SR. CORRELATION ENGINEER (Austin, TX)

From: Rob Needham (robat_private)
Date: Mon May 20 2002 - 08:56:37 PDT

  • Next message: Brian: "Seattle Based InfoSec Engineer"

    
     ('binary' encoding is not supported, stored as-is)
    SR. CORRELATION ENGINEER (Austin, TX)
    
    Will be developing the IDS logical framework between the 
    packet level and the signature knowledge base.
    
    JOB DESCRIPTION: 
    This individual will be the lead developer on the next-
    generation event correlation engine. 
    JOB RESPONSIBILITIES 
    o	Participate in and review system design for 
    completeness and effectiveness with a security 
    perspective. 
    o	Development lead responsibility for next-
    generation event correlation engine, from requirements 
    gathering - through initial design - through product 
    release, including: 
    o	Work with user interface team to define viewing 
    and interaction model 
    o	Work with signature team to define correlation 
    signature language, and to scope and develop correlation 
    signatures 
    o	Work with test team to direct and review test 
    planning 
    o	Work with operations team to evaluate and 
    remediate new complex attacks
    
    JOB REQUIREMENTS: 
    o	Must be fluent in networking protocols, from IP 
    through application layers (HTML, SOAP, etc.) 
    o	Must have 5+ years developing intrusion detection 
    systems and working with related technologies 
    o	Must have 3+ years developing correlation systems 
    o	Must be familiar with IDS evasion and 
    countermeasure techniques 
    o	Must have expert-level knowledge of UNIX and 
    Windows security issues 
    o	Must have strong leadership and organizational 
    skills, with the ability to self-start and to lead 
    component development from beginning to end. 
    o	Must be a highly-motivated team player with strong 
    interpersonal skills, with ability to direct the 
    activities of development group and communicate 
    effectively with members of other teams 
    o	Eager to work on state-of-the-art technology in a 
    start-up environment
    
    OBJECTIVES: 
    o	Candidate must have extensive experience working 
    with intrusion detection systems such as SNORT and/or 
    ISS's RealSecure. 
    o	Experience working with ISP's and/or Federal 
    Government is a plus 
    o	Security community involvement is a plus
    
    EDUCATIONAL REQUIREMENTS: 
    o	BSEE/CS or 5+ years direct industry experience
    
    
    NHRG is the primary vendor for this client, with direct 
    relationships at all levels of management therein.
    
    --------------------
    Rob Needham
    --------------------
    NHRG, Inc
    11612 FM 2244
    Austin, TX  78738
    (512) 328-4448 (office)
    (512) 328-1696 (fax)
    robat_private
    



    This archive was generated by hypermail 2b30 : Mon May 20 2002 - 14:18:20 PDT