Category: security

  • Cybersecurity specialist Patuxent

    checkout the courses:
    https://securitycompliance.thinkific.com

    The job:

    Position: Cyber Security Lead #ISSO #ISSM
    Location: Patuxent River, Maryland


    https://www.youtube.com/watch?v=GmTvpY8UcgA

    Full time position

    Required Clearance: Secret / Top Secret
    Required Certifications: IAT level III Certification.

    Required Experience: Five (5) years of experience in IT security, including A&A and/or IT security risk analysis, preferably in support of the Federal Government

    Skills:

    · Managed team of people.
    · Knowledge of Federal Government SA&A practices and policies, particularly FISMA and NIST.
    · Must be motivated and results oriented.
    · Effective written and oral communication skills.
    · Previous Federal Government or National Archive experience a plus
    Role:
    Provide subject matter expertise in the provision of information assurance (IA) support for certification and accreditation (C&A), DIACAP or RMF accreditation package and artifact generation, requirements analysis, security test and evaluation (ST&E) plans and execution, risk assessments, systems analysis and hardening, incident response and policy analysis, trusted product evaluations, IA program assessments, and security posture presentations. Provide analytical support for the development and submission of C&A documentation in compliance with the DIACAP or RMF requirements. Apply knowledge of technology, analyze the security implications of systems and applications security, and provide recommendations to decision-makers and engineers. Provide experience-based advice and assistance to facilitate C&A efforts.

    Please provide the following information
    Current Salary:
    Salary Expectation:
    Full Name:
    Contact No:
    Best time to call you:
    Email address:
    Current Location:
    Relocation:
    Availability:
    Visa status:
    Clearance:

    Thanks & Regards,

    Terry Dean
    Sr. Technical Recruiter- Federal
    E-Talent Network

    8(a) / SDB | CMMI level 3 Certified
    Direct: 703-687-6627 Ext.384
    Email: terryd@etalentnetwork.com

  • Senior Advanced Splunk IT Specialist

    Check out how I am able to get all these offers: https://securitycompliance.thinkific.com

    More on that #splunk job: Sr Advanced Splunk / IT Security Specialist https://careers-gd-ais.icims.com/jobs…

    POC: quan.nguyen@gd-ms.com 443-755-8136 (O)

    Bachelor’s degree in a related specialized area or equivalent is required plus a minimum of 8 years of relevant experience; or Master’s degree plus a minimum of 6 years of relevant experience.

    Knowledge Skills and Abilities: Senior Splunk Administrator Advanced knowledge of backend operating systems to implement, maintain, configure, and remediate issues (UNIX/Linux/Windows) Knowledge of operating systems and networking. Understanding of SIEM & logging fundamentals. Understanding of SOC Monitor and Response fundamentals. Experience in any type of SIEM – Splunk, Arcsight, Log Rhythm, etc. Experience with implementation of SIEM products and tools. Understanding of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc. Knowledge of various operating system flavors including but not limited to Windows, Linux, Unix Knowledge of applications, databases, middleware to address security threats against the same. Proficient in preparation of reports, dashboards and documentation Excellent communication and leadership skills Ability to handle high pressure situations with key stakeholders Good Analytical skills, problem solving and Interpersonal skills Working knowledge and experience with MS office with proficiency in Excel Preferred degree types and experience: The leading candidate will have a Bachelor’s Degree in Computer Science, a related field, or equivalent experience. with a minimum of 5 years of experience in a SOC, or an Associates Degree in Computer Science, Information Systems, Cyber Security, or related discipline with a minimum of 7 years of experience in a SOC. Strong candidates will have previous experience working with users; possess a talent for problem-solving as well as organization and time management skills.

    Desired Certifications: CISSP, Network +, Security + (or other applicable certifications)

  • What is payment card industry PCI data security standard DSS?

    What is payment card industry PCI data security standard DSS?

    I got the chance to talk to a Payment Card Industry (PCI) professional. James is in the PCI IT industry and tells about it from inside the field. It is a great opportunity to learn about this growing career path. We talked about how the PCI security standard compares to the Risk Management Framework. Here are some of the resources we talked about: https://www.pcisecuritystandards.org/… https://www.pcicomplianceguide.org/ Enroll to learn MORE on security compliance: https://securitycompliance.thinkific.com

  • NIST 800 37 Revision 2 – RMF for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy

    Download the presentation in this Video & Learn more here:

    http://securitycompliance.thinktific.com

    This is an overview of NIST 800-37 Revision 2. I discuss the changes, the sources and Cybersecurity Framework.

    NIST Special Publication 800-37, Revision 2
    Risk Management Framework for Security and Privacy
    Initial Public Draft: May 2018
    Final Public Draft: July 2018
    Final Publication: October 2018

    NIST 37-800 Rev 2:
    http://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-37r1.pdf

    Executive Order:
    https://www.whitehouse.gov/presidential-actions/presidential-executive-order-strengthening-cybersecurity-federal-networks-critical-infrastructure/

    OMB:
    https://www.whitehouse.gov/sites/whitehouse.gov/files/omb/memoranda/2017/M-17-25.pdf

    Cybersecurity Framework:
    https://www.nist.gov/sites/default/files/documents/cyberframework/cybersecurity-framework-021214.pdf

    NIST SP 800-53 (Revision 5):
    https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/draft

    Source of Changes:
    President’s Executive Order on Strengthening the Cybersecurity of Federal Networks and Critical Infrastructure
    Office of Management and Budget Memorandum M-17-25 – next-generation Risk Management Framework (RMF) for systems and organizations
    NIST SP 800-53 Revision 5 Coordination

  • WEBINAR: GSA, DHS, NIST on personal mobile security, THU 11/10 (CPEs)

    Securing and managing agency mobile apps.
    WEBINAR, THU 11/10, Complimentary, CPEs

    This important video webinar will explore how mobile apps
    rapidly expand in agency networks and how agency experts
    limit security risks while they manage mobile Web devices
    to drive agency productivity and mission achievement.

    REGISTRATION AND INFO
    https://goto.webcasts.com/starthere.jsp?ei=1123951&sti=emc

    ALTERNATE REGISTRATION LINK:  www.FedInsider.com

    WEBINAR TOPIC
    The Framework for Mobile Security in Government

    DATE: THU 11/10
    TIME: 2:00 PM ET / 11:00 AM PT
    DURATION: 1 hour
    CPE: 1 CPE from the George Washington University,
    Center for Excellence in Public Leadership
    COST: Complimentary

    SPEAKERS
    – JON JOHNSON, Enterprise Mobility Team Manager, GSA

    – VINCENT SRITAPAN, Program Manager, Cyber Security
    Division, DHS Science and Technology (S&T) Directorate

    – JOSHUA FRANKLIN, Information Security Engineer, NIST

    – JOHNNY OVERCAST, Director of Government Sales, Samsung
    Electronics America

    – TOM TEMIN, Host and Managing Editor, The Federal Drive,
    Federal News Radio 1500 AM

    PRESENTED BY: WTOP, Federal News Radio, FedInsider News,
    and The George Washington University Center for
    Excellence in Public Leadership

    *** OTHER GOVT-INDUSTRY CPE CREDIT EVENTS IN THE SERIES ***
    Visit www.fedinsider.com

    CART services provided for captioning for all webinars.

    Looking forward to meeting you online!

    Peg Hosky, President

    Email: peg@hosky.com
    Phone: 202-237-0300
    www.FedInsider.com
    LinkedIn: www.linkedin.com/in/peghosky
    Twitter:  @peghosky

    FedInsider News
    3811 Massachusetts Avenue NW
    Washington DC 20016
    F10-171912

  • network security engineer salary

    The average network security engineer salary is way above the national average.   The national average annual income as of 2012 was $50,017 (with 15% in poverty).  The average network security engineer salary is $84000/year.

    Network security engineer salary vs. American Average
    network security engineer salary against Average American Salary

    The reason that network security engineers can make such a good income is the level of expertise required.  They often have to have a 4 year degree, IT certifications and a few years experience in the field.  The level of technical knowledge required is higher than the average professional skill set even by IT standards.  The network security engineer has to have a working understanding of both security & networking bodies of knowledge.

    Of course, nothing beats experience but some or the top network security engineer salary “contributing factors” include:  CISSP, GCIA, GCIH, CEH.  Then there are specific vendor certifications that depend on the product but as of 2014, Cisco certs are strong in the market, Juniper, Checkpoint, Palo Alto or any of the top tier firewalls IDS/IPS and SIEM devices.  Any sort of certifications, experience and/or training is relevant with specific devices.

    Average Salary of Network Security Engineers and related titles (from indeed.com – 2013)

    http://www.indeed.com/salary/Network-Security-Engineer.html

     

    references:

    data gathered from http://www.census.gov/hhes/www/cpstables/032012/hhinc/toc.htm and wikipedia

    http://money.cnn.com/2013/09/17/news/economy/poverty-income/

     

  • network security specialist salary

    Network security specialist salary has been going up for high level network security professionals.  As the field gets more complex and more assets go online with more exposure to increasing advanced persistent threats, network security professionals have become more in demand for large organization like banks, governments, and corporations.

    Network security specialist salaries depends on several factors:

    Budget of the organization – The organization looking for the network security specialist has a certain salary range and/or money allocated to the scope of work expected over a certain length of time.  The scope and length of time is directly related to the needs of the organization.

    Experience – What a network security specialist has done in the past matter more than a piece of paper.  Organizations depend heavily on the experience that a potential employee brings to the table.  A functional “working knowledge” is necessary.  Not just book knowledge.

    Degrees & Certifications – While degrees and certifications offer very little proof in how much a new employee can actually DO, it is a great level of assurance for the organization.

    One of the best places to find out salary ranges is Glassdoor.  Salaries fluctuate overtime so I would highly recommend doing to the site.

    http://www.glassdoor.com/Salaries/network-security-specialist-salary-SRCH_KO0,27.htm

    1. The average salary for information security analysts was $89,290 in May of 2012. Requirements to Become a Network Security Specialist. According to the U.S. Bureau of Labor Statistics (BLS), employers often require network security specialists to have a bachelor’s degree in a computer-related field (www.bls.gov).
  • HP0-M54 ArcSight ESM Security Analyst

    History of ArcSight ESM Security Analyst Certification:

    HP0-M54 ArcSight ESM Security Analyst (aka HP Technical Certified II – ArcSight Security Analyst 2012) took the place of ArcSight Certified Security Analyst (ACSA) aka ArcSight ESM Security Analyst (AESA).  The confusion on certification names comes from the acquisition of ArcSight by HP in 2010.  ArcSight had already created a certification for the ESM (admin and analyst), but once HP took it, they started to integrate it into their ExpertOne certifications.

    I have noticed that companies look for the old ACIA/ACSA when they want an ArcSight certified professional not knowing that that cert no longer exists.

    reference:  http://h10120.www1.hp.com/expertone/view_certifications.html

    HP ArcSight ESM ArcSight Prerequisites:

    To pass this exam, you should have at least 6 months experience using ArcSight ESM or successfully completed ArcSight ESM Security Analyst training. Exams are based on an assumed level of industry-standard knowledge that may be gained from the training, hands- on experience, or other pre-requisite events. You should also be knowledgeable about Common security devices and their functions, such as IDS & firewalls; network device functions, such as routers, switches, hubs, etc.; TCP/IP functions, such as CIDR blocks, subnets, addressing, communications, etc.; Basic Windows operating system tasks & functions; Possible attack activities, such as scans, man in the middle, sniffing, DoS, etc and possible abnormal activities, such as worms, Trojans, viruses, etc.; SIEM terminology, such as threat, vulnerability, risk, asset, exposure, safeguards, etc.; Security directives, such as Confidentiality, Integrity, Availability.

    HP ExperOne does not list the Objectives for this cert for some reason (standard LACK of HP taking on too much business with too little staff IMHO).  Anyway, after taking this certification just make sure you have experience with each of the ArcSight Console Resources.  You should use each until you understand them because questions are about the resources.

    How to take the HP0-M54 ArcSight Admin Cert

    That certification can be taken through Pearson VUE.  You have to get an account with HP ExpertOne first.  HP issues an “HP Learner ID”

    The test cost about 250USD and has about 75+ questions.

    There are so many braindumps articles and “products” for this certification.  Its really unfortunate that HP has not done more to make this certification more relevant since ArcSight is the top SIEM in the world (circa 2014).  HP is trying but sometimes it seems they have more products and services than they can handle.  They did recently update HP0-M54 so thats positive.

    If you are planning on taking this certification, you should think about NOT doing braindumps.  Get some actual experience with the product.  You can downloaded it for a free trial and play with it.  If you want to make money in as an ArcSight subject matter expert you will have to put in some real time and effort.  The test will not do anything for you without experience.

     

     

     

     

     

  • 6 tips for mobile device security & privacy

    If you have a mobile device, you realize how powerful it can be.  The more you rely on these devices the more you need to be aware of protecting your data on them.  Here are 6 quick tips to protect you mobile device:

    1. Separate phone / SIM card – A separate phone / SIM card helps you keep your privacy on personal matters.  Use a separate phone or SIM for work, home or for your personal business.  Keeping it separate helps keep all transactions on a specific device.

     2.  Mobile device security code – creating a phone security code prevent anyone from spying your phone by just picking it up and tapping a button.

    for privacy use passcode
    use cell phone privacy lock screen-pin

     3 . Delete history – You mobile device saves and tracks all transactions by default.  So if someone got access to the it, they could see everyone you contacted back to the first day you activated the device.  Deleting phone calls and messages remedy that some what.

     4. Keypad lock – You must have your keypad automatically lock after  a short period of inactivity just in case you set your device down and forget to lock it manually.  The shorter the time you set (ex:5 seconds) the better.

     5. SIM card code – for confidential contacts, setting a code into your SIM card is a must.

     6. No automatic email log in – do not set your emails into automatic log-in so people cannot trace your personal info by merely picking up your phone.

    Mobile devices with links in to social media, personal email accounts, contacts, and transactions can give someone immediate access into all aspects of your personal life.  Its important you implement some or all of these tips if you want to maintain some of your privacy.

  • DIACAP to DIARMF: Assessment Authorization

    DIACAP to DIARMF: Assessment Authorization

    With the move from certification and accreditation (C&A) to risk management framework, comes a few new terms.  “C&A” will be replaced with assessment and authorization.  Even though “information assurance (IA) controls” will be call “security controls”, the definition and work is still the same, but the hope is that its done continuously and more cost-effective.

     

    Certification (NIST Assessment) – Comprehensive evaluation of an information system assessment of IA Controls/Security Controls to determine the extent to which the controls are implemented correctly and operating as intended. That means when evaluated, they produce the desired outcome.  An assessment is about gathering information to providing the factual basis for an authorizing official (Designated Accrediting Authority) to render a security accreditation decision

    Accreditation (NIST Authorization) – Security accreditation is the official management decision to operate (DAA – Formal approval of the system). Authorization is given by a senior agency official (upper-management/higher head quarters/combat commander). The official should have the authority to oversee the budget and business operations of the information system explicitly accept the risk to operations, assets, individuals. They accept responsibility for the security of the system and are fully accountable for the security of the system.

    “The official management decision given by a senior organization“The official management decision given by a senior organizational official to authorize operation of an information system and to explicitly accept the risk to organizational operations (including mission, functions, image, or reputation), organizational assets, individuals, other organizations, and the Nation based on the implementation of an agreed-upon set of security controls.”

    – NIST SP 800-37 rev 1

    March 14, 2014, UPDATE RMF – DoD IT:

    DIARMF will be known as Risk Management Framework for DoD IT.

    Â