Learn more about McGladrey
Visit us at jobs.mcgladrey.com





The McGladrey Experience

Player for use on Company Profiles









LOCATION:
Atlanta, GA 30301 (map it!Map it!)


STATUS:
Full-Time



JOB CATEGORY:
Finance
Information Technology
Consultant
Professional Services



Ref ID:
US-SEMC12445

EOE/AA Employer

Apply Now >>
Report this job
Follow McGladrey on Linkedin
Recruiting Blog
Facebook Page
Follow McGladrey on Twitter
YouTube Channel






Consulting - Senior Associate - Information Security Job

Senior Associate - Information Security Assessment

Responsibilities

- Perform analysis and testing to verify the strengths and weaknesses of a variety of operating systems, network devices, web applications, and security architectures
- Perform penetration testing (blackbox/whitebox testing) and network architecture reviews (manual/automated)
- Assist with the development of remediation services for identified findings
- Identify and clearly articulate (written and verbal) findings to senior management and clients
- Help identify improvement opportunities for assigned clients
- Supervise and provide engagement management for IT staff working on assigned engagements


Requirements:


- Bachelor's degree in computer science or related field from an accredited college/university
- Technical background in networking/system administration, security testing or related fields
- In-depth knowledge of TCP/IP
- Two or more years of Perl, Python, or C experience
- Operating System Configuration and Security experience (HP-UX, Linux, Solaris, AIX, etc.)
- Configuration and Security experience with firewalls, switches, routers, VPNs
- Database Configuration and Security experience (MySQL, Microsoft SQL, IBM DB2, Sybase, Oracle, etc.)
- Experience with security and architecture testing and development frameworks, such as the Open Source Security Testing Methodology Manual (OSSTMM), Information Systems Security Assessment Framework (ISSAF), and NIST SP800-115
- Familiar with security testing techniques such as network discovery, port and service identification, vulnerability scanning, network sniffing, penetration testing, configuration reviews, firewall rule reviews, social engineering, wireless penetration testing, fuzzing, and password cracking and can perform these techniques from a variety of adversarial perspectives (white-, grey-, black-box)
- Experience with discovery, utilizing, and possibly writing exploits for such vulnerabilities as buffer and stack overflows
- Familiar with the logistics of security testing such as acquiring authorization for testing, reporting, risk analysis of findings, data handling, and legal considerations
- In-depth knowledge of the security and privacy provisions of a variety of regulations and standards such as PCI, NERC/CIP, SOX, HIPAA/HITECH, FFIEC, EU Privacy Laws, ISO, and COBIT
- Commercial Application Security tools experience (Qualys, Retina, nCircle, Acunetix, etc.)
- Open source and free tools experience (Nessus, Metasploit, nmap, airsnort,Wireshark, etc.)
- One or more of the following testing certifications: Certified Ethical Hacker (CEH); GIAC Certified Penetration Tester (GPEN); Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc)
- In addition, one or more of the following governance certifications is preferred: Certified Information Systems Security Professionals® (CISSP®); Certified Information Systems Auditor® (CISA®); Certified Information Security Manager® (CISM®)
- Track record with published content / research work in the information security field
- Demonstrated ability to build, maintain, and improve security testing labs, tools, and mobile equipment
- Strong leadership and communication skills, technical knowledge, and the ability to write at a 'publication' quality level in order to communicate findings and recommendations to the client's senior management team
- Ability to travel approximately 60%

You’re one of a kind. So is McGladrey. Imagine what we will achieve together.

You want your next step to be the right one. You've worked hard to get where you are today. And now you're ready to use your unique skills, talents and personality to achieve great things. McGladrey is a place where you are valued as an individual, mentored as a future leader, and recognized for your accomplishments and potential. Working directly with clients, key decision makers and business owners across various industries and geographies, you'll move quickly along the learning curve and our clients will benefit from your fresh perspective.

Experience McGladrey. Experience the power of being understood. ™

McGladrey is an equal opportunity/affirmative action employer. Minorities/Females/Disabled/Veterans.

Location Street Address: 1230 Peachtree Street, N.E., Ste. 1700
City: Atlanta
State: GA
Region: Southeast Region
Position Type: Full Time
Job Type: Experienced
Degree Required: Bachelor
Travel Required: No
Sponsor candidates who are not eligible to work in US: No
Requisition ID: SEMC12445


EOE




CareerBuilder.com's Advice

For your privacy and protection, when applying to a job online:
Never give your social security number to a prospective employer, provide credit card or bank account information, or perform any sort of monetary transaction.  Learn More >>

By applying to a job using CareerBuilder.com you are agreeing to comply with and be subject to the CareerBuilder.com Terms and Conditions for use of our website. To use our website, you must agree with the Terms and Conditions and both meet and comply with their provisions.







  • Apply Now
  • Consulting - Senior Associate - Information Security Job @ McGladrey LLP

Almost there!

Submit your email address to begin the application process for the Consulting - Senior Associate - Information Security Job job. .

Email is invalid Email address is needed

By applying to a job using CareerBuilder.com you are agreeing to comply with and be subject to the CareerBuilder.com Terms and Conditions for use of our website.