Analyze and define information security requirements and solutions.
• Design and test information security products.
• Identify and recommend solutions to security exposures.
• Lead project teams in system consolidation, information security software upgrades, and contingency management planning and execution
• Provide support in developing, implementing, and maintaining detailed corporate information security technology policies, principles, standards, and procedures.
• Perform ongoing overall and targeted Risk Assessment exercises of the corporate infrastructure
• Perform Penetration testing as needed
•Provide support in developing, implementing, and maintaining detailed corporate information Security technology policies, principles, standards, and procedures.
•Facilitate Standards Development Project Team meetings.
•Conduct research regarding industry best practices and emerging security technologies.
•Review security controls to ensure compliance with Avon's policies, standards, procedures, and other regulatory and legal guidelines (e.g., Sarbanes-Oxley, HIPAA, PCI, and EU Privacy).
•Assist in conducting security architectural reviews for technology projects.
•Demonstrate skill in developing and delivering a wide range of verbal and written communications to all levels of management.
Qualifications
Skills:
• Vulnerability assessment tools
• OS level Security (Windows, Unix, AS400, Main Frame)
• Public Key Infrastructure (PKI)
• Firewall technologies
• Intrusion Detection/Prevention Systems
• Client/Clientless VPN
• Encryption
• Network security
• CISSP, SSCP, GIAC, Security+, or similar certifications is highly desirable.
Minimum of 3 years of strong hands on technical experience in Information Security, and security standards and architectural reviews. Additionally, strong technical, analytical, documentation, presentation, communication, and attention to detail skills are required.