
Senior Security Analyst
Posted 8 hours ago

Posted 8 hours ago
This is a fully remote position, open to applicants in Alabama, +34 more states.
• Report directly to the Director of Security Engineering as an integral member of the Information Security Team.
• Guarantee thorough security testing on all company applications utilizing both vendors and internal resources.
• Oversee testing schedules and manage a portfolio covering multiple company entities.
• Organize security assessments, including penetration testing and architecture evaluations, prior to applications going live.
• Spearhead the Static Scanning (SAST) service and triage results for development team action.
• Draft security policies and procedures.
• Recognize opportunities for enhancement and automation.
• Communicate with and train Security Champions to promote a proactive security culture.
• Collaborate with development teams to address findings and conduct retesting until resolution.
• Monitor applications to ensure adequate testing depth and frequency.
• Maintain oversight of Web Application Firewall (WAF) events and alerts.
• Engage in the on-call roster, including duties outside regular business hours.
• Offer security recommendations regarding design, application development, and coding practices.
• Solid understanding of computing, networking, and cloud technologies.
• Proficient knowledge of computing, networking, and cloud computing principles.
• Exceptional communication abilities.
• Capability to provide security recommendations on design, application development, and coding.
• Strong technical expertise in both Linux and Windows operating systems.
• Experience in scripting with languages such as Python.
• Familiarity with application and infrastructure security as code.
• Creativity and strong problem-solving skills to tackle network threats and vulnerabilities.
• Understanding of agile development methodologies.
• Experience in integrating secure development practices into agile projects.
• Knowledge of industry standards and regulations, including CIS, OWASP, HITRUST, and ISO.
• Bachelor’s degree in Computer Science or a related field.
• AWS certification at the Associate and/or Specialty level is preferred.
• OSCP, GWAPT, or GPEN certifications are favored.
• Minimum of 4 years of relevant experience in the cybersecurity sector.
• Willingness to travel within the U.S. on an irregular basis if necessary; posting indicates minimal travel.
• Must be authorized to work for any employer in the U.S.; no visa sponsorship or transfer will be available.
• Ability to work at a computer terminal for extended periods and perform specific physical tasks, including lifting, carrying, pushing, pulling, and moving objects weighing up to 20 pounds.
• Proficient verbal communication skills, ability to discern auditory information, and visual attention to detail.
• Dental, vision, and various group medical plans.
• 401(k) retirement savings program.
• Group life insurance coverage.
• Accidental death and dismemberment (AD&D) insurance.
• Flexible spending account (FSA).
• Health savings account (HSA).
• Commuter benefits.
• Employer-funded short-term (STD) and long-term disability (LTD) insurance.
• Supplemental life insurance for spouses.
• Legal insurance options.
• Employee assistance program.
• Home health testing kits.
• Fertility medication discount program.
• Flexible vacation policy.
• Accrued paid sick leave.
• 10 paid holidays each year.
• 2 floating holidays for full-time non-exempt employees.
• Eight weeks of paid parental leave for eligible employees.
• Additional paid weeks for the birthing parent.
• 4 weeks of paid caregiver leave.
• Monthly Lifestyle Spending Account allowance.
Hitss Brasil
The Walt Disney Company
First Quality
Get handpicked remote jobs straight to your inbox weekly.