Must Have:
Live in California
experienced with Rapid7 (or similar security scanning software) to review, plan, and resolve vulnerabilities in the software
Ideally, this person is comfortable logging into both Windows and Linux systems. Or one person could be Linux-focused while the other is Windows.
An ideal candidate will have experience automating patch deployments and/or configuration changes via Puppet on Linux and/or Windows. Middleware Cyber Security Contractor
We are looking for 2 engineers experienced with Rapid7 (or similar security scanning software) to review, plan, and resolve vulnerabilities in the software listed below.
Ideally, this person is comfortable logging into both Windows and Linux systems. Or one person could be Linux-focused while the other is Windows.
Must understand, interpret, and implement the best solutions to remediate security vulnerabilities while maintaining business functionality.
Must also be able to explain why one solution is better and evaluate/share risk if any.
The solution could be a patch or a configuration change. You must be able to perform both.
An ideal candidate will have experience automating patch deployments and/or configuration changes via Puppet on Linux and/or Windows. The expected process to understand when a patch is released for the software is below:
Evaluate patch release, identify a security fix, and start a patching cycle immediately.
Communicate to stakeholders
Document and test implementation
Deploy and validate in non-prod environments
Obtain customer signoff
Coordinate production deployment Responsible for maintaining the below software:
IBM
WebSphere 8.5.5 / 9.0.5
FileNet Content Platform Engine 5.5.11
Content Navigator 3.0.14
DataCap 9.1.9
InfoSphere 11.7.1
Java 8.0.8.x
RedHat
JBOSS EAP 7.4.18 / 8.0.2.1
Tomcat 9.0.93 / 10.1.28
Apache HTTP 2.4.62
Java OpenJDK 1.8.x / 17.x / 21