Previous Job
Security IT Analyst
Ref No.: 18-64986
Location: Glen Mills, Pennsylvania
Position Type:Contract
Start Date: 09/05/2018
Location: Glenn Mills PA

Duration: Long Term

The Global IT Security Analyst will work closely with the entire global IT team and all levels of management to ensure that cyber security services are provided as outlined. The role will also work closely with the Portfolio Management teams, partners and customers as needed at various time zones. This role reports to the Global IT Security Manager who resides in Glen Mils, PA, USA.

  • Be a Information Security subject matter expert (SME) that's part of an information security center of excellence; offering internal management consultancy advice and practical assistance on information security risk and control matters.
  • Maintain Security & Policy Documentations across the Geography.
  • Conduct internal, external and 3rd party IT audits, risk assessments, and vulnerability scans, adhering to compliance standards as per ISO 27000, , SOX and PCI.
  • Liaise with other governance functions such as physical Security/Facilities, Internal Audit, IT, HR, Legal, and Compliance
  • Respond to computer security incidents, in-depth computer and network investigations. Assist in or lead incident response to a successful completion.
  • Oversee installation, upgrades, and configuration of Information Security software. Make sure issues are properly coordinated, tracked, monitored and resolved globally.
  • Drive for consistent deployment of information security policies, standards, procedures, guidelines and training.
  • Assess Information Technology technical controls, policies and procedures for control gaps. Recommend and support deployment of mitigations design on business need and risk.
  • Develop new and improve existing technical documentation.
  • Work as a team player
  • Perform Security Risk Assessments, identifying gaps and recommending mitigating controls.
  • Develop and present project related material (e.g. to key stakeholders, peers, etc) .
  • Support an Application Security program working closely with the DevOps, application development and QA teams.
  • Maintain documentation related to the Application Security program including the development of secure coding policies, procedures and standards, modification of the Software Development Life Cycle (SDLC) to include necessary security checkpoints, code review methodologies, etc.
  • Pursue understanding of application security requirements early-on and incorporate into secure code development practices.
  • Maintain knowledge of new security trends and technologies.
  • Support the assessment and acquisition of application security tools and technologies.
Attend design and application architectural reviews to establish expertise and assimilate knowledge of the environment.


Must Have :
  • Bachelor's degree in Computer Science / Information Security or related field
  • CISSP or Associate certification, CISA, CRISC or equvalent
  • A minimum of three (5) to five (8) years' experience in Information Security and/or Technical projects, including experience leading large global projects
  • Experience with Cyber Security related technologies and large enterprise implementations and handle audits & compliance
  • Practical knowledge of Information Security Management Systems and compliance standards as ISO 27000, , SOX and PCI.
  • Understanding of key security services, such as Internet Content Filtering, Remote Access, Firewalls, IDS/IPS, Virus Protection, AAA (including 2Factor), Digital Certificates and PKI.
  • Understanding of Public Cloud services.
  • Must possess strong and demonstrated organizational, communication, and negotiation skills
  • Must be able to lead multi-disciplined project teams through project lifecycle (planning-development-implementation-closeout)
  • Demonstrated knowledge in project packages, detailed project plans, project risk identification and mitigating strategies
  • Able to demonstrate field presence during the planning and installation phases of the project
  • Have experience in handling Information security for multi-national corporations
  • Open to travel internationally periodically.
  • Must understand the concepts of Authentication, Authorization and Accounting.
  • Technical knowledge of Microsoft Windows environments (Windows 7-10.x, Server Platform) , Popular Linux version, & Enterprise OS like AIX/Client-UX/Solaris etc
Good To Have :
  • Understanding of Risk and the need for risk based reviews and controls.
  • Understanding TCPIP and basic network technologies, advanced knowledge is a plus.
Knowledge of System (AIX/Client-UX/Solaris) & Subsystem (Database/Middleware)
Devendra Shukla
IDC Technologies, Inc
Direct No: 408-484-3197
Cell No: 408-478-4068