Staff Security Engineer
Citrix Systems
Bangalore, India
7h ago

We believe work is not a place, but rather a thing you do. Our technology revolves around this core philosophy. We are relentlessly committed to helping people work and play from anywhere, on any device.

Innovation, creativity and a passion for ever-improving performance drive our company and our people forward. We empower the original mobile device : YOU!

What we're looking for :

The Global Security Assurance team is seeking a candidate for supporting the High Value System compliance program. We are looking for an experience Security Engineer to perform internal control assessment and remediation of internal systems.

The role will work with multiple organizations to perform risk assessment and evaluate the maturity of the controls through continuous monitoring and establish automation programs to enhance control assessment.

Control and compliance data is managed through System Security Plans and result in similar remediation activities that is monitored similar to Plan of Actions and Milestones (POAM).

Role Responsibilities :

  • Perform security assessment against regulatory, compliance or federal program controls.
  • Maintain security-related statutory / regulatory documentation as required by DoDI 8510, including the Plan of Actions and Milestones (POA&M) and Corrective Action Plans (CAPs).
  • Conduct weekly meetings to track the security process, the status of the accreditation package and finding resolution on the enterprise infrastructure.
  • Track all implementation information for assurance directed guidelines for applicable software ensuring proper security.
  • Implementation actions include but are not limited to STIGs, compliant patch implementation / management, Information Assurance Vulnerability Management (IAVM) compliance, integration / implementation of network or firewall approved devices, and react appropriately to cyber threats.

  • Support and perform DoD Risk Management Framework (RMF) in accordance with NIST 800-53.
  • Coordinate with internal and external organizations, agencies and activities to support resolution of security issues, accreditation and waiver request that impact the ability to obtain connection approval.
  • Recommend connection approval, disapproval or modification based on security risks and system vulnerabilities.

  • Develop or support the development of internal tooling for automation of compliance and control tracking.
  • The ideal candidate will have :

    Basic Qualifications

  • A minimum of 5 years of experience with compliance and regulatory controls
  • Minimum of 8 years of experience in the Information Security
  • Minimum of 8 years of Information Technology
  • Experience with Security Assessments
  • Experience with Network Security Architecture
  • Previous project management or highly honed organization skills
  • Knowledge of cloud computing architecture and security controls
  • Knowledge of Enterprise Security Risk assessment
  • Experience with IT Infrastructure
  • Strong analytical and problem-solving skills
  • Strong communication skills
  • What you’re looking for :

    Our technology is built on the idea that everyone should be able to work from anywhere, at any time, and on any device. It’s a simple philosophy that guides everything we do including how we work.

    If you’re an engineer, we’ll give you plenty of ways to test your skills on cutting edge technology. We want employees to do what they do best, every day.

    Be bold. Take risks. Imagine a better way to work. If this sounds like you then we’d love to talk.

    Functional Area : Security Engineering

    Security Engineering

    Report this job
    checkmark

    Thank you for reporting this job!

    Your feedback will help us improve the quality of our services.

    Apply
    My Email
    By clicking on "Continue", I give neuvoo consent to process my data and to send me email alerts, as detailed in neuvoo's Privacy Policy . I may withdraw my consent or unsubscribe at any time.
    Continue
    Application form