Maplesoft Group is currently seeking a Senior IT Security Vulnerability Analysis Specialist (Level 3) for our Federal Government client.
Tasks and Responsibilities include, but are not limited to the following:
• Review, analyze, and/or apply:
- Threat agents analysis tools and other emerging technologies including privacy enhancement, predictive analysis, VoIP, data visualization and fusion, wireless security devices, PBX and telephony firewall
- War dialers, password crackers
- Public Domain IT vulnerability advisory services
- Network scanners and vulnerability analysis tools such as SATAN, ISS, Portscan & NMap
- Networking Protocols (HTTP, FTP, Telnet)
- Internet security protocols such as SSL, S-HTTP, S-MIME, IPSec, SSH, TCP/IP, UDP, DNS, SMTP, SNMP
- Wireless Security
- Intrusion detection systems, firewalls and content checkers
- Host and network intrusion detection and prevention systems - Anti-virus management
• Identify threats to, and technical vulnerabilities of, networks
• Conduct on-site reviews and analysis of system security logs
• Collect, collate, analyze and disseminate public domain information related to networked computer threats and vulnerabilities, security incidents and incident responses
• Prepare and/or deliver IT Security threat, vulnerability and/or risk briefings
• Completed tasks directly supporting the departmental IT Security and Cyber Protection Program
• Develop and deliver training material relevant to the resource category
Requirements:
1) Must demonstrate at least eighteen (18) months of experience in the last four (4) years performing Vulnerability Assessments for applications or services that were deployed in a secure* environment for at least three (3) distinct clients (separate legal entities) including all of the following activities:
• Reviewing current security capabilities and evaluating existing threats, security risk and impact, and analyzing possible solutions to mitigate risks.
• Conducting thorough vulnerability scans to identify vulnerabilities that may leave the organization or data open to threats or theft
• Producing actionable and prioritized list of deficiencies with explanations and technical recommendations
• Preparing a summary report for management.
2) Must have 10 years of overall experience conducting vulnerability assessments for Canadian government organizations (*Federal, Provincial/Territorial or Municipal).
3) Must hold two current valid professional certifications from any of the following:
• Certified Information Systems Security Professional (CISSP);
• Certified Information Security Manager (CISM);
• Certified Information Systems Auditor (CISA);
• Information Security Management (ISO/IEC);
• Certified in Risk and Information Systems Control (CRISC);
• Certified Cyber Forensics Professional (CCFP);
• Systems Security Certified Professional (SSCP);
• Information Systems Security Architecture Professional (ISSAP);
• CAP (Certification and Accreditation Professional);
• SSCP (Systems Security Certified Practitioner);
• GIAC (Global Information Assurance Certification);
• SABSA Chartered Security Architect Foundation (SCF) or higher;
• Systems Security Certified Practitioner (SSCP);
• Sherwood Applied Business Security Architecture (SABSA); or
• Certificate of Cloud Security Knowledge (CCSK).
A copy of the certifications must be provided.
4) Must hold a valid secret security clearance.
Maplesoft Group prides itself on its distinct corporate culture and recognizes that success is a direct reflection of our most valuable asset - our people. Therefore, attitude and ambition are key personality traits we seek out, along with skill and aptitude, in potential employees.
Maplesoft Group is committed to having a diverse, representative workforce and continuing to build an inclusive environment. We encourage applications from all qualified individuals. Maplesoft Group is an equal opportunity employer committed to diversity and inclusion. We are pleased to consider all qualified applicants irrespective of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, protected veterans’ status, Aboriginal peoples or any other legally protected factors.
All employment decisions are made based on business needs, job requirements, and individual qualifications.
We are committed to developing inclusive, barrier-free recruitment and selection processes, and a work environment that supports our diverse workforce. Please let us know if you require accommodations at any stage of the recruitment process. We can be reached at Maplesoft Info at info@maplesoftgroup.com.
We thank you for your interest in Maplesoft Group and wish to advise you, that only candidates under consideration will be contacted.