LATEST JOBS

The Distributed Security Team Lead will be responsible for access control in the distributed environment. This will encompass Active Directory security, Distributed Application security, Privileged Access Control and Generic ID’s among other things. The role holder will manage a team of Information Security professionals in a fast-paced and dynamic environment.
Management of an Information Security or IT related team
Knowledge of the legal and regulatory environment within which Financial Organizations operate (e.g. OCC, FED & FDIC)
Incumbent can work one day per week from home

Qualifications
Bachelor’s Degree in Computer Science or equivalent experience
Advanced Active Directory knowledge required
MCSE or other related certification. CISSP preferred
At least 5 years experience in an Information Security, Risk Management or IT Controls role

• Design security solutions, architecture specifications, policies, procedures and standards and coach others on security-related disciplines.
• Facilitate, perform and review internal control structures and tests to assess compliance with company, legal and regulatory mandates.
• Develop, implement, monitor and measure key metrics and performance indicators across the IT Security landscape.
• Provide direction and leadership to security-related investigations and incident response activities.
• Coordinates and develops security staff with a focus on security solution development, advanced security technologies and technical proficiency in core areas (Windows/Unix, networking, forensics, etc).
• Leads efforts to rationalize, review and secure network perimeter and 3rd party connections. Responsible for the implementation and maintenance of technical and procedural controls to protect information flows across networks.
• Consults with Internal Audit and Financial Reporting departments to ensure that adequate controls are in place and tested to ensure compliance with regulatory bodies.
• Consults in projects to assess risk and to ensure that information security requirements are included in the project business case.

Requirements
• BS or Masters degree from an accredited institution.
• 5+ years IT security work experience
• Excellent knowledge of MS Windows, Linux/Unix or SAP technologies
• Knowledge and understanding of government and/or regulatory/compliance
• Extensive knowledge of the Internet and networking concepts underlying the above systems (DNS, DHCP, TCP/UDP, SMTP, LDAP, etc).
• Working knowledge and experience in performing confidential security investigations and digital forensic analysis.
• Excellent knowledge of Enterprise-class firewall and filtering technologies.
• Knowledge of secure perimeter development and management including security zones, well-formed policies, monitoring and attack-surface reduction techniques.
• Excellent IT project skills (business case development, requirement development, etc).
• Working knowledge of dynamic languages (one or more of the following) such as JavaScript, perl, python, php, tcl, VBScript, ruby, shell or powershell as well as managed code execution concepts/environments (e.g. .Net Framework, JRE)

Evaluate and implement solutions and policies to safeguard intellectual property from both internal and external threats. In this role, you will conduct a full security audit that will point out the strengths and weaknesses of infrastructure and practices and provide design and technical guidance to help reduce risk for the firm. Duties and responsibilities include:
* Perform risk assessments and security evaluations of key systems.
* Establish a schedule and methodology for repeated audits.
* Collaborate with vendors and relevant groups including Technology, Operations, HR and Compliance to set standards and policies for technology use. (i.e. remote access, laptop security, digital rights management and data loss protection)
* Creation of systems to monitor the flow of information into and out of the company to identify potential situations where proprietary information could be compromised.

Requirements
* Minimum 7+ experience working in enterprise information security
* Demonstrated success leading the design and implementation of various security systems
* Strong understating of security and information policies with demonstrated success establishing security policies and procedures.
* Highly proficient in TCP/IP Networking. Knowledgeable in network security, dynamic routing and switch configuration.
* Expertise in various security domains ( i.e. network security, system security, database security, security policy)
* Experience with enterprise security tools and technologies including firewalls….
* Highly proficient in Linux and Windows operating systems
* Strong project management experience
* Experience in a consulting role preferred
* Security certifications with GIAC, CISSP and CISM preferred
* BS Degree in CS, Mathematics, Engineering or Equivalent Experience

• Administrator will be involved in all aspects of Colocation Design/Build/Implementation for multiple locations
• Administrator will work closely with Network and Sys. Admin teams on a daily basis

REQUIREMENTS
• In-Depth familiarity with Cisco IOS, LINUX, Windows, and power management
• Past experience working in/designing data centers/co-locations from a power/hvac/design perspective.
• Experience with Python scripting a must.
• Project and vendor management skills
• Practical knowledge of data center best practices, policies, and procedures
• Practical knowledge of data center subsystems and concepts
• Demonstrated ability and creativity in proposing, planning, implementing, testing, and monitoring data center solutions
• Availability to work weekends or evenings to meet project deadlines, solve problems, or cover operations

-Design/Configure/Integrate IT Infrastructure Solutions, Install/Implement IT Infrastructure Solution Components.
-Document Infrastructure Solution Design & Technical Specifications.
-Design a new secure public facing DMZ. Internal & External electronic penetration - tools to put in place to protect it & lock it down. Protect the perimeter electronically for data coming in & going out. Need knowledge of intrusion protection sensors, e-forensics, and tools & technologies on how to lock down & protect a Fortune 500 company. It’s not about setting policies & procedures, it’s about collecting the tools to enforce those policies & procedures.

Education & Experience:
-Bachelor’s degree in computer science, business administration, or related field is required.
-Minimum of 2- 4 years of IT infrastructure development and operations experience.
-Application and Web Security, Vulnerability Testing (Code Review), Data Security
-ITIL

Technologies:
- nCircle/ISS (Vulnerability Management), F5 Application Firewalls, Nokia Checkpoint/Cisco PIX Firewalls
- LogLogic, Imperva, HP QAInspect, HP WebInspect, HP Quality Center, HP Unix/Windows/Linux
- EMC Storage, Vormetrix Encryption, DMZ
- Cisco Network and Security products
- Data and network security (firewalls, IPS/IDS, packet generators/sniffers)
- Operating Systems (Windows and UNIX) and security tools
- Security architectures- Web Services Security- Data Protection Services
- E-Commerce Infrastructure- Firewall and Web Server Configuration
- Enterprise Security Management and Intrusion Detection
- Remote Access and Authentication Services- Access Management
- Integrating Security techniques and best practices in an enterprise environment
- Writing security requirements, assessing services / systems for security
- Security Strategy Development- Network Security Reviews- Attack and Penetration Assessments
- E-Business Planning and Pre-implementation Risk Assessments.

Responsibilities involve building network infrastructure, responding to network problems, short and long term project work, and continually driving improvements in network performance.

Experience supporting applications in a Network environment is a must. Prior experience with proprietary trading firms and exchanges is desired. Regular travel to Chicago is required.

Key Responsibilities:
• Work with teammates to drive the design and deployment of new installations of trading systems at exchange collocations
• Design and implement high performance, low latency WAN infrastructure
• Identify and evaluate new technology
• Troubleshoot infrastructure and application performance issues
• Find and improve performance bottlenecks
• Work closely with other parts of the business to identify areas of high opportunity

Key Skills / Attributes:
• Deep understanding of IP networking:
o Switching
o Routing (OSPF, EIGRP, BGP)
o Multicast (IGMP, PIM)
• Expertise with high-performance LAN technology (10 G ethernet, product architecture)
• Expertise with optical WAN technology (SONET, DWDM/CWDM, MPLS)
• Performance analysis and troubleshooting
o Packet capture and analysis
o Tapping and spanning
• Deep understanding of the TCP/IP protocol
• Experience with data center planning and deployment
• Experience with a scripting language such as python or perl
• Experience with the Linux operating system, C/C++, SQL a plus