Beschreibung
Security - Analysis -Design - ISMS - Implementation - Audits - Evaluate - Servers - JBOSS - Weblogic - Apache - AJAX - Networking - SO - ISO - ISO - CISA - CISSP - CISM
Austin Fraser are looking for a Security Analyst (Network and Applications) to be based with a client in Germany (Dusseldorf)
The main job purpose is to perform security analysis of architecture and design for various types of application and networks. Further to purpose is ISMS implementation and audits.
Duties and responsibilities
- Evaluation of projects' security requirements compliance status
- Review design documents
- Conduct interview sessions
- Risk identification, assessment and evaluation
- Identify security risks in project design
- Determine business impacts and risk likelihood
- Evaluate risk responses and mitigation measures
- Administer the corresponding risk Matrix
- Negotiate a risk management plan and prepare sign-off
- Evaluate deployed security controls
- Review low level documents with security impact (process documentation, low level designs, communication matrices, operations handbooks)
- Coordinate security testing (planning, test criteria, scope)
- Evaluate test results
- Manage risks for transition in to production
- Agree on review plan
- ISMS
- Design and implement Information Security Management Systems
- Performing gap analysis
- Auditing of ISMS design and implementation
Qualifications/Key Skills
- Application security and/or risk management activities
- Web security technology and principles
- Experience in evaluating the security posture of enterprise systems
- Application Servers, Middleware eg JBOSS, Weblogic; web Servers eg Apache and web formats, eg AJAX, JSON)
- REST and SOAP APIs; authentication protocols (SAML) and concepts (SSO)
- Network security technology and principles
- Evaluating the security posture of enterprise networks and networking systems (Routers, Switches, Firewall gateways, IPS, database monitors)
- ISO implementation and auditing
- ISO, ISO
- CISA
- CISSP
- CISM
- NIST
Please send me your CV ASAP for an interview.