Security Evaluator

SGS
Clackamas, OR, US
Full-time

Job Description

POSITION SUMMARY

The Security Evaluator performs conformance testing services to various security standards, such as Postal and FIPS 140-2.

Conformance testing involves assessing designs and implementations for compliance to established requirements. It also involves documentation, software, hardware, physical security, logical security, functional and operational testing, and evaluation, as well as test planning and reporting.

Other tasks may include creating new testing procedures, testing tools, and report templates.

JOB FUNCTIONS

  • Provide expert security and technical services to Penumbra’s customers. This includes conformance testing services, as well as other testing services such as penetration testing, application vulnerability assessments, physical security, SPA / DPA, and network security audits.
  • Responsible for planning tests, as approved by the Technical Manager.
  • Responsible for modifying test methods and developing and validating new methods, as approved by the Technical Manager.
  • Responsible for reporting test results (including opinions and interpretations), as approved by the Technical Manager.
  • Specializes in the following product classes : FIPS 140-2 Conformance Testing, Postage Evidencing Systems (PES) Evaluations, Infrastructure Audits (ISO / IEC 27002, BSI IT), Cryptographic Algorithm Testing, Penetration Testing, IT Network and System Assessments
  • Networking Equipment and Computer Systems

Qualifications

EDUCATION AND EXPERIENCE

  • BS in computer science, mathematics, computer or electrical engineering, management information systems (MIS), or other related discipline
  • 3-5 years of experience, training, knowledge, or familiarity in 17CAV, 17CMH, and 17CMS
  • 3-5 years of experience, training, knowledge, or familiarity in 17 CMH1 Security Levels 1 to 3 to include production grade, tamperevident, and tamper detection techniques, hardware implementations and technologies associated with single-chip and multi-chip embodiments, epoxies, potting materials, adhesives ( tamper-evident labels), and their chemical properties, electrical design, schematics, and concepts, including logic design and HDL representations, skills associated with tamper mitigation methods and performing test methods of compromising tamper protection mechanisms
  • 3-5 years of experience, training, knowledge, or familiarity in 17CMH2 Security Level 4 to include voltage and temperature measurement (Environmental Failure Protection / Environmental Failure Testing (EFP / EFT)), tamper detection / response envelopes, formal modeling methods
  • 3-5 years of experience, training, knowledge, or familiarity in 17 CMS1 Security Levels 1 to 3 to include evaluating operating systems under the Common Criteria EAL2 through EAL3 or equivalents
  • 3-5 years of experience, training, knowledge, or familiarity in 17CMS2 Security Level 4 to include formal modeling methods and evaluating operating systems under the Common Criteria EAL4 or equivalent

LICENSES / CERTIFICATIONS

  • Certification to perform FIPS 140-2 testing
  • Security Certifications such as CISSP or equivalent, preferred

KNOWLEDGE / SKILLS / ABILITIES

  • Strong IT background in PC, MAC, and networking, CCNA, CCNP, CCIE
  • Knowledge of Operating Systems, Applications, Networking Appliances, and Peripheral Component technologies
  • Application programming competency in either C, C++, Java, or other languages
  • Penetration Testing experience, desirable
  • Knowledge and experience with cryptography, preferred Technical writing proficiency
  • Experience with the application of security standards and practice
  • Other : CISSP, CISA, GPEN
  • 30+ days ago
Related jobs
SGS
Clackamas, Oregon

The Security Evaluator performs conformance testing services to various security standards, such as Postal and FIPS 140-2. It also involves documentation, software, hardware, physical security, logical security, functional and operational testing, and evaluation, as well as test planning and reporti...

Promoted
Allied Universal®
Portland, Oregon

As a Security Officer - Lobby Concierge, you will serve and safeguard clients in a range of industries such as Commercial Real Estate, Healthcare, Education, Government and more. Possess and maintain an appropriate state-required security certification (“Guard Card”), or be able to obtai...

Promoted
Follett School Solutions
Portland, Oregon

Coordinates and monitors projects using a combination of internal staff, consultants, and vendors from initiation through delivery. Ensures completion of all project targets and requirements on schedule and within budget. Coordinate and manage projects throughout the lifecycle including design, deve...

Promoted
NetVendor
Tualatin, Oregon

Customer Service Representative. The Customer Service Representative is a critical part of NetVendor’s business. They provide quality customer care support to vendors, property managers, insurance agents, and account managers. Provide quality customer care support to vendors, property managers...

Promoted
American Guard Services
Portland, Oregon

Excellent knowledge of public safety and security. Must have guard card or we can assist you in obtaining one. ...

Promoted
2 Brothers Moving & Delivery
Portland, Oregon

Valid driver's license with a clean driving record. ...

Promoted
FleetGenius
Portland, Oregon

Delivery Truck Driver Job Summary:. On behalf of its customers, FleetGenius, manages both plastic and steel cart inventories, delivery, retrieval and repairs, as well as warranty management and end of life recycling. Drivers safely operate a 24' box truck and are responsible for loading and tran...

Promoted
SuperPlay LLC
Beaverton, Oregon

We are seeking a Customer Service Representative In Family Entertainment Center to join our team! You will be responsible for helping customers by providing product and service information and resolving technical issues. Handle customer inquiries and complaints. Provide info...

Promoted
Ladgov Corporation
Portland, Oregon

Security guard shall respond to any reported urgent calls within Security calls within 1-2 minutes. Security guard will, at random conduct patrols so as not to establish a pattern. Security guard shall have exclusion authority, i. Security guard shall not attempt to handle any situation that is beyo...

Promoted
Dexian - DISYS
Portland, Oregon

Responsible for facilitation of work throughout the entire IT life cycle: work with IT architects to identify technical solution(s); support project management; oversee project work and customer status; facilitate testing. Provide leadership in gathering, clarifying, and documenting requirements for...