Manager, IT Consulting Security
Company: Protiviti Inc.
Location: Atlanta, GA
Posted on: July 28, 2017
Job Description:
Position: Manager, IT Consulting Security (Atlanta, GA) Protiviti is a global consulting firm that helps companies solve
problems in finance, technology, operations, governance, risk and
internal audit. Through our network of more than 70 offices in over 20
countries, we have served more than 35 percent of FORTUNE® 1000 and Global 500
companies. We also work with smaller, growing companies, including those
looking to go public, as well as with government agencies. Protiviti is a wholly owned subsidiary of Robert Half
International Inc. (NYSE: RHI). Founded in 1948, Robert Half International is a
member of the S&P 500 index. Duties: Perform manual and automated testing to exploit
vulnerabilities in web and mobile applications based on the OWASP top 10 which
includes cross- site scripting, cross-site request forgery, SQL injections,
session hijacking and buffer overflows to obtain controlled access to
target systems. Perform manual and automated secure code reviews to
ensure proper security controls are present in applications. Perform network
traffic forensic analysis and utilize packet capturing software to
isolate malicious network behavior and inappropriate network use and
identify insecure network protocols. Demonstrate knowledge of industry
standards and regulations like HIPAA, PCI and NIST Cybersecurity frameworks.
Contribute to creation of information security policies and procedures.
Pursue business opportunities and serve as ambassador of Protiviti in
the market. Requirements: Master’s degree (or foreign equivalent) in
Computer Science, Security Informatics, Information Systems, Engineering, or
related field and three (3) years of experience in application security and
secure code review; or in the alternative, a Bachelor’s degree (or foreign
equivalent) in Computer Science, Security Informatics, Information Systems,
Engineering or related field and five (5) years of experience as indicated
above. Also requires: demonstrated expertise interfacing with client
architecture, development, and QA teams throughout the application development
life-cycle to analyze security issues during development, and perform
manual and automated code reviews; performing manual and automated secure
code reviews to ensure proper security controls are present in software
applications written in various languages including C, C++, Python, Java,
ASP.Net and Objective C; performing web and mobile application security
review to perform vulnerability analysis and ensure secure access,
utilizing Kali Linux and various tools, including Burp Suite, Wireshark, NMap,
Metasploit, android-sdk, apktool, and OllyDbg; analyzing and modeling
business processes through Excess & Obsolescence (E&O) tool design,
creation, and implementation to ensure identification of significant
information security risks and assessment of controls design; performing HIPAA risk
assessments and gap assessments, including analysis of health information
security and compliance, and data privacy compliance framework assessments to
document and test administrative and technical controls to protect
sensitive information; reviewing levels of access within client teams to
ensure appropriate access limits to secure data; assessing network
security including performance scans to identify vulnerabilities using
Nessus and Qualys; and performing PCI Remediation activities and developing
and implementing vulnerability management best practices to ensure
compliance. Submit resume to Job Code MITCS2017, Dana S. Portnoy, Protiviti,
125 High Street, 17th Floor, Oliver Street Tower, Boston, MA 02110
Keywords: Protiviti Inc., Atlanta , Manager, IT Consulting Security, Other , Atlanta, GA, Georgia