This site uses cookies. To find out more, see our Cookies Policy

Information Security Engineer in Plano, TX at MDI Group

Date Posted: 12/5/2018

Job Snapshot

Job Description

Information Security Engineer
Contract to Hire
Plano, TX

What You Will Be Doing:

  • Ensure that all systems, applications, endpoints, and networks have appropriate and adequate security controls in place protecting Rent-A-Center data
  • Provide leadership and security expertise to project design, development, testing and deployment teams to ensure that all applications meet security requirements and are coded in a secure manner
  • Able to attain support and compliance with information security requirements & standards
  • Serve as the technical lead/technical subject matter expert on the Incident Response Team in responding to various security incidents
  • Research, recommend, and evaluate commercial information security products and services to determine which should be adopted by Rent-A-Center
  • Assume leadership roles in the development of detailed proposals and plans for new information security systems that would reduce operational risk
  • Identify and determine causes of security violations and verify/assist in the corrective actions to assure data and application security
  • Interact with internal and external auditors as needed to ensure regulatory and policy compliance.

Must Haves:

  • Bachelor's degree in Computer Science, Information Security, a related technical field or equivalent experience
  • 5 or more years of information security engineering, administration, and cyber threat research/analysis experience
  • 2 or more years of Web Application Firewall (WAF) experience
  • Cloud security (AWS – Azure) architecture, environment, and WAF experience
  • Support and manage all technical aspects of security controls for a multi-location environment
  • Evaluate, recommend, and justify appropriate commercial off-the-shelf products that support the security program requirements
  • Manage, maintain and monitor multiple security technologies
  • Ensure new system builds entail appropriate security packages, tools, logging and monitoring applications are configured properly
  • Communicate technical application security concepts to employees, including developers, architects, and managers
  • Work with development and QA teams to ensure the use of secure coding practices and verification methods
  • Participate in Application security testing to include source code analysis, dynamic application security testing using open source and commercial tools
  • Assess the security posture, develop risk profiles, specify security requirements, and identify mitigation measures to safeguard public facing Web applications
  • Implement and maintain intrusion detection and prevention systems
  • Support the Information Security Architect in design and management of a secure network infrastructure
  • Communicate with key groups (i.e. various lines of business and other technical teams) regarding potential threats and remediation efforts
  • Keep pace with emerging security threats, technologies, and systems
  • Develop and maintain operational documentation and procedures
  • Perform or coordinate penetration testing and Web application security assessment activities
  • Working knowledge of sub netting, DNS, encryption technologies and standards, VPNs, VLANs, VoIP and other network routing methods
  • Network and web related protocols (TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols, etc.)
  • Advanced Persistent Threats (APT), phishing and social engineering, network access controllers (NAC), gateway anti-malware and enhanced authentication


Search IT Jobs