Information Security: Difference between revisions

From Secure Group Wiki
Jump to navigation Jump to search
mNo edit summary
No edit summary
 
(19 intermediate revisions by the same user not shown)
Line 1: Line 1:
Our Information Security specialists are responsible for coordinating computing environments, deploying and documenting routines and projects controlling the service levels of operating systems, databases, and networks.
Secure Group is rapidly expanding. Our teams are in continuous motion, and we’re constantly welcoming new people to join our company. The Information Security team needs to keep up with this fast-changing environment and ensure that our company's data is protected by ensuring that all parties have the right access to work safely.


They provide technical support in the use of computer hardware and software and in supporting users by configuring and installing computing resources and systems controlling the security of the computing environment, which is our number one driver.
It's also under the responsibility of the Information Security team to manage the security of our network and servers, monitor activities, establish compliant procedures, and guarantee the protection of our datacenter.


It is under the responsibility of the Information Security specialists to work with the configuration and maintenance of the systems' environment, from performance monitoring and availability of the systems to the definition and monitoring of system infrastructure's suppliers and to make the configuration and maintenance of backups, performing the installations and configurations of the operating systems.
Advancing in this framework consists of being on the lookout for new threats and finding new ways of safeguarding our company through effective management of processes, methodologies, costs, and policies assuring Secure Group's ability to function and grow as an ethical, compliant, and transparent organization.


In order to progress in our development path and Level Up or Step Up, our Information Security specialists must:</br>
 
* Meet the criteria of the Level & Step Chart for the [[Individual_Contributors|Individual Contributors Path]]
= Progression=
* Score at least 4 in the [[KAI]] of their position in order to reach Level 3
In order to progress in our development path and Level Up or Step Up, our Information Security team must:
* Meet the criteria of the Level & Step Chart for the [[Performance#Individual_Contributors_Levels|Individual Contributors Path]]
* Meet the [[Information_Security#KAI_of_the_framework|KAI]] grade of the framework related to each level
* Demonstrate proficiency in [[Secure Group Knowledge]]
</br>
</br>


Line 26: Line 29:
!4
!4
|-
|-
!Information Security Expert
!1
|3.000
|4.160
|3.150
|4.310
|3.300
|4.466
|3.450
|4.610
|-
|-
!Information Security Engineer
!2
|4.000
|5.160
|4.150
|5.310
|4.300
|5.466
|4.450
|5.610
|-
|-
!Sr. Information Security Engineer
!3
|5.000
|6.160
|5.150
|6.310
|5.300
|6.466
|5.450
|6.610
|-
|-
!Sr. Information Security Engineer Level 4
!4
|6.000
|7.160
|6.150
|7.310
|6.300
|7.466
|6.450
|7.610
|-
|-
!Sr. Information Security Engineer Level 5
!5
|7.000
|8.160
|7.150
|8.310
|7.300
|8.466
|7.450
|8.610
|-
|-
!Sr. Information Security Engineer Level 6
!6
|8.000
|9.160
|8.150
|9.310
|8.300
|9.466
|8.450
|9.610
|-
|-
|}
|}
</div>
</div>
</div>
</div>
= [[Knowledge_Management#Knowledge_Accountability_Index|KAI]] of the position =


<!-- JOB FRAMEWORK -->
= [[Knowledge_Management#Knowledge_Accountability_Index|KAI]] of the framework =
<div class="grid two-columns">
== Extensive Knowledge ==
<div class="">
  <div class="box-header center">
== General Knowledge ==
   </div>
   </div>
   <div class="box-content framework">
   <div class="box-content framework">
     <div class="center">
     <div class="center">
{| class="wikitable"
{| class="wikitable" style="text-align:center; font-size:11px; font-family:Arial, Helvetica, sans-serif !important;; background-color:#DEEBFF; color:#222;"
!rowspan="2"|'''Concepts'''
|- style="font-weight:bold; vertical-align:middle; background-color:#EAECF0; color:#172B4D;"
|[https://en.wikipedia.org/wiki/Balanced_scorecard Balanced Scorecard]
! rowspan="2" | Type
|-
! rowspan="2" | Knowledge Description
|[https://en.wikipedia.org/wiki/Scrum_(software_development) Scrum]
! colspan="6" | Minimum Grade to acquire Level X
|-
|- style="font-weight:bold; vertical-align:middle; background-color:#F4F5F7; color:#172B4D;"
!rowspan="1"|'''Frameworks'''
| Level 1
|[https://en.wikipedia.org/wiki/Scrum_(software_development) Scrum]
| Level 2
|-
| Level 3
!rowspan="12"|'''Softwares/Tools/Platforms - Usage'''
| Level 4
|[https://en.wikipedia.org/wiki/Bamboo_(software) Atlassian Bamboo]
| Level 5
|-
| Level 6
|[https://en.wikipedia.org/wiki/Confluence_(software) Atlassian Confluence]
|-
|[https://en.wikipedia.org/wiki/Jira_(software) Atlassian Jira]
|-
|-
|[https://en.wikipedia.org/wiki/BambooHR BambooHR]
| style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Hardware
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Supermicro Supermicro Servers]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://count.ly/ Countly]
| style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Network Devices
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://mikrotik.com/software Microtik routerOS]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://goharbor.io/ Docker Harbor]
| rowspan="3" style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Protocols
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Border_Gateway_Protocol BGP]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.gerritcodereview.com/ Gerrit]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/ISCSI iSCSI]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Lansweeper Lansweeper]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Network_File_System NFS]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://openstf.io/ OpenSTF]
| style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Frameworks
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Scrum_(software_development) Scrum]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/PRTG_Network_Monitor Paessler PRTG]
| rowspan="2" style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Programming languages
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Bash_(Unix_shell) Bash Script]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.small-improvements.com/ Small Improvements]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/SQL SQL]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.idaptive.com/ Idaptive]
| rowspan="23" style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Software/Tools/Platforms - Configuration
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Bamboo_(software) Atlassian Bamboo]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="13"|'''Softwares/Tools/Platforms - Configuration'''
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Confluence_(software) Atlassian Confluence]
|[https://en.wikipedia.org/wiki/Bamboo_(software) Atlassian Bamboo]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Confluence_(software) Atlassian Confluence]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Jira_(software) Atlassian Jira]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Jira_(software) Atlassian Jira]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/BlackBerry_Enterprise_Server BlackBerry Enterprise Server]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://count.ly/ Countly]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://count.ly/ Countly]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Docker_(software) Docker Engine/Container]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Digium Digium Switchvox]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://goharbor.io/ Docker Harbor]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Docker_(software) Docker Engine/Container]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.gerritcodereview.com/ Gerrit]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://goharbor.io/ Docker Harbor]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Lansweeper Lansweeper]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.gerritcodereview.com/ Gerrit]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Microsoft_Dynamics_NAV Microsoft Dynamics Navision]
| style="background-color:#FFF; color:#172B4D; text-align:left;" | [https://www.idaptive.com/ Idaptive]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://openstf.io/ OpenSTF]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Lansweeper Lansweeper]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/PRTG_Network_Monitor Paessler PRTG]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Microsoft_Dynamics_NAV Microsoft Dynamics Navision]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Samsung_Knox Samsung Knox]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Windows_Server Microsoft Windows Server]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Tableau_Software Tableau]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Microsoft_Exchange_Server MS Exchange]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="14"|'''Softwares/Tools/Platforms - Server Administration'''
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/MySQL MySQL]
|[https://en.wikipedia.org/wiki/Bamboo_(software) Atlassian Bamboo]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Bitbucket Atlassian Bitbucket]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Nextcloud Nextcloud]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Confluence_(software) Atlassian Confluence]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/PRTG_Network_Monitor Paessler PRTG]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Jira_(software) Atlassian Jira]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Samsung_Knox Samsung Knox]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://count.ly/ Countly]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Snapt_Inc Snapt Load Balancer]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Docker_(software) Docker Engine/Container]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.sophos.com/en-us/products/unified-threat-management.aspx Sophos UTM]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://goharbor.io/ Docker Harbor]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.spamtitan.com/ SpamTitan]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.gerritcodereview.com/ Gerrit]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Veeam_Backup_%26_Replication Veeam Backup]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Lansweeper Lansweeper]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.vmware.com/products/vcenter-server.html VMWare Vcenter]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Microsoft_Dynamics_NAV Microsoft Dynamics Navision]
| rowspan="20" style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Software/Tools/Platforms - Server Administration
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Bamboo_(software) Atlassian Bamboo]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://openstf.io/ OpenSTF]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Bitbucket Atlassian Bitbucket]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/PRTG_Network_Monitor Paessler PRTG]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Confluence_(software) Atlassian Confluence]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Samsung_Knox Samsung Knox]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Jira_(software) Atlassian Jira]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://xibo.org.uk/ XiboTV]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/BlackBerry_Enterprise_Server BlackBerry Enterprise Server]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="1"|Protocols
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://count.ly/ Countly]
|[https://en.wikipedia.org/wiki/Network_File_System NFS]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="1"|Languages (Idioms)
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Docker_(software) Docker Engine/Container]
|Advanced English
| style="background-color:#FFFAE5;" | Limited experience
|}
| style="background-color:#FFFAE5;" | Limited experience
  </div>
| style="background-color:#E3FCEF;" | Practical application
</div>
| Applied theory
</div>
| Applied theory
 
| Applied theory
<!-- JOB FRAMEWORK -->
<div class="">
  <div class="box-header center">
== Specific Knowledge ==
  </div>
  <div class="box-content framework">
    <div class="center">
{| class="wikitable"
|-
|-
!rowspan="1"|'''Concepts'''
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://goharbor.io/ Docker Harbor]
|[https://en.wikipedia.org/wiki/Version_control Version control via Git]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="1"|'''Hardware'''
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.gerritcodereview.com/ Gerrit]
|[https://en.wikipedia.org/wiki/Supermicro Supermicro Services]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="2"|Languages
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Lansweeper Lansweeper]
|[https://en.wikipedia.org/wiki/Bash_(Unix_shell) Bash Script]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/SQL SQL]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Microsoft_Dynamics_NAV Microsoft Dynamics Navision]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="1"|Network Devices
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Windows_Server Microsoft Windows Server]
|[https://mikrotik.com/software Microtik routerOS]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="2"|Protocols
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Microsoft_Exchange_Server MS Exchange]
|[https://en.wikipedia.org/wiki/Border_Gateway_Protocol BGP]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/ISCSI iSCSI]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/MySQL MySQL]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
!rowspan="7"|Softwares/Tools/Platforms - Server Administration
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Nexenta_Systems Nexenta]
|[https://en.wikipedia.org/wiki/BlackBerry_Enterprise_Server BlackBerry Enterprise Server]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Windows_Server Microsoft Windows Server]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/PRTG_Network_Monitor Paessler PRTG]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Microsoft_Exchange_Server MS Exchange]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://en.wikipedia.org/wiki/Samsung_Knox Samsung Knox]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/MySQL MySQL]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.sophos.com/en-us/products/unified-threat-management.aspx Sophos UTM]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://en.wikipedia.org/wiki/Nexenta_Systems Nexenta]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://www.vmware.com/products/vcenter-server.html VMWare Vcenter]
| style="background-color:#E3FCEF;" | Practical application
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.sophos.com/en-us/products/unified-threat-management.aspx Sophos UTM ]
| style="background-color:#FFF; color:#0052CC; text-align:left;" | [https://xibo.org.uk/ XiboTV]
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#FFFAE5;" | Limited experience
| style="background-color:#E3FCEF;" | Practical application
| Applied theory
| Applied theory
| Applied theory
|-
|-
|[https://www.vmware.com/products/vcenter-server.html VMWare Vcenter]
| style="font-weight:bold; background-color:#F4F5F7; color:#172B4D; text-align:center;" | Languages (idioms)
|-
| style="background-color:#FFF; color:#172B4D; text-align:left;" | Advanced Business English
!rowspan="8"|Softwares/Tools/Platforms - Usage
| style="background-color:#FFFAE5;" | Limited experience
|[https://en.wikipedia.org/wiki/BlackBerry_Enterprise_Server BlackBerry Enterprise Server]
| style="background-color:#FFFAE5;" | Limited experience
|-
| style="background-color:#E3FCEF;" | Practical application
|[https://en.wikipedia.org/wiki/Microsoft_SQL_Server Microsoft SQL]
| Applied theory
|-
| Applied theory
|[https://en.wikipedia.org/wiki/Windows_Server Microsoft Windows Server]
| Applied theory
|-
|[https://en.wikipedia.org/wiki/Microsoft_Exchange_Server MS Exchange]
|-
|[https://en.wikipedia.org/wiki/MySQL MySQL]
|-
|[https://en.wikipedia.org/wiki/Nexenta_Systems Nexenta]
|-
|[https://www.sophos.com/en-us/products/unified-threat-management.aspx Sophos UTM ]
|-
|[https://www.vmware.com/products/vcenter-server.html VMWare Vcenter]
|-
!rowspan="13"|Softwares/Tools/Platforms - Configuration
|[https://en.wikipedia.org/wiki/BlackBerry_Enterprise_Server BlackBerry Enterprise Server]
|-
|[https://en.wikipedia.org/wiki/Digium Digium Switchvox]
|-
|[https://en.wikipedia.org/wiki/MySQL MySQL]
|-
|[https://en.wikipedia.org/wiki/Windows_Server Microsoft Windows Server]
|-
|[https://en.wikipedia.org/wiki/Microsoft_Exchange_Server MS Exchange]
|-
|[https://en.wikipedia.org/wiki/Nexenta_Systems Nexenta]
|-
|[https://en.wikipedia.org/wiki/Nextcloud Nextcloud]
|-
|[https://en.wikipedia.org/wiki/Snapt_Inc Snapt Load Balancer]
|-
|[https://www.sophos.com/en-us/products/unified-threat-management.aspx Sophos UTM]
|-
|[https://www.spamtitan.com/ SpamTitan]
|-
|[https://en.wikipedia.org/wiki/Veeam_Backup_%26_Replication Veeam Backup]
|-
|[https://www.vmware.com/products/vcenter-server.html VMWare Vcenter]
|-
|[https://www.idaptive.com/ Idaptive]
|}
|}
   </div>
   </div>
Line 266: Line 515:
  </div>
  </div>
</div>
</div>
<div class="center">
= IT Knowledge =
  </div>
  <div class="box-content framework center">
    <div class="">
{| class="wikitable"
!Android Development
|-
!Programming
|}
</div>
</div>
</div> <!-- grid -->
<!-- JOB FRAMEWORK -->
<div class="">
  <div class="box-header center">
= Secure Group Knowledge =
The first item we require proficiency regarding our company is the '''Secure Group Management Model''' (yes, the content in this wiki!). Besides that, we also need our employees to understand our products in all aspects as described in the following table:
  </div>
  <div class="box-content framework">
    <div class="center">
{| class="wikitable"
!colspan="1"|Secure Group Knowledge
!rowspan="1"|What's Expected
!rowspan="1"|Impact
!rowspan="1"|Product
!colspan="1"|Minimum Grade
|-
!rowspan="6"|User Documentation
|rowspan="6"|Good, user-level knowledge regarding the product and its functionalities. From the user documentation, all employees across the company are required to be well aware of our solutions’ core features and functions such as the Password Advisor or how to send an automatic crash report.
|rowspan="6"|This knowledge helps us facilitate a user-centric approach internally, which we believe is essential to develop our business and solutions. The user documentation helps team members understand user behavior and needs more thoroughly and feel the impact of their everyday efforts.
|Secure OS
|4
|-
|SAS
|4
|-
|Secure Chat
|4
|-
|Secure Email
|4
|-
|Secure Vault
|4
|-
|Secure Manager
|4
|-
!rowspan="6"|Sales Documentation
|rowspan="6"|Employees should gain significant knowledge regarding the business side of '''Secure Group'''. They need to be aware of commonly used concepts in our day-to-day activities such as our business and distribution model, value proposition, selling prices, key selling points, and target audience.
|rowspan="6"|The information in the Sales Documentation supports employees in their daily routine. It conveys the overall business vision within the company. This documentation contributes to making employees aware of how our solutions are distributed, who are our key partners and target market to know exactly the people towards whom team members’ efforts should be aimed. Alignment on company-wide priorities is also achieved through clear communication of our value proposition and key selling points, helping everyone understand the things that matter most.
|Secure OS
|3
|-
|SAS
|3
|-
|Secure Chat
|3
|-
|Secure Email
|3
|-
|Secure Vault
|3
|-
|Secure Manager
|3
|-
!rowspan="6"|Support Documentation
|rowspan="6"|People within the company need to be aware of commonly occurring problems with our solutions. From the Support Documentation, employees should also extract general level knowledge regarding support processes, the issues that we’re currently having product-wise, and the approach to troubleshooting them.
|rowspan="6"|The Support Documentation helps employees understand short-term priorities more clearly and communicate more openly why they’re needed. It also gives them general knowledge of how to spot and report a problem, which helps us facilitate a company-wide contribution to product development. Last but by no means least, it helps team members understand customers' pains and behavioral patterns to strengthen our user-centric approach.
|Secure OS
|3
|-
|SAS
|3
|-
|Secure Chat
|3
|-
|Secure Email
|3
|-
|Secure Vault
|3
|-
|Secure Manager
|3
|-
!rowspan="6"|Functional Documentation
|rowspan="6"|Through the Functional Documentation, employees should get a thorough understanding of the solutions and their multiple features. People that work closely with the products must understand exactly how they function, how users interact with them, how to configure different settings, and what’s the expected behavior of different software solutions.
|rowspan="6"|The information in the Functional Documentation helps employees whose work is closely connected with our solutions, to gain significant in-depth knowledge into their functionalities that far exceeds users‘ understanding. Such thorough product expertise helps us remain objective, evaluate market data more adequately, and constantly increase our internal expertise.
|Secure OS
|4
|-
|SAS
|4
|-
|Secure Chat
|4
|-
|Secure Email
|4
|-
|Secure Vault
|4
|-
|Secure Manager
|4
|-
!rowspan="6"|Technical Documentation
|rowspan="6"|Employees concerned with the Technical Documentation and more concretely - software development, must gain complete mastery over all solutions. Such people are regarded as technical experts and need to be well aware of data structures, relational databases, algorithms, programming languages, models, etc.
|rowspan="6"|The Technical Documentation is used to make sure people that are technically involved in product development have the required knowledge to perform their day-to-day tasks, optimize our solutions more easily, and support other teams with their in-depth expertise.
|Secure OS
|4
|-
|SAS
|4
|-
|Secure Chat
|4
|-
|Secure Email
|4
|-
|Secure Vault
|4
|-
|Secure Manager
|4
|-
|}

Latest revision as of 12:04, 18 April 2022

Secure Group is rapidly expanding. Our teams are in continuous motion, and we’re constantly welcoming new people to join our company. The Information Security team needs to keep up with this fast-changing environment and ensure that our company's data is protected by ensuring that all parties have the right access to work safely.

It's also under the responsibility of the Information Security team to manage the security of our network and servers, monitor activities, establish compliant procedures, and guarantee the protection of our datacenter.

Advancing in this framework consists of being on the lookout for new threats and finding new ways of safeguarding our company through effective management of processes, methodologies, costs, and policies assuring Secure Group's ability to function and grow as an ethical, compliant, and transparent organization.


Progression

In order to progress in our development path and Level Up or Step Up, our Information Security team must:


Salary Grid

All mentioned salary ranges represent the monthly income in Bulgarian Lev after taxes and deductions.

Information Security Step
Level
Individual Contributor Path 1 2 3 4
1 4.160 4.310 4.466 4.610
2 5.160 5.310 5.466 5.610
3 6.160 6.310 6.466 6.610
4 7.160 7.310 7.466 7.610
5 8.160 8.310 8.466 8.610
6 9.160 9.310 9.466 9.610

KAI of the framework

Extensive Knowledge

Type Knowledge Description Minimum Grade to acquire Level X
Level 1 Level 2 Level 3 Level 4 Level 5 Level 6
Hardware Supermicro Servers Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Network Devices Microtik routerOS Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Protocols BGP Practical application Practical application Applied theory Applied theory Applied theory Applied theory
iSCSI Practical application Practical application Applied theory Applied theory Applied theory Applied theory
NFS Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Frameworks Scrum Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Programming languages Bash Script Practical application Practical application Applied theory Applied theory Applied theory Applied theory
SQL Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Software/Tools/Platforms - Configuration Atlassian Bamboo Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Atlassian Confluence Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Atlassian Jira Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
BlackBerry Enterprise Server Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Countly Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Digium Switchvox Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Docker Engine/Container Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Docker Harbor Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Gerrit Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Idaptive Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Lansweeper Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Microsoft Dynamics Navision Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Microsoft Windows Server Practical application Practical application Applied theory Applied theory Applied theory Applied theory
MS Exchange Practical application Practical application Applied theory Applied theory Applied theory Applied theory
MySQL Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Nextcloud Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Paessler PRTG Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Samsung Knox Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Snapt Load Balancer Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Sophos UTM Practical application Practical application Applied theory Applied theory Applied theory Applied theory
SpamTitan Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Veeam Backup Practical application Practical application Applied theory Applied theory Applied theory Applied theory
VMWare Vcenter Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Software/Tools/Platforms - Server Administration Atlassian Bamboo Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Atlassian Bitbucket Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Atlassian Confluence Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Atlassian Jira Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
BlackBerry Enterprise Server Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Countly Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Docker Engine/Container Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Docker Harbor Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Gerrit Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Lansweeper Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Microsoft Dynamics Navision Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Microsoft Windows Server Practical application Practical application Applied theory Applied theory Applied theory Applied theory
MS Exchange Practical application Practical application Applied theory Applied theory Applied theory Applied theory
MySQL Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Nexenta Practical application Practical application Applied theory Applied theory Applied theory Applied theory
Paessler PRTG Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Samsung Knox Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Sophos UTM Practical application Practical application Applied theory Applied theory Applied theory Applied theory
VMWare Vcenter Practical application Practical application Applied theory Applied theory Applied theory Applied theory
XiboTV Limited experience Limited experience Practical application Applied theory Applied theory Applied theory
Languages (idioms) Advanced Business English Limited experience Limited experience Practical application Applied theory Applied theory Applied theory