Information Security Advisor - Network Decryption...
Role details
Job location
Tech stack
Job description
Responsible for designing, implementing, and supporting enterprise network decryption solutions across hybrid on-premise and cloud environments. This role ensures secure visibility into encrypted traffic and helps maintain compliance with enterprise security standards, policies, and regulatory requirements. Partners with infrastructure and security teams to deliver secure, scalable, and well-architected network security solutions
How You Will Make an Impact:
-
Supports system and network architecture support for information security and network decryption technologies
-
Supports development and execution of risk assessment methodologies to fit business, regulatory, and technical environment considerations
-
Supports the development of requirements, system architecture, and technical design of network security and decryption solutions
-
Supports the development of strategies for discovery, evaluation and response to emerging network and encrypted traffic threats
-
Develops security incident response plans and operational support strategies
-
Provides trouble resolution and serves as point of technical escalation on complex network, certificate, and decryption-related issues
-
Creates presentations and seeks IT management approval and acceptance of significant replacements or reconfigurations of major security systems serving the Enterprise
-
May be assigned to project teams for technical consultation to business partners and developers
-
Designs & engineers comprehensive network decryption solutions based on business requirements and defined technology standards; works with architecture to update technology direction & strategy
-
Develops reports supporting strategy and direction for management
-
Acts as a subject matter expert among peers, with manager and senior management
-
Must be capable of providing top-tier support for 5 or more of the information security technology common body of knowledge skill sets: 1) Access Control, 2) Application Security, 3) Business Continuity and Disaster Recovery Planning, 4) Cryptography, 5) Information Security and Risk Management 6) Legal, Regulations, 7) Compliance and Investigations, 8) Operations Security, 9) Physical (Environmental) Security, 10) Security Architecture and Design, 11) Telecommunications and Network Security
Requirements
- Requires BS/BA in information Technology or related field of study and a minimum of 8 years experience in systems administration and security aspects of information systems, access management and network security technologies, network communications, computer networking, telecommunications, systems development and management, hardware, software, data, and people; experience with multiple technical and business disciplines required; requires broad-based experience to plan and design highly complex systems; or any combination of education and experience, which would provide an equivalent background.
Preferred Qualifications:
-
Experience in network security, packet analysis, or network decryption operations
-
Hands-on experience with SSL/TLS decryption technologies in hybrid on-premise and cloud environments
-
Strong knowledge of TCP/IP, routing, switching, DNS, HTTP/S, and enterprise network protocols
-
Experience with Next-Generation Firewalls (NGFW) and encrypted traffic inspection
-
Strong packet capture and troubleshooting experience using tools such as Wireshark
-
Understanding of PKI, TLS handshakes, cipher suites, and encrypted traffic inspection methodologies
-
Experience managing application, operating system, and platform-level trust stores
-
Experience with AWS, Azure, and/or GCP networking and secure connectivity models
-
Experience with Hardware Security Modules (HSM) and Network Packet Brokers (NPB) is a plus
-
Strong troubleshooting, documentation, and cross-functional communication skills
-
Experience administering and troubleshooting Arista network infrastructure is a plus
-
Scripting or automation experience using Python, Bash, or similar technologies is a plus
-
Experience with SSL certificate management platforms and certificate lifecycle management is a plus
-
Security Certifications: CISSP and other advanced technical security certifications (e.g. Information Systems Security Architecture Professional, Information Security Engineering Professional, Certification and Accreditation Professional, or equivalent certifications) is a plus
Benefits & conditions
At Elevance Health, we are creating a culture that is designed to advance our strategy but will also lead to personal and professional growth for our associates. Our values and behaviors are the root of our culture. They are how we achieve our strategy, power our business outcomes and drive our shared success - for our consumers, our associates, our communities and our business.
We offer a range of market-competitive total rewards that include merit increases, paid holidays, Paid Time Off, and incentive bonus programs (unless covered by a collective bargaining agreement), medical, dental, vision, short and long term disability benefits, 401(k) +match, stock purchase plan, life insurance, wellness programs and financial education resources, to name a few.
Elevance Health operates in a Hybrid Workforce Strategy. Unless specified as primarily virtual by the hiring manager, associates are required to work at an Elevance Health location at least once per week, and potentially several times per week. Specific requirements and expectations for time onsite will be discussed as part of the hiring process.
The health of our associates and communities is a top priority for Elevance Health. We require all new candidates in certain patient/member-facing roles to become vaccinated against COVID-19 and Influenza. If you are not vaccinated, your offer will be rescinded unless you provide an acceptable explanation. Elevance Health will also follow all relevant federal, state and local laws.