| Title: | Network Security Officer |
| Reference: | 09/03/09NSO |
| Status: | Permanent |
| Salary: | c55-60k Plus Bens |
| Location: | London |
| Description: | International Financial Software House has an exciting new opening for an experienced IS/IT Security Officer responsible for advising on the development, implementation and management of a corporate security vision and strategy. You will direct the identification, development, implementation and maintenance of security processes across the organisation to reduce risks, respond to security incidents, and limit exposure to liability in all areas of information system and data security, both physical and logical. You will establish appropriate standards and risk controls and direct the establishment/maintenance of associated policies and procedures. This position will have a primary focus on protecting the privacy of client data hosted within the data centre infrastructure. Some of your activities will include but are not limited to: Verifies systems are developed, operated and maintained in line with client data security policies; Compliance management, including managing client audit and audit responses in line with client expectations - SOX 404/SAS70, Cobit, ISO/IEC 27002); Management of company responses to Client audits; Analysis of system logs/security reports for initiating preventive measures; Provide guidance and structured approach for meeting clients security requirements; Presentation of current security architecture from the level of basic dependencies among subsystems through to detailed technical specification and interfaces; Design authority and design direction with regard to information security; Monitors and certifies users and security profiles on a periodic basis. Ensures all personnel have the appropriate security clearance, authorisation and need-to-know prior to granting access to the network. To be successful you will have the following key skills/knowledge: Operating Systems (Windows, Linux, Solaris and associated security architectures); Applications Servers - Java EE (JBOSS/WebLogic) and Microsoft .NET Framework; Transmission Control Protocol/Internet Protocol networking security; Intrusion Detection Systems; Internet, Extranet and Intranet technologies and architectures; Juniper/Cisco Firewalls; F5 BigIP; Malicious Code Management; Security Incident Management; Encryption technologies; Remote Access Systems and methodologies; Designing secure architectures and solutions; Business Recovery Planning; Audit processes and resolutions and Due Diligence processes. This role also demands that you be a Certified Information Systems Security Professional (CISSP) have strong interpersonal negotiating and communication skills along with excellent presentation skills and the ability to build and maintain strong relationships with a wide range of internal and external groups. |