Please enter your registered email address, and we'll email you a link to reset your password right away.
Your Email
OK
From
Subject
Resume
Browse
Browse
Browse
Message
OK Cancel
Security Engineer
Ref No.: 17-00121
Location: New York, New York
SECURITY ENGINEER
Job Description: - The successful candidate will be a subject matter expert with hands-on experience in a wide range of security technologies, tools and methodologies.
- The role is suited for an experienced Windows Engineer with proven understanding in enterprise security and will focus on building toolsets and processes to support the Information Security Program (ISP).
- The team fosters a collaborative environment and is building a best in class program to partner with the business to protect the Firm's information and computer systems.
- Our client has a complex and robust technical environment and securing the firm from external and internal threats is a top priority.
Principal Responsibilities: - Provide the highest level of security consultancy and engineering support for Windows Platform security solutions including analysis and design of Windows security solutions.
- Provide architecture assurance on Windows security initiatives and compliance of existing security standards.
- Maintain firm security infrastructure tools that built on the Windows platform, providing stability and policies and procedures.
- Support the development and delivery of a comprehensive ISP for the entire organization.
- Assist with the development and implementation of the ISP roadmap.
- Actively monitor new and emerging security and privacy related technologies, trends, issues, and solutions and assess their applicability to key business initiatives and strategies.
- Leverage collected Intelligence to improve success in defending Millennium against and responding to future attacks or intrusions.
- Lead, implement and manage key monitors for internal control systems to ensure appropriate information access levels and security parameters are maintained.
- Participate in Information Security Incident Response activities for the Firm's environment.
- Perform periodic and on-demand system audits and vulnerability assessments of systems, internal applications and Cloud services to identify security vulnerabilities.
- Monitor compliance with the organization's information security policies and procedures among employees, contractors and third parties.
- Manage remediation efforts for any gaps reported in audits or recommended process improvements.
- Collaborate with IT management, Legal, Human Resources and Compliance departments to manage security vulnerabilities and investigations.
- Provide support to Security and other technical operations staff to ensure smooth turnover from Engineering to Production - and provide mentoring to junior level security professionals.
- Liaison with key stakeholders to create and enforce policy including Technology organization, Trading units, Legal, Internal Audit, and Compliance.
- Leads the effort to ensure security compliance in accordance with regulatory security standards required by appropriate governing bodies.
- Develop and maintain documentation of all security products including specific tools, technologies and processes.
Qualifications/Skills Required:
- Bachelor's degree in Computer Science or Engineering preferred.
- 7 + years' experience working in a technical role with a minimum of 2 + years' experience focusing on information security (financial industry preferred).
- Excellent understanding and project experience related to the engineering of modern Windows platform security including the creation of security baselines, policies, standards and compliance.
- Proficiency with engineering a variety of Endpoint Security technologies including: Endpoint Detection and Response, DLP, Advance Malware Protection, Desktop encryption and Vulnerability Management.
- Familiarity with developing controls to secure sensitive Windows workloads hosted on Cloud platforms (IaaS and SaaS).
- Hands-on experience using Windows development/scripting technologies with web protocols: XML, REST, JSON, REST.
- Strong knowledge of LDAP, Active Directory, SAML, SSO
- Possess a passion for Information Security and Technology.
- Able to prioritize in a fast moving, high pressure, constantly changing environment; high sense of urgency.
- Ability to communicate and collaborate across business aligned and infrastructure teams.
- Possession of at least one relevant security certification (CISSP, GCIA, CISM, etc.).