email this posting to a friend vancouver, BC craigslist > vancouver > jobs > systems/networking jobs
please flag with care:

miscategorized
prohibited
spam/overpost
best of craigslist
Avoid scams and fraud by dealing locally! Beware any deal involving Western Union, Moneygram, wire transfer, cashier check, money order, shipping, escrow, or any promise of transaction protection/certification/guarantee. More info

Application Security Consultant (Vancouver-Lower Mainland)


Date: 2009-10-28, 4:34PM PDT
Reply to: job-ezu59-1442076643@craigslist.org [Errors when replying to ads?]


We are a security services company based in Vancouver/Toronto with clients across Canada and the US. We
* perform application/network penetration tests and vulnerability assessments
* perform PCI/PA-DSS compliance verification
* conduct security training for developers and system admins

We are expanding the team and are looking for dynamic individuals with a solid work ethic as security consultants. We offer a very competitive compensation package that rewards good work. We need people who are good at what they do and can work with clients and meet their requirements.

Duties and Responsibilities
• Conduct comprehensive security assessments (penetration testing and/or code reviews) of complex NTier web applications
• Assist clients in developing best practices for secure web application development
• Provide web application security training to small groups of application developers, QA testers, and InfoSec engineers.
• Use your proven communication skills to prepare written reports at the engineering, manager and executive level
• Showcase your organization, coordination and engagement planning skills to ensure that products/deliverables meet contract/work plan
• Put your analytical mind to use assessing clients online commerce readiness and provide appropriate security assistance
• Recognize and communicate opportunities to further assist clients with any additional security needs
• Some travel required

Required Skills
• Experience in Application Penetration Testing (manual testing, OWASP, AppScan, HailStorm,WebInspect, BurpSuite, Paros, Fortify SCA, Ounce, etc)
• Ability to understand NTier web architecture as it relates to security
• Experience with server-side programming (ASP.NET, VBScript, C#, Jscript, Java, C/C++)
• Understanding of HTTP protocol
• Understanding of SSL/TLS and related encryption technologies

Desired
• CISA, CEH, PCI-QSA certifications

Please reply with your resume (pdf/doc), availability and contact information. This is a full-time position only. No contractors or recruiters.
NOTE: Please make sure that you meet the requirements listed here and highlight them in your cover letter to be considered. Only qualified candidates will be contacted. This is not a desktop support position.



PostingID: 1442076643