IT Security Manager Internet & Ecommerce - Plano, TX at Geebo

IT Security Manager

Company Name:
McSEN Inc.,
Greetings from Sara!!!!
We have below requirement with our Client in TX. Please let me know if you are interested.
Title: IT Security Manager
Location: Plano, TX
Duration: 6 Months
The Product Security Incident Response Team (PSIRT) Manager will be responsibility for managing the Product Security Groups (PSG) product vulnerability response program across all of McAfee. They will track all McAfee product vulnerabilities reported externally and discovered internally. The PSIRT Manager will respond to external discoverers, manage the creation of Security Bulletins, Knowledgebase Articles and Sustaining Statements and give final approval for all public PSIRT documents. The manager will track PSIRT cases and deliver metrics. He or she will work closely with other teams (Development, Quality Assurance, Public Relations, Technical Support, Legal, Sales, Sales Engineers, and Intel) to coordinate patches and communication.
The PSIRT Manager will also meet the responsibilities below:
Key
Responsibilities:
Manage McAfees PSIRT program
Maintain the PSIRT tracking database and assist in its reimplementation to an automated and distributed contributor environment
Work effectively with a virtual team of Product Security Champions (PSC) to distribute the PSIRT technical duties
Manage externally reported, unverified product vulnerabilities and coordinate responses to the same.
Coordinate and ensure adequate roll-out of security patches, and write/approve associated security bulletins, knowledge base articles, and sustaining statements
Lead the risk assessments of product vulnerabilities using the Common Vulnerability Scoring System (CVSS)
Work with a virtual team of Tier-III Subject Matter Experts (SME) in Support to prepare bulletins for external publication
Work with the Knowledgebase Team to coordinate publication and update of security bulletins
Track and report internally discovered product vulnerabilities in McAfees bug tracking system (Bugzilla) to ensure they are being addressed in future product releases
Provide meaningful and automated metrics for both internally and externally reported product vulnerabilities
Ensure and create, as needed, product/software security processes, practices and operations to ensure secure development to minimize future product vulnerabilities, while keeping costs under control
Work with Intel Security, the Intel Software Security Group (SSG) and their PSIRT counterpart to share and leverage best practices
Monitor and report on product vulnerability trends both internally to McAfee and externally
Become expert on relevant ISO standards, such as:
ISO 29147 - IT Security - Vulnerability Disclosure
ISO 30111 - IT Security - Vulnerability Handling Processes
ISO 27034 - IT Security -Application Security - Part 1: Overview and Concepts
Assist the PSG with the teams primary services as needed. These include:
PSIRT - Vulnerability Response
Security Reviews
Product Security Training
Tools Support
M&A Source Code Reviews
Certification Support
Provide training to staff, contractors, development teams, and product/software security champions about PSIRT and product security response
Required Experience/Skills & Education:
5
years of experience as a software developer or SOC Manager
Strong interpersonal and communication skills, both written and oral
Project Management skills and experience (PMP is a plus)
Security know-how is preferable (CISSP is a plus)
Ability to express and drive the resolution of technical vulnerability issues effectively
Ability to define and execute efficient product security policies and processes
SOC or product security experience at a large software company is a very strong plus.
Reasonable understanding of technical threats
Wide breadth of software coding experience
Ability to quickly grasp new and innovative technologies
Thank you,
Sara
McSEN Inc.,
24 Oxford Road, East Brunswick, NJ 08816
Ph: 732 659-1004 Email: Estimated Salary: $20 to $28 per hour based on qualifications.

Don't Be a Victim of Fraud

  • Electronic Scams
  • Home-based jobs
  • Fake Rentals
  • Bad Buyers
  • Non-Existent Merchandise
  • Secondhand Items
  • More...

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.