Job is at a big Software Company in the Northwest, I was asked what salary I wanted and don't want to price myself out but don't want to leave money on the table, honestly I have no clue what range to say...any input would be appreciated.
- Will be responsible for ensuring applications are compliant to security and privacy standards.
- The candidate will be responsible for conducting internal audits, reviewing the remediation plans and providing guidance on Security Development Lifecycle (SDL).
- Conduct periodic user access review audits (Front-end and Back-end) across all applications
- Closely partner with internal (infra) and external (project) teams and ensure that security and privacy requirements are clear and reviewed by both the teams.
- Effectively identify the risks and dependencies early in the cycle and work with the project teams in identifying the mitigation plans.
- Effectively communicate reviews/audits status, risks and issues on a timely fashion to the project stake holders
- Quickly resolve/escalate issues as necessary
- Maintain security practices and principles knowledge and how it applies to our business
- Effectively communicate security status, risks and issues on a timely fashion to the stake holders
- Ensure compliancy with privacy, security guidelines.
- Document lessons learned/best practices at the end of every review cycle completion
- Has experience in analyzing IDS and IPS sensors
- Has experience interpreting sensor logs and applying changes to the IDS/IPS using vendor profiles or regular expression
- Has experience helping the business determine requirements for specific IDS/IPS/DLP policies
- CISSP certification is a must