At least 5 years of experience in Information Security or Networking., Industry recognized certification such as CISSP, GIAC, or Security+ is required., Strong knowledge of security operations, project management, and network security architecture., Excellent analytical, communication, and customer service skills are essential..
Key responsabilities:
Serve as the primary contact for all security-related activities for designated customer accounts.
Manage the implementation of security agreements and ensure operational compliance.
Conduct regular meetings with account teams to review security status and address any risks or incidents.
Provide security-related education and informal assessments to enhance customer security awareness.
Report This Job
Help us maintain the quality of our job listings. If you find any issues with this job post, please let us know.
Select the reason you're reporting this job:
Trustwave is a globally recognized cybersecurity leader that reduces cyber risk and fortifies organizations against disruptive and damaging cyber threats.
Trustwave’s comprehensive offensive and defensive cybersecurity portfolio detects what others cannot, responds with greater speed and effectiveness, optimizes its client’s cyber investment, and improves security resilience. Trustwave leverages its world-class team of security consultants, threat hunters, and researchers, and its market-leading security operations platform to decrease the likelihood of attacks and minimize potential impact.
Trustwave is an analyst-recognized leader in managed detection and response (MDR), managed security services (MSS), cyber advisory, penetration testing, database security, and email security.
Trustwave Government Solutions is a leading provider of data security and compliance services to the U.S. Federal government. Our team of security experts, ethical hackers and researchers, enables our government partners to transform the way they manage their information security and compliance programs results to ensure each customer receives valuable outcomes at the best value. The agencies we work with benefit from our collaborative, innovative approach to meeting their unique needs. We listen carefully and respond nimbly. Our solutions combine industry best practices with customized technology to ensure quality and integrity.
About The Role
The Information Security Advisor function provides a single point of contact for all security-related activities for designated customer accounts, and takes a key leadership role by providing extensive hands-on guidance in the development and implementation of security policies as related to designated accounts. The role extends further by providing hands-on consultative security expertise to the customer in making and recommending key decisions in the area of security, which may include security architectural work, operational support, and other duties in support of the customer. As it pertains to consultancy, management and focus varies greatly from account to account as there are variable customer and contractual requirements. The Information Security Advisor function possesses a combination of skills including: industry recognized certification (CISSP), general security expertise and project management skills.
Duties
Provide a single point of contact to the account management and delivery teams for all operational security related activities for the customer account. Maintain and oversee relationships for all delivery organizations providing security support.
Manages the implementation of the Security Agreement. Proactively drives the operational compliance on the account. Provide in-house consultancy on information risk management matters and advise on the implementation of security controls on the Account.
Oversee the implementation and management of operational security activities,processes and policies as required (e.g. Security Incident Management Process).
Track and assist in the management of the resolution of reported operational security issues. Recommend actions, reviewing plans and monitoring progress of remedial actions. Manage to resolution security risks identified as a result of reviews and audits, changes in Trustwave or customer environment, changes in operating practices or processes, changes in technology etc.
On a regular basis (recommended at least monthly), meet with the account team to review security status, review any risks, issues, incidents, outstanding activities, current and planned changes.
Provide informal security assessments for Trustwave delivered processes or architectures to ensure that contractual requirements for information risk management and security controls are satisfied. Regularly review the delivery environment of the account to identify security risks to Trustwave or the customer.
Participate in change control (review and/or approval) activities for changes that may impact the customer's security posture
Serve as a dedicated focal point for managing security or anti-virus incidents that occur in the customer's environment.
Provide security-related education to ensure security awareness and knowledge of customer applicable security policies and processes. Answers questions and concerns regarding customer applicable security policies and processes.
Ensure that opportunities to improve security are identified. Research new security technologies and practices and recommend additional security services as required.
Offer executive-level presentations for the account or client management and proactively keep Trustwave senior leadership abreast of all account concerns.
Skills And Knowledge Requirements
Must have advanced skills/knowledge in several of the following areas:
Background
Information Security Operations
Project Management
Network Security Architecture & Administration
Windows / Linux Administration
Understanding
Must understand TCP/IP networking and routers/access control devices
Must understand vulnerability management
Broad understanding of threat hunting and incident response activities
Must have intermediate knowledge of common technologies (SIEM, EDR, FW, IDS/IPS, AV, SEG, DLP, etc)
Technology Experience
SIEM technologies (Splunk, QRadar, LogRythm, Sentinel, etc) Strong expertise in Sentinel is highly preferred.
Firewall technologies (Palo Alto, Fortinet, Cisco, Check Point, Juniper, etc)
Endpoint security technologies (Microsoft Defender, Carbon Black, Cybereason, Cortex, Crowdstrike, etc) Experience with Microsoft Defender is highly preferred.
Microsoft security suite preferred (Sentinel, Azure, MDATP, etc)
Skills
Excellent customer service skills
Excellent analytical thinking and problem-solving skills
Strong communication skills
Self-managed/directed and team oriented
Strong project management skills
Deadline and detail oriented
Highly self-motivated
Required
At least 5 year experience in Information Security or Networking
Certification(s) in Security Sector (CISSP, GIAC, Security+, Cisco etc.)
Education
A high school diploma or equivalent is required; a college or university degree is a plus.
This is a remote opportunity open to anyone legally authorized to work in the United States. Guided by our flexible workplace philosophy, Moments That Matter, people gather in the office when in-person interaction is most impactful; full-time remote employees may be asked to travel occasionally based on the needs of the team and the business.
Trustwave is an Equal Opportunity Employer. We are committed to creating an inclusive environment for all employees and applicants. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other protected status under applicable laws.
Trustwave is also committed to providing reasonable accommodations to qualified individuals with disabilities. If you require assistance or accommodation due to a disability, please contact our Human Resources department at HR@trustwave.com.
Per Federal government contracting requirements, candidate must (1) be a US citizen, (2) pass and maintain a National Agency Check with Local Agency and Credit Checks (NACLC), and (3) obtain all required security clearance(s).
To All Agencies
Please, no phone calls or emails to any employee of Trustwave outside of the Talent Acquisition team. Trustwave’s policy is to only accept resumes from agencies via the Trustwave Agency Portal. Agencies must have a valid fee agreement in place and they must have been assigned the specific requisition to which they submit resumes, by the Talent Acquisition team. Any resume submitted outside of this process will be deemed the sole property of Trustwave and in the event a candidate is submitted outside of this policy is hired, no fee or payment of any kind will be paid.
Required profile
Experience
Spoken language(s):
English
Check out the description to know which languages are mandatory.