NOVALINK SOLUTIONS LLC · 17 hours ago
Security Analyst
NOVALINK SOLUTIONS LLC is seeking a Security Analyst III to join their team. The role involves securing web applications for the Department of Children and Families (DCF) and requires hands-on technical expertise in cyber security. Responsibilities include vulnerability management, policy advising, and mentoring development teams on security controls.
Information ServicesProfessional ServicesTelecommunications
Responsibilities
Research and implementation of cyber threat preventative designs and standards. This role includes developing processes to follow during a cyber-attack and taking an active role during a cyber-attack
Working with application teams to coordinate vulnerability testing and management for web based applications
Vulnerability testing and management for desktops, laptops, VDI, and other hardware
Working with several areas of DCF BITS and with the State of Wisconsin data center specialists, the analysist will advise on policies and procedures to implement web application security into application designs and also to identify and implement secure infrastructure design and configurations
This security analyst will work with the DCF BITS IT Security officer, application team managers and technical leads, and business partners to respond to and document controls in order to meet various audit requirements
Designs and coordinates implementation of security controls
Monitors compliance with security policies and procedures
The security analyst will coordinate and collaborate with multiple BITS sections, business partners, and other State Agencies
Create compelling presentations to share effective practices, process improvements to BITS, business partners, and executives as requested
Mentors development teams on how to implement security controls
Lead a culture change to actively integrate security controls into the current SDLC at DCF
Qualification
Required
Experience with and understanding of the State of Wisconsin technical infrastructure
Relies on extensive experience and judgment to plan and accomplish goals
Must remain abreast of the ever evolving and new cyber security trends and preventative methods, current technology, emerging technology, and industry trends
Must have experience with a variety of the security concepts, practices, and procedures
Must have excellent communication skills, facilitation skills, mentoring skills and ability to work under pressure
Security Analyst capabilities with 8 or more years of web application security experience
Experience using SAST and DAST tools
Proficiency with a wide variety of security concepts, practices, and procedures
Skill creating compelling presentations to share effective practices, process improvements to IT and business partners
Must have web application development experience and web application infrastructure experience
Ability to become a trusted process advisor, with a high level of operational thinking and ability to analyze IT systems
Experience in development and facilitation of planning, orientation and training sessions with executives, management and other agencies desired
Strong analytical and systemic thinking skills, with ability to synthesize information from many sources to develop technical and business recommendations
Effective communication skills including excellent listening skills and the ability to communicate technically and professionally with all levels of staff both verbally and in writing
Experience with and understanding of State of Wisconsin technical infrastructure Must Have 3 years
Knowledge of OWSAP Top 10 Must Have 5 years
WAF support Must Have 2 years
Configuring and using vulnerability management tools Must Have 5 years
Knowledge of NIST Cybersecurity Framework Must Have 5 years
Analytical/problem solving skills Must Have 8 years
In-Depth Knowledge of System Development Life Cycle Deliverables for each phase of development Must Have 5 years
IT Technologies Skills and Concepts Must Have 8 years
Web API / REST Web Services Must Have 2 year
C Sharp Must Have 3 years
.Net and/or .Net Core programming Must Have 3 years
JEE application server support Must have 2 years
SQL Must have 5 year
Preferred
Certified Information System Security Professional (CISSP) Nice to Have 3 years
Global Information Assurance Certification Nice to Have 3 years
JEE programming Nice to Have 3 years
Apache and Tomcat Nice to Have 2 years
WebSphere Nice to Have 2 years
DBMS experience Nice to Have 2 years
Java Must have 1 year
Company
NOVALINK SOLUTIONS LLC
Novalink Solutions LLC (Novalink) is a global consulting and engineering services company.
Funding
Current Stage
Growth StageCompany data provided by crunchbase