Cyber Security Lead at Parsippany, NJ- 1-3 days onsite at Parsippany, New Jersey, USA |
Email: [email protected] |
From: Malya, Sourcemantra.com [email protected] Reply to: [email protected] I hope you're doing well. I am Malya from Source Mantra Please look at the job description below, let me know if you are interested, and reply with an updated resume, Visa Status, expected rate/Salary, and current location. Role: Cyber Security Lead Location: Parsippany, NJ- 1-3 days onsite Experience: 15+ Years Contract role Position Description: The cybersecurity engineer reports to the Chief Information Officer with a dotted line to the Chief Compliance Officer. This role is pivotal in leading the Cybersecurity Program to protect our organizations critical information assets through NIST Cybersecurity Framework and practices, ensure regulatory compliance, and help the organization become more proactive in addressing vulnerabilities and risks. As the internal expert in the field of information security and cybersecurity, the Director, Cybersecurity has the overall accountability of establishing, monitoring, managing, and maintaining the technologies and processes used to secure company information systems, networks, and data, in close collaboration with IT, Regulatory Compliance, Risk Management and strategic managed services partners. Primary Responsibilities and Duties: Lead the delivery of Cybersecurity Roadmap initiatives, through collaboration with internal IT and external managed services partnership. Oversee the development and execution of an Incident Response Plan (IRP), ensuring swift and effective response to security events and incidents. Coordinate with internal stakeholders and external partners during forensic investigation. Manage endpoint and network security environments including overall health, policy modifications, troubleshooting/resolving issues, and producing monthly health metrics for workstations, servers, and identities. Analyze and resolve security events/alerts Including:monitoring and management of the SIEM platform managing the logging health of various log sources (e.g., Windows and Linux systems, cloud infrastructure and services, and network and security infrastructure). Collaborate with Risk Management, Regulatory Compliance, and IT on reviewing and updating Cybersecurity policies, controls, and procedures that support NIST compliance, and monthly Cybersecurity Dashboard updates. Manage vendor for Penetration Testing for both external network infrastructure, web applications, and API endpoints. Support and manage the vulnerability management platforms for infrastructure and application scanning. Including:development and maintenance of scanning policies onboarding assets reporting validation and false positive research remediation tracking process improvement Supporting PCI, SOC1/2, HIPAA, and client security assessments. Includes gathering, uploading, and reviewing evidence. Strong understanding of cybersecurity framework, standards, and best practices. Minimum working knowledge of:Incident response Penetration testing Vulnerability management SIEM/log analysis Network security Endpoint security Active Directory Windows/Linux security Email security DLP concepts Familiar with the NIST Cybersecurity Framework and mapping of internal controls to support NIST compliance. Familiar with endpoint security products and concepts (e.g., malware protection, network protection, forensics, DLP, EDR/MDR/SOC). Exposure to adjacent technology domains such as cloud, network infrastructure, audit & compliance, and DevSecOps Required Knowledge, Skills, and Abilities: Strong knowledge of Information Security / Cybersecurity related technologies, processes, and tools. Working knowledge of Office 365 security concepts, policies, settings, alerting, audit logging, security and compliance center, cloud app security is required. Staying up to date on recent threats (e.g., OWASP Top 10), security tools and concepts is required. Experience with network security concepts and products (e.g., Cisco/Barracuda firewalls and Intrusion Prevention Systems, email security, and Web Application Firewall (WAF), with working knowledge on Akamai/Cloudflare a plus. Familiar with security monitoring (SIEM), analysis and resolution of security events/alarms (working knowledge with Google Chronicle a plus). Familiar with identity and access management concepts (e.g., Azure Active Directory, OKTA MFA, SSO). Familiar with SOC1/2, PCI, HIPAA, CCPA/GDPR or related security frameworks. Familiar with application-level security framework and hands-on experience mitigating application vulnerabilities and threats, such as SQL injection and cross-site scripting. Strong analytical and problem-solving skills Strong Windows Active Directory and Networking experience a plus Security-focused degree and/or certifications a plus (e.g., CISSP, CISM, CISA) Thanks & Regards Malya- P Role: Recruitment Lead 295 Durham Ave, Suite # 201, South Plainfield, NJ 07080 linkedin.com/in/malya-p-55b621139 Email: [email protected] | www.sourcemantra.com Source Mantra is a Certified Minority Business Enterprise (MBE) Keywords: access management information technology New Jersey Cyber Security Lead at Parsippany, NJ- 1-3 days onsite [email protected] |
[email protected] View all |
Tue Jul 30 02:30:00 UTC 2024 |