Early Warning Servicesposted 11 days ago
$40 - $50/Yr
Full-time • Entry Level
Hybrid • Scottsdale, AZ
Credit Intermediation and Related Activities

About the position

The Product Security Analyst assists Product Security Architecture with security reviews, prioritizes, analyzes, and validates security controls to ensure products are in compliance with security best practices and Early Warning policies and standards. This position is located in Scottsdale, San Francisco, Chicago, or New York and follows a hybrid work model to allow for a more collaborative working environment.

Responsibilities

  • Assists in the identification, measurement, of controls and documents security risks to information systems across a broad range of application security disciplines and topics.
  • Collaborates with software development teams to ensure that all newly developed and legacy applications and infrastructure implementations are in line with security policy and are compliance to the required frameworks (ISO, PCI, OWASP, NIST 800-53, etc.).
  • Reviews changes to Products and Product security controls for assigned areas.
  • Assists in the security incident response process as assigned.
  • Documents and present risks and security issues that could impact the confidentiality, integrity and/or availability of the business (both internally and externally) by assisting in documentation, tracking and creating solutions for mitigation.
  • Works with Software Development and Engineering teams to perform security analysis on all internally developed products and services.
  • Works with Software Development and Project teams to prioritize all documented security issues in the backlog.
  • Supports Product and Stakeholder teams efforts in building Cloud Native applications by incorporating Cloud Security and Microservices Security best practices and industry standards.
  • Supports the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.

Requirements

  • Education and experience typically obtained through completion of a Bachelor's degree in Computer Science, Engineering, Math or Physical Science.
  • Minimum of 3 or more months of related information security or IT experience.
  • Working knowledge of relational databases, Windows, and Linux operating systems.
  • Effective interpersonal skills, with ability to present to peers.
  • Working knowledge of operating system, application, network, and database security architectures.
  • Experience in analyzing technical issues and making recommendations for corrective action.
  • Demonstrate intermediate understanding in the field of Information Security in terms of both concepts and technology.
  • Demonstrated understanding of the OWASP Top 10 vulnerabilities.
  • Background and drug screen.

Nice-to-haves

  • CEH/CPT, or CISSP or CSSLP Certification and one of GWEB, or Secure Development Cert, or PHD or MBA in InfoSec or equivalent certification.
  • Prior product security or application security experience.
  • Unix/windows/Cloud administration or hobbyist.
  • Knowledge of Public Cloud architecture such as GCP, AWS and Azure, and virtualization technologies such as Kubernetes, VMware and OpenStack.
  • Familiarity with Security scanning tools for SAST, DAST and SCA.
  • Application development background.
  • Additional related education and/or experience.

Benefits

  • Healthcare Coverage - Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
  • 401(k) Retirement Plan - Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
  • Paid Time Off - Unlimited Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
  • 12 weeks of Paid Parental Leave.
  • Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service