Skip to main content CDW
eeo icon

CDW is an equal opportunity/affirmative action employer committed to a diverse and inclusive workplace.
If you need assistance in applying for a position, please complete our accommodation request form.

Engineer, Sirius MessageOps Securityat CDW Careers

Job ID: 
22002747
Focus Area: 
Data Security
Date Posted 
May 31, 2022
Location: 
Remote, Remote
Employment Type: 
Full-Time

Sirius Computer Solutions is a CDW company. We share common values as a performance-driven, customer-focused culture. CDW is a leading multi-brand provider of information technology solutions to business, government, education and healthcare customers across the globe.

Position Summary
The primary purpose of this position is to ensure the security  Sirius’ unique Inscape Cloud business platform.   This role will primarily perform static application security review and testing in the software development lifecycle,  as well as educate stakeholders on the discovered vulnerabilities and risks.    
Primary Duties & Responsibilities

  • Performs a variety of activities in support of security of the Inscape solution, which may include, but are not limited to:
    • Developing and document security tests and risks
    • Carrying out security testing of applications and/or platforms to discover security vulnerabilities
    • Performing manual & automated security testing.
    • Performing manual & automated security code review
    • Performing manual testing to validate vulnerabilities
    • Reviewing the testing results with stakeholders and creates a report to review results with stakeholders
    • Assisting in the design and implementation of security solutions.
  • May lead code or other technical reviews and present constructive feedback to technical team
  • Participates in requirements gathering activities, integrating multiple user requirement areas into the overall requirements document
  • Builds focused relationships to identify business challenges
  • Makes recommendations to solve problems
  • Documents completed technical work 
  • Maintains technical specifications throughout a project
  • Maintains accountability to work estimates and project financials
  • Contributes to and develops best practices, strategies, methodologies and documentation/templates suitable for use by other Consultants and Analysts
  • Provides technical perspective to ensure a realistic estimation of scope, cost and level of effort
  • May serve as a point of contact to clients for technical issues and status
  • Mentors less senior personnel and serves as escalation point for their technical related project issues
  • Complies with all time compliance and time entry guidelines
  • Training/Certifications - Engages in professional development, including obtaining industry related certifications as directed by management, to maintain continued growth in professional skills and knowledge
  • Administrative Overhead – Responds to email, phone calls, completes time cards in a timely manner, expense reports and status reports as required

Basic Qualifications

  • Bachelor’s degree in Computer Science, Management Information Systems, Information Technology, Engineering, Mathematics or a related field
  • At least three (3) years related work experience focused on application security 

Other Required Qualification

  • Demonstrated understanding of the OWASP top 10 and experience in discovering, verifying, and exploiting these vulnerabilities. 
  • Demonstrated knowledge of the following vulnerabilities: 
  • XML External Entity (XXE) Processing 
  • Cross Site Scripting (XXS) 
  • Injection style vulnerabilities such as SQL Injection (SQLi) 
  • Demonstrated knowledge of the common approaches to remediating the OWASP top 10 
  • Demonstrated knowledge of the OWASP Application Security Verification Standards (ASVS) 
  • A working knowledge of Secure SDLC best practices 
  • Experience with programming or scripting languages such as C#, Python, Powershell, Bash, Ruby, Java, XML, SOAP, JSON, AJAX, etc. 
  • Demonstrated ability to collaborate effectively with a wide variety of client and Sirius team members, including management and technical staff
  • Demonstrated ability to investigate complex problems where analysis of situations or data requires an in- depth evaluation of variable factors from multiple solutions and/or disciplines
  • Demonstrated understanding of core business functions of a typical company, and ability to employ step by step logic to solve business problems
  • Experience as a member of a technical project team, from design through delivery
  • Experience troubleshooting and identifying potential problems and making appropriate changes as necessary
  • Experience creating technical documentation
  • Demonstrated ability to provide guidance and leadership to less experienced technical team members
  • Demonstrated presentation and communication skills, including effectively communicating one-on-one, and in small and large groups, using a variety of presentation methods to sustain the audiences’ engagement
  • Demonstrated time management and organizational skills; ability to handle multiple tasks simultaneously
  • Demonstrated ability to establish positive working relationships and conduct complex and important work critical to the organization in a team  environment

Preferred Qualifications

  • Knowledge of C# programming and .NET frameworks 
  • Consulting experience, especially in an agency or global systems integrator environment
  • Certifications in relevant areas of specialty

Data Privacy and Security

  • All Sirius employees are responsible to safeguard the information and information systems that they use or handle in the execution of their duties. Employees are obligated to know and perform their duties in accordance with Sirius policies, standards, and procedures related to security and report security violations to the appropriate Sirius authority.
  • Participate at hire and annually in the Information Security Awareness training as well as other required training identified by the Human Resources department. Other data privacy and data security related regulatory training may be required based on your role or assignment.

Essential Functions
This position exists to provide technical consulting solutions to customers and as such requires the ability to travel to and from customer sites and interact with customers on an ongoing and regular basis.

The above primary duties, responsibilities, and position requirements are not all inclusive.

COVID-19 Update:
CDW is committed to maintaining a workplace that is free of known hazards and to ensuring the safety, health, and well-being of coworkers and candidates for employment and their families, as well as the community.

CDW requires all coworkers be fully vaccinated against COVID-19, with the only exceptions being a documented, legally required medical or religious accommodation.  Prior to starting with CDW, successful candidates will be required to: (i) be fully vaccinated against COVID-19 and provide CDW with proof of full vaccination; or (ii) apply for and receive a medical or religious-based accommodation to be exempt from the mandatory vaccination policy.

 
Create Job Alert
Create Job Alerts