Vulnerability assessments analyst (avp) - united states, floriano

responsibilities:

kforce's client is seeking a vulnerability assessments analyst in fort lauderdale, fl. summary: as a member of the vulnerability assessments team, your duties include interfacing with development organizations to onboard applications to our automated security testing platform and performing secure code review assessments using commercial static source code review tools like checkmarx, appscan, and fortify. the team works in partnership with global information security to roll out the secure-sdlc across the citi enterprise. the majority of the team has achieved industry standard security certifications (cissp, csslp, ceh, giac, oscp, etc.) over time and we are looking for motivated individuals eager to learn. responsibilities: the vulnerability assessments analyst will perform static application security testing (sast) and dynamic application security testing (dast) perform manual source code review for security vulnerabilities; analyze source code to mitigate identified weaknesses and vulnerabilities within the system identify opportunities to automate and standardize information security controls and for the supported groups participate in conference calls with engineering team to ensure proper scan coverage and effective results write formal security assessment report for each application, using our company's standard reporting format the vulnerability assessments analyst will manage and execute security assessments for multiple projects simultaneously and ensure project timelines are met

requirements:

bachelor's degree in technology, computer science, engineering or related field master's degree is a plus 2+ years of relevant experience in web development, source code review, or application security testing basic understanding of application security and associated vulnerabilities development background in java/j2ee in an enterprise environment familiarity with static analysis (source code review) or application pen-testing techniques experience using commercial enterprise automated security testing tools such as appscan source, fortify, checkmarx, veracode, blackduck consistently demonstrates clear and concise written and verbal communication professional certifications, such as cissp, csslp, giac, ceh or willingness to obtain avp level-mid-level basic understanding of security concepts and working knowledge of security kforce is an equal opportunity/affirmative action employer. all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.


Kforce Technology
Information Security Analysts
United States, Floriano ,Oakland Park
2022-04-08
2022-05-07
1219719
Please report inappropriate ads by sending a message to abuse@expatriatesjobs.com. Please include the Job ID located in the header of each ad

Apply to this job now Report abuse