A Security Administrator II (Security Operations) monitors corporate security devices and applications. Provides oversight for physical security systems. Provides security consultancy during application development. Critical for success are professional management and communication skills.
Key Responsibilities:- Maintain and promote a strong safety culture for all employees, vendors, and customers and follow all health, safety and environmental policies, procedures, and regulations. Identify and communicate workplace hazards and correct or seek assistance in correcting unsafe actions or conditions.
- Review infrastructure designs for security vulnerabilities, and policies in light of security best practices and information security policies.
- Monitor, analyze and report on corporate security systems and security applications.
- Analyzes and resolves security breaches and vulnerability issues.
- Support forensic activities and digital review/evidence collection for security incidents.
- Conducts user activity audits and supports business regulatory requirements.
- Perform internal network vulnerability scanning and external penetration testing and resolve issues.
- Support business regulatory requirements.
- Act as a point of escalation for Service Desk incidents and requests.
- Understand and review current and future router and firewall access control lists for security best practices, vulnerabilities, and policies.
- Regulate physical security systems: security camera systems and access control systems.
- Review security of enterprise software code.
- Adhere to IT and corporate standards and security policies. Assist with recommendations for changes to existing or suggest new security standards and policies associated with risk mitigation and security event response.
- Other duties as assigned.
Qualifications and Skills- Bachelor's Degree in Information Technology or related field, 5-8 years of relevant experience, with 35 years in information security, or equivalent combination
- Systems Security Certified Practitioner (SSCP) certification
- Competent with networking, hardware, software, and server systems technologies
- Competent with parsing security and server logs
- Competent in IT security best practices
- Competent with router/firewall access control lists (ACLs), virtual private networks (VPNs), and complex routing scenarios.
- Proficient with Microsoft Office, Microsoft Project, Microsoft Visio, and two latest versions of Microsoft Windows
Desired Qualifications:- Bachelor's Degree in Computer Science, Information Security or a related field
- Certified Information Systems Security Professional (CISSP) or Certified Secure Software Lifecycle Professional (CSSLP) Certification
- Familiar with Software as a Service (SaaS) security concepts
- Understanding of application development best practices
- Experience with Linux operating systems, Checkpoint firewalls, and various scripting languages