Engineer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-9033573259579577667</id><published>2008-02-08T10:53:00.001-05:00</published><updated>2008-02-08T10:53:18.517-05:00</updated><title type='text'>Information Assurance Engineer Opportunity - Washington, DC</title><content type='html'>&lt;font face="Arial" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;JOB DESCRIPTION: The Information Assurance Engineer analyzes and defines security requirements for computer systems which include network layer hardware, workstations and servers. Designs, develops, engineers, and implements solutions that meet security requirements. Responsible for integration and implementation of the computer system security solution. Gathers and organizes technical information about an organization's mission goals and needs, existing security products, and ongoing programs in computer security. Performs risk analyses of computer systems and applications during all phases of the system development life cycle. &lt;br&gt; &lt;br&gt; REQUIRED EDUCATION: Bachelor's degree in related field or equivalent and 7+ years of related experience. 13 years of experience to include 7+ in related field will be considered in lieu of 4 year degree. &lt;br&gt; &lt;br&gt; REQUIRED EXPERIENCE: Requires substantial  experience providing information system security support, information system requirements analysis, system design, implementation, and testing. Must demonstrate a complete understanding of and the ability to implement business security practices; current security tools; including Cisco Security Manager &amp;amp; ACS; hardware/software firewalls and their implementation; different communications protocols; encryption techniques/tools and current internet technology. Must demonstrate a complete understanding of Microsoft server operating systems, Active Directory (AD), and Group Policy Objects (GPOs). Must have strong verbal and written communication skills. U.S. Citizenship is required and the ability to obtain a Top Secret Clearance. &lt;br&gt; &lt;br&gt; DESIRE SKILLS: Experience in the design and development of secure systems.&lt;/span&gt;&lt;/font&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-9033573259579577667?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/9033573259579577667'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/9033573259579577667'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/information-assurance-engineer.html' title='Information Assurance Engineer Opportunity - Washington, DC'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-2500024845246641394</id><published>2008-02-07T12:11:00.001-05:00</published><updated>2008-02-07T12:11:29.586-05:00</updated><title type='text'>Network Engineer</title><content type='html'>&lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="navy" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: navy; font-weight: bold;"&gt;Job Description:&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="navy" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: navy; font-weight: bold;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153); font-weight: bold;"&gt;Job Title: Network Engineer III (Senior Security Engineer)&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;      &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153); font-weight: bold;"&gt;Pay Rate:&amp;nbsp; TBD&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color:  rgb(51, 51, 153); font-weight: bold;"&gt;Job Location: One Columbus Circle, NE ,  Washington , DC   20002&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153); font-weight: bold;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153); font-weight: bold;"&gt;Duration:&amp;nbsp; 12/31/2008 or Longer&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Date Req Opened:&amp;nbsp; 02/05/08&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153); font-weight: bold;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);  font-weight: bold;"&gt;Job Description:&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;b&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153); font-weight: bold;"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/b&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;This is a high-level Senior Security Engineer position which requires in-depth hacker incident detection, investigation and prevention across a large government customer network&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;Specific responsibilities of the  Government Security Team include: &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Supporting the 7x24 Security Operations Center (SOC) with security incident handling.&amp;nbsp; (SOC is in a different location.)&amp;nbsp; A real-time log of observed security events is published and available in real-time throughout the federal government organization.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Correlation and analysis of security inputs from multiple sources including but not limited to IDS/IPS consoles, firewall logs, real time packet traces, host logs, for  profit intelligence services.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Vulnerability management.&amp;nbsp; Using multiple tools such as the ISS Enterprise Scanner, MetaSploit, Core-Impact, WebInspect and custom developed tools, perform an iterative technique of testing, notifying, escalating and retesting to manage a vulnerability detection and remediation program for the customer.&amp;nbsp; The vulnerability management program includes custom remediation advice for System Administrators.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;&amp;nbsp;- Linux and Windows web service and server support, to include building servers and recommending to customers methods to secure web servers.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font  color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Management hotspots detailing serious security incidents detected at the National Gateways.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Change management of key security configuration items such as documentation, firewall policy and IDS/IPS signature sets.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Patch management with audit trail support for infrastructure servers installed at that National Gateways.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Publish weekly significant actions  and monthly summaries of detected activity and responses.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Implementation of an extensible secure knowledge base that details specific threats, security controls and procedures. &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt; &amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;Required &amp;amp; Desired Skill Sets:&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- This position is located in Washington ,  DC near Union Station (accessible by train,  light rail &amp;amp; metro). Individual will work on-site with the customer on projects.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;-  US citizenship is required. &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- There is NO Government security clearance requirement (candidate is subject to Sprint's background employment check) &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- The work hours are: arrive between 7am and 9am and work 5 days a week OR work an AWS (Alternate Work Schedule)¿9 hours/day and have every other Friday or Monday off. &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399"  face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- The Senior Security Engineer candidate must have a minimum of four years in the network security field, within the focused security arena of intrusion detection.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- The Engineer must have hands-on working skills in the use and administration of security tools to include the 1) Internet Security Systems (ISS) RealSecure product line and/or the Cisco Intrusion Prevention System (IPS) product line, 2) the use of MetaSploit and 3) WebInspect. &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Experience in working with, supporting and troubleshooting Linux and Windows web servers and  securing web services is desired.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Five years of HANDS-ON WORK Experience in network security. &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Other Requirements.&amp;nbsp; Scripting programming experience &lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Education Requirements:&amp;nbsp; No 4-year   College Degree required&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;   &lt;div class="MsoNormal"&gt;&lt;font color="#333399" face="Verdana" size="2"&gt;&lt;span style="font-size: 10pt; font-family: Verdana; color: rgb(51, 51, 153);"&gt;- Preferred: CISSP, GIAC or other security certifications.&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-2500024845246641394?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/2500024845246641394'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/2500024845246641394'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/network-engineer.html' title='Network Engineer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-1152106616555782061</id><published>2008-02-06T19:28:00.001-05:00</published><updated>2008-02-06T19:28:35.435-05:00</updated><title type='text'>Sr Security Engineer</title><content type='html'>**U.S. Citizenship is REQUIRED  -  No H1B Candidates**&lt;br&gt;&lt;br&gt;DESCRIPTION:&lt;br&gt;&lt;br&gt;This is a high-level Senior Security Engineer position which requires in-depth hacker incident detection, investigation and prevention across a large government customer network.&lt;br&gt;&lt;br&gt;Specific responsibilities of the Government Security Team include: &lt;br&gt;&lt;br&gt;o Supporting the 7x24 Security Operations Center (SOC) with security incident handling. (SOC is in a different location.) A real-time log of observed security events is published and available in real-time throughout the federal government organization.&lt;br&gt;o Correlation and analysis of security inputs from multiple sources including but not limited to IDS/IPS consoles, firewall logs, real time packet traces, host logs, for profit intelligence services.&lt;br&gt;o Vulnerability management. Using multiple tools such as the ISS Enterprise Scanner, MetaSploit, Core-Impact, WebInspect and custom developed tools, perform an iterative technique of  testing, notifying, escalating and retesting to manage a vulnerability detection and remediation program for the customer. The vulnerability management program includes custom remediation advice for System Administrators.&lt;br&gt;o Linux and Windows web service and server support, to include building servers and recommending to customers methods to secure web servers.&lt;br&gt;o             Management hotspots detailing serious security incidents detected at the National Gateways.&lt;br&gt;o Change management of key security configuration items such as documentation, firewall policy and IDS/IPS signature sets.&lt;br&gt;o             Patch management with audit trail support for infrastructure servers installed at that National Gateways.&lt;br&gt;o            Publish weekly significant actions and monthly summaries of detected activity and responses.&lt;br&gt;o Implementation of an extensible secure knowledge base that details specific threats, security controls and procedures. &lt;br&gt;Required &amp;amp; Desired  Skill Sets:&lt;br&gt;o This position is located in Washington, DC near Union Station (accessible by train, light rail &amp;amp; metro). Individual will work on-site with the customer on projects.&lt;br&gt;o There is NO Government security clearance requirement (candidate is subject to Sprint's background employment check) &lt;br&gt;0 The work hours are: arrive between 7am and 9am and work 5 days a week OR work an AWS (Alternate Work Schedule)¿9 hours/day and have every other Friday or Monday off. &lt;br&gt;0 The Senior Security Engineer candidate must have a minimum of four years in the network security field, within the focused security arena of intrusion detection.&lt;br&gt;0            The Engineer must have hands-on working skills in the use and administration of security tools to include the &lt;br&gt;&lt;br&gt;1) Internet Security Systems (ISS) RealSecure product line and/or the Cisco Intrusion Prevention System (IPS) product line, &lt;br&gt;2)    the use of MetaSploit and&lt;br&gt; 3)   WebInspect. &lt;br&gt;&lt;br&gt;o Experience in  working with, supporting and troubleshooting Linux and Windows web servers and securing web services is desired.&lt;br&gt;&lt;br&gt;o            Five years of HANDS-ON WORK Experience in network security. &lt;br&gt;&lt;br&gt;o              Other Requirements.  Scripting programming experience &lt;br&gt;&lt;br&gt;o            Education Requirements:  No 4-year College Degree required&lt;br&gt;&lt;br&gt;o            Preferred: CISSP, GIAC or other security certifications.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-1152106616555782061?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1152106616555782061'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/1152106616555782061'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/sr-security-engineer.html' title='Sr Security Engineer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry><entry><id>tag:blogger.com,1999:blog-4961146288674383918.post-7328838573877974314</id><published>2008-02-06T19:24:00.001-05:00</published><updated>2008-02-06T19:24:43.167-05:00</updated><title type='text'>Security Engineer</title><content type='html'>&lt;div&gt;&lt;font face="Arial" size="4"&gt;&lt;span class="720483421-05022008"&gt;&lt;span class="934535416-18012008"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt;&lt;u&gt;Senior Security  Engineer&lt;/u&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt; &lt;div&gt;&lt;font size="-0"&gt;&lt;span class="720483421-05022008"&gt;&lt;span class="934535416-18012008"&gt;&lt;span style="font-size: 10pt; font-family: Arial;"&gt; &lt;div&gt;&lt;b&gt;&lt;i&gt;Responsibilities&lt;span class="720483421-05022008"&gt;:&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;/div&gt; &lt;div&gt;&lt;b&gt;&lt;i&gt;&lt;span class="720483421-05022008"&gt;&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;Provisioning: This  engineer will work directly with clients to understand their environments and  determine how selected MSS solutions will integrate in to them. Upon acceptance  by the client of the solution, the engineer will be required to provision the  devices that are part of the design. This will require provisioning of firewalls  (primarily Checkpoint, NetScreen (Juniper) and Cisco PIX/ASA)&lt;span class="597121316-06022008"&gt; devices.&lt;/span&gt;&lt;br&gt;&lt;br&gt;Installation support: This   position also requires working with the clients as they install the security  equipment and troubleshoot as necessary to ensure that services are activated in  accordance with the original design. &lt;br&gt;&lt;br&gt;Offering support: Perform Code  upgrades during schedule work windows. Provide 3rd level support for Firewall  and related offerings including Checkpoint Firewall-1, Cisco PIX/ASA, ISS  Proventia-M, Netscreen &amp;amp; SideWinder. Provide technical authority, vision,  documentation of operational procedures, and guidance to ensure the continued  evolution of our Client's Managed FW Offerings. &lt;br&gt;&lt;br&gt;- Provide technical  support for our Client's Managed Security Services on a 7x24x365 basis. This  involves identifying customer issues, extensive troubleshooting, and  coordinating resolution or restoral using a variety of applications and testing  tools. These events can include hardware/software failures as well as security  breaches and threats. &lt;br&gt;- Professionally and  courteously answer inbound calls,  authenticate callers, create tickets, fill out necessary checklist paperwork,  generate CRM tickets for all work and informational requests, handle customer  complaints, and escalate according to established procedures. &lt;br&gt;- Demonstrate  excellent communication and customer care skills by documenting all activities  within our customer delivery systems and communicating with customer  representatives in a timely manner. &lt;br&gt;- Regularly provide high level proactive  technical support including device upgrades, IDS signature revision, VPN  configuration, and hot sparing. &lt;br&gt;- Stay informed of current events in the  security industry including the latest exploits and threats, as well as,  preventative measures, remediation and restoral techniques. &lt;br&gt;- Create new and  update existing shared documentation that includes network diagrams,  instructional guides, customer facing documentation, process and procedures and  troubleshooting tips.  &lt;br&gt;- Responsible for backups and recovery procedures  including disaster recovery testing and configuration. &lt;br&gt;- Lead Technical  projects and be able to delegate as well as work with a team of engineers to  accomplish large scale projects goals such as upgrades, migrations and  establishing new offerings. &lt;br&gt;- Introduce new offerings as a central technical  role through interactions with customers project managers developers and peers.  &lt;br&gt;- Responsible for the maintenance and support of existing offerings back-end  processes such as managing central management consoles upgrades of management  consoles, health monitoring, reporting, patching, establish and maintain  standards, documentation and automation. &lt;br&gt;- Provide training to peers, Junior  engineers, SOC analysts and partners. &lt;br&gt;- Generate Unix and PERL scripts and  tools to automate and accomplish a variety of configuration and update tasks as  well as assist in the functional operation and maintenance of  MSS Engineering  architecture &lt;/div&gt; &lt;div&gt;&lt;b&gt;&lt;i&gt;Qualifications&lt;span class="720483421-05022008"&gt;:&lt;/span&gt;&lt;/i&gt;&lt;/b&gt;&lt;br&gt;-  Bachelors Degree, or equivalent experience &lt;br&gt;- CCSE, CCNP  Certification&amp;nbsp;&lt;span class="597121316-06022008"&gt;(preferred)&lt;/span&gt;&lt;br&gt;- 4-6  years functional experience &lt;br&gt;- Strong background in network security  management and internet firewalls &lt;br&gt;- Excellent written,verbal communication  and organizational skills &lt;br&gt;- Knowledge and experience with PC's, LAN and WAN  topologies, routers, hubs, and terminal servers. &lt;br&gt;- Knowledge of firewall  applications such as Check Point, Netscreen, Sidewinder, ISS Proventia M and  Cisco PIX/ASA or knowledge of intrusion detection such as Snort, Manhunt,  Sourcefire, AirMagnet and Real Secure. &lt;br&gt;- Knowledge of VPN technology. &lt;br&gt;-  Ability to read, edit, create network diagrams &lt;br&gt;- Thorough understanding of  the OSI model &lt;br&gt;- Strong interpersonal and customer service skills &lt;br&gt;-  Knowledge of Unix  Operating Systems &lt;br&gt;- Experience with processes in  functional area (i.e. trouble management, fault management, and provisioning&lt;/div&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4961146288674383918-7328838573877974314?l=intrudetect.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7328838573877974314'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4961146288674383918/posts/default/7328838573877974314'/><link rel='alternate' type='text/html' href='http://intrudetect.blogspot.com/2008/02/security-engineer.html' title='Security Engineer'/><author><name>Sinisa Vlaisavljevic</name><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='27' src='http://3.bp.blogspot.com/_xCSChhAXozw/SZn_Lz5cCII/AAAAAAAAJNs/x07fojoksT4/S220/476003986_624591903a_o.jpg'/></author></entry></feed>
