Principal Cybersecurity Engineer/ Jr Cybersecurity Architect

Posted Yesterday
Be an Early Applicant
3 Locations
In-Office
90-90 Hourly
Expert/Leader
Information Technology • Professional Services • Software • Consulting
The Role
Lead security design and assessments across applications, cloud, mobile, IoT, and network domains. Perform threat modeling, code reviews, vulnerability testing, and remediation planning. Advise engineering teams, design firewall/SSL policies, manage SIEM and scanning tools, and drive security improvements and compliance.
Summary Generated by Built In

Principal Cybersecurity Engineer/ Jr Cybersecurity Architect 
Location – Bellevue WA, Overland Park KS, Frisco TX, Ravinia GA (Day 1 onsite/3 Days onsite)
Long Term
UST Global/T-Mobile
Rate: $90/hr on C2C 

Must Have Skills:-
Cyber Security : 10+ Years
Java, frameworks, python, Nodejs : 5+ Years
Threat Modelling like STRIDE, PASTA, TRIKE, ATTACK TREE, DREAD, KILL CHAIN, CAPEC : 5+ Years
SSL: 8+ Years
Firewall policy design: 5+ Years
vulnerability analysis & mitigation: 5+ Years
Understanding load balancers (ex – A10, F5), firewalls (ex – CheckPoint), Venafi, MDM (ex - Mobile Iron), Cloud (ex - AWS, Azure), Malware Protection (ex -FireEye), Advanced Persistent Threats (ex - Damballa), Privileged Accounts (ex – CyberArk), SIEM (ex – ArcSight), Log & Event (ex – Splunk), Intrusion IDS/IPS (ex – Symantec): 5+ Years
Cloud Platform (ex – PCF, Docker), Scanning (ex – Qualys), AppSec (ex - Veracode): 5+ Years
Principal Cybersecurity Engineer will help ensure that client’s software, systems and infrastructure are designed and implemented to the highest security standards. Performs technical security assessments, code reviews and vulnerability testing to highlight risk and remediate associated findings while helping client teams and partners improve security. Works closely with other client Engineers to design and build proactive methods to enhance our security posture.
This position serves as a subject matter expert which drives vision and results to enhance security posture within mobile device, IoT device, enterprise line of business applications, cloud, big data, and core and carrier network technologies as well as and other business units as needed as well as act as a Principal security advisor to cross-functional teams for the successful delivery of projects or services to enterprise customers.
• Leads information security review of new technologies, designs, and remediation planning efforts.
• Collaborates with Engineering & Operations Teams to address security vulnerabilities found via PSIRTs, scans or breaches
• Investigates and/or leads identifying security needs & recommends plans/resolutions. Implements, tests & monitors info security improvements.
• Significant experience with the analysis of underlying technologies that form the solution necessary for the application of threat identification,analysis, and thread model design. The threat model depicts trust boundary, threat agent(s), threat vector(s), and safeguard(s) necessary to protect person, asset, data, and brand.
• Significant experience with implementation of various threat modeling approaches pertaining to one or more of the following STRIDE, PASTA, TRIKE, ATTACK TREE, DREAD, KILL CHAIN, CAPEC
• Deep application security knowledge: Focus on expertise in secure coding practices, vulnerability management (SAST/DAST/IAST), and application security testing (OWASP Top 10 )methodologies.
• Mobile Application threat model, Cyber Threat Tree, and data flow diagram
• Subject matter expert in multiple facets of network & information security, including Firewall policy design, SSL Certificate management,
• vulnerability analysis & mitigation, and other topics as assigned.
• Advanced understanding of IP/Security solutions & technologies applicable to the Wireless Network Architecture.
• Subject matter expert in all facets of network & information security, including Firewall policy design, SSL Certificate management, vulnerability analysis & mitigation, and other topics as assigned.
• Ability to create technical specification and requirements and work independently and with no direction/supervision. Able to quickly adapt to new or evolving technologies related to new product & services requiring validation or research.
• Strong verbal and communication skills with diverse cross functional groups. Ability to present advanced concepts to leadership, peers, and others in subordinate roles.
• Understanding load balancers (ex – A10, F5), firewalls (ex – CheckPoint), Venafi, MDM (ex - Mobile Iron), Cloud (ex - AWS, Azure), Malware Protection (ex -FireEye), Advanced Persistent Threats (ex - Damballa), Privileged Accounts (ex – CyberArk), SIEM (ex – ArcSight), Log & Event (ex – Splunk), Intrusion IDS/IPS (ex – Symantec),
• Cloud Platform (ex – PCF, Docker), Scanning (ex – Qualys), AppSec (ex - Veracode)
• Advance knowledge of Scripting tools (Python/Perl/Shell/HTML/PHP)
• Knowledge of federal & compliance regulations e.g. SOX, PCI & CPNI
• Working knowledge of web application development, RESTful APIs, and skills in Java, frameworks, python, Nodejs.
• Experience with mobile applications, and handset security.

Skills Required

  • 10+ years Cyber Security experience
  • 5+ years Java, frameworks, Python, Node.js
  • 5+ years threat modeling (STRIDE, PASTA, TRIKE, Attack Tree, DREAD, Kill Chain, CAPEC)
  • 8+ years SSL certificate management
  • 5+ years firewall policy design
  • 5+ years vulnerability analysis and mitigation (SAST/DAST/IAST)
  • 5+ years with load balancers (A10, F5) and firewalls (CheckPoint)
  • Experience with Venafi, MobileIron (MDM)
  • Experience with cloud platforms AWS and Azure
  • Experience with malware protection tools (FireEye) and APT tools (Damballa)
  • Experience with privileged access solutions (CyberArk)
  • Experience with SIEM and logging (ArcSight, Splunk) and IDS/IPS (Symantec)
  • Experience with cloud platforms and containers (PCF, Docker)
  • Experience with scanning and AppSec tools (Qualys, Veracode)
  • Advanced scripting skills (Python, Perl, Shell, HTML, PHP)
  • Knowledge of web application development, RESTful APIs, OWASP Top 10 and secure coding practices
  • Knowledge of federal and compliance regulations (SOX, PCI, CPNI)
  • Experience with mobile applications and handset security
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
0 Employees

What We Do

Comspark International Inc. is a global software and engineering consulting firm specializing in the development and maintenance of web-enabled solutions. The company provides a wide range of cutting-edge IT services, including software development, outsourcing, and enterprise application solutions such as ERP, AI, and blockchain. They assist clients across various industry domains by creating and implementing specialized technology solutions to drive business efficiency.

Similar Jobs

PwC Logo PwC

Anthropic Alliance Manager

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Remote or Hybrid
37 Locations
370000 Employees
212K-244K Annually

PwC Logo PwC

Tax Innovation & Delivery Experience - Data Engineering - Experienced Associate

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
10 Locations
370000 Employees
63K-153K Annually

PwC Logo PwC

Identity and Access Management (AI Focus) Experienced Associate

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
21 Locations
370000 Employees
63K-140K Annually

PwC Logo PwC

Tax Director - Global Information Reporting

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Remote or Hybrid
65 Locations
370000 Employees
150K-438K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account