$60.00 Hourly
Overview:
We are a financial services organization where the security of our data and infrastructure is our highest priority. We are seeking a senior security professional with specialized expertise in virtualization to conduct a comprehensive security audit and hardening project. This is a crucial, short-term engagement aimed at fortifying our virtual environment against sophisticated threats and ensuring strict compliance with industry standards.
The Mission:
Your mission is to act as a trusted security advisor, identifying and eliminating vulnerabilities across our entire virtualized infrastructure. This includes everything from the hypervisor layer down to the individual guest VMs. You will be responsible for providing a clear, actionable roadmap that not only solves our current security challenges but also establishes a foundation for long-term security.
Key Responsibilities:
- Security Assessment: Perform a rigorous, top-to-bottom security audit of our virtual environment, including hypervisor configurations (e.g., vSphere ESXi), virtual network settings, and storage access.
- Vulnerability Remediation: Develop and lead the implementation of a prioritized plan to fix all identified security gaps.
- Security Control Implementation: Implement and configure advanced security controls such as network segmentation, virtual firewalls, and a robust Role-Based Access Control (RBAC) model.
- Documentation & Reporting: Create and deliver high-quality documentation, including a detailed audit report and a security hardening guide for our internal team.
- Expert Guidance: Serve as a subject matter expert, providing guidance on best practices for securing a virtualized production environment.
Key Deliverables:
- Comprehensive Security Audit Report: A detailed document outlining all vulnerabilities, ranked by severity, with clear evidence and technical findings.
- Prioritized Remediation & Action Plan: An actionable, step-by-step plan for addressing and resolving all security issues.
- Security Hardening Guide: A clear, permanent reference guide and playbook for our internal IT team to maintain and monitor the new security posture.
Required Skills & Experience:
- Experience: 6+ years of demonstrable experience in IT security, with at least 3 years specifically focused on virtualization security.
- Technical Proficiency: Deep expertise in securing major virtualization platforms (VMware vSphere/ESXi, Hyper-V).
- Security Knowledge: In-depth knowledge of virtualization-specific threats, attack vectors, and common security frameworks.
- Problem-Solving: Proven ability to analyze complex systems, identify vulnerabilities, and design effective, sustainable solutions.
- Communication: Exceptional written and verbal communication skills for creating clear documentation and presenting complex findings to stakeholders.
Impact:
Your work will be instrumental in protecting our most critical assets and maintaining the trust of our clients. By securing our infrastructure, you will directly contribute to our business continuity and long-term compliance with stringent industry regulations.
- United States
- Proposal: 0
- Less than 2 month
- Estimated Hours: 25
