| From: | Mike Marc-Aurele |
| Sent on: | Friday, March 26, 2010 2:10 PM |
Hi NYC4SEC,
This is Mike, a recruiter with CTI TEKSOURCE. I represent
a very successful telephony product development firm that currently has a long
term consulting opportunity open for Senior Security Professional. This person
should have a solid knowledge of OO programming as well as extensive security
experience in the areas of LDAP, Kerberos, SAML, Etc. Please give me a call or
reply back to discuss. If you are interested or have questions please send
resumes to [address removed].
Thanks and looking to hearing from you!
This
position works closely with Engineering,
Product Management and Project Management to ensure that security is
integral to the development process from inception through release. The
security engineer is a software development role that identifies The Security Engineer evaluates the Marketing Requirements
Document (MRD) with respect to security and ensures that the Engineering
Response Document (ERD) reflects the security requirements. The security
information is gathered from all disciplines including Engineering, System
Test, Technical Publications, Support, Manufacturing, etc. The Security
Engineer then has continued involvement in the development process to ensure
that security in the final product conforms to security as defined in the ERD.
The position interacts with Product Management and all Engineering development
teams.
RESPONSIBILITIES
·
Work with Product Management to review and
refine security requirements. Provide initial responses to the MRD.
·
Work with engineering management, systems
engineers, and developers to create and ERD in response to the MRD’s.
·
Specify security strategies and designs.
·
Write an application security architecture
specification.
·
Write security functional and design
specifications.
·
Perform security design feasibility studies.
·
Design, code, and unit test security designs.
·
Provide technical guidance to other developers
implementing security designs.
·
Interact with project management, other
engineering teams, and other stakeholders as appropriate.
·
Work with Software Quality Assurance (SQA) to
validate the correct implementation of systems and applications.
EXPERIENCE/SKILLS:
Required:
·
At least 5 years experience working as a
senior software engineer.
·
Strong knowledge of the Software Development
Life Cycle (SDLC) and SQA/SCM (Software Configuration Management) tools.
·
Experience working with SQA to develop tests
and plan remediation.
·
Demonstrated ability to produce functional and
design specifications with minimal supervision, and attend meetings answering
technical questions regarding specifications.
·
Demonstrated ability to manage software
interfaces and other inter-system dependencies.
·
Demonstrated experience with OOA/D/P, UML,
design patterns, frameworks, and tools.
·
Java/J2EE language programming on Unix/Linux
operating systems.
·
C/C++ language programming on Unix/Linux
operating systems.
·
Excellent communication skills (including
presentation, verbal, and writing).
·
Demonstrated ability to work with other tech
leads and teams to resolve problems.
·
Demonstrated ability to be a self-starter and
require minimal supervision.
·
Experience with GSSAPI, NSS, and SASL APIs and configuration.
·
Experience with PAM configurations and specifically, with pam_ldap and
pam_kerberos modules.
·
Experience with SAML
·
Experience with Kerberos and LDAP APIs.
·
Experience with Kerberos (MIT required, Heimdal highly desired):
designing integrated Kerberos-based authentication systems, and configuring,
implementing, and maintaining Kerberos.
·
Experience with syslog
·
Experience with relational databases and SQL.
Desired:
·
A good understanding of secure software
development practices.
·
Experience with the development of secure
middle tier applications using Weblogic.
·
Recent experience in VoIP telephony.
·
Experience with OpenLDAP database, designing LDAP schema and using LDIF
files to import/export LDAP data/schema.
·
Experience with LDAP and database security.
·
Experience with the MySQL database, database
access controls, and secure data replication over SSL.
·
Experience with Active Directory integration.
·
Knowledge of Linux administration,
configuration, and security.
·
Experience in IP and networking protocols and
architectures.
·
Experience with LAMP technologies.
REQUIRED EDUCATION
·
Bachelors Degree in Computer Science or Electrical Engineering is
required.
·
Masters Degree in Computer Science or Electrical Engineering is preferred
Sincerely,
Mike Marc-Aurele
Senior Resource Manager
CTI TEKSOURCE LLC
45 West 21st Street
5th Floor
New York, New York 10010
[masked] Direct
[masked] Mobile
[masked] MAIN
[masked] FAX
Sincerely,
Mike Marc-Aurele
Senior Resource Manager
CTI TEKSOURCE LLC
45 West 21st Street
5th Floor
New York, New York 10010
[masked] Direct
[masked] Mobile
[masked] MAIN
[masked] FAX
This email message originally included an attachment.