Job Summary
- Company
- Careerbuilder Careerbuilder
- Location
Parsippany, NJ, US
- Job Type
- Regular
- Job Classification
- not provided
- Experience
- not provided
- Education
- not provided
- Company Ref #
- J3F5QP6SCZP2XGXGQGYJ3F5QP6SCZP2XGXGQGY
- AJE Ref #
- 555812723
- [+] More
Job Description
The Lead Engineer will have the responsibility for leading a team of 3-5 technical staff in the ongoing operations of various security-related software and hardware solutions in Wyndham's Security Operations group.
This individual will have a strong engineering background in one or more of the domains listed below and will assist staff by facilitating the relationship between the Business Units, Project Management Office, Vendors, and other members of the Wyndham Security Operations team. Emphasis will be placed on database security, firewall rule analysis, and logging and monitoring analysis.
Essential Duties and Responsibilities
1. Lead a team of 3-5 people in the implementation and ongoing maintenance of programs in the following three domains:
a. Lead technical staff in the implementation and ongoing maintenance of programs to establish and review data security, with an emphasis on data security in the Oracle ERP space.
b. Lead technical staff in the implementation and ongoing maintenance of programs to continually monitor and analyze firewall rules related to the proper enforcement of network segmentation.
c. Lead technical staff in the ongoing monitoring and analysis of system and application log data via internally managed tools and services provided by a SOC vendor.
2. Work with Wyndham Business Owners, Business Unit IT Staff and PMO to manage requirements, execution plans, and budgets related to the ongoing implementation and maintenance of security programs related to the above three domains.
3. Coordinate efforts of team with the efforts of other teams in Security Operations to implement and manage the security environment components in the above three domains.
4. Develop policies and procedures documentation related to the above three domains.
5. Implement data security practices based on frameworks such as ISO 27002, PCI, PII, and regularly review implemented tools, policies and procedures for compliance.
6. Develop budgets for implementations and for lifecycle management of existing solutions, including hardware, software, network, and maintenance.
7. Work with internal staff and vendors in product selection and ongoing vendor support of implemented solutions.
Requirements:
-Bachelor's Degree in Business, Management, or Computer Sciences, or equivalent prior work experience in a related field -Five to seven year's experience in an information technology related field, with at least three in information security in an enterprise-wide operational and tactical setting -Strong analytical skills (i.e., technical and non-technical problem solving skills) -The ability to communicate technical and security-related concepts to a broad range of technical and non-technical staff, security vendors, consultants and management. -3-5 Years of hands-on experience in either of the following: Firewall configuration and maintenance, particularly as it relates to network segmentation and rules implementation & analysis Database security administration, particularly as it relates to Oracle Applications
-Experience with Oracle Applications and high-level understanding of Oracle roles and responsibilities model -General understanding of Firewall functionality as it relates to understanding network segmentation and Firewall rules enforcement. -Current CISSP or related security certification desirable -Experience with PCI requirements is desirable -Ability to lead small to medium size projects to completion on time and on budget. -Strong analytical skills (i.e., technical and non-technical problem solving skills) -The ability to communicate technical and security-related concepts to a broad range of technical and non-technical staff, security vendors, consultants and management. -General understanding of system and application logging functionality, including
