Information Security Analyst

2 months ago


New York, United States ASCAP Full time
Job DescriptionJob Description

About ASCAP

The American Society of Composers, Authors and Publishers (ASCAP) is a membership association of more than one million songwriters, composers and music publishers, and represents some of the world’s most talented music creators. Founded and governed by songwriters, composers and publishers, it is the only performing rights organization in the U.S. that operates on a not-for-profit basis. ASCAP licenses a repertory of over 20 million musical works to hundreds of thousands of businesses that use music, including streaming services, cable television, radio and satellite radio and brick and mortar businesses such as retail stores, hotels, clubs, restaurants and bars. ASCAP collects the licensing fees; identifies, matches and processes trillions of performances every year; and returns nearly 90 cents of every dollar back to its members as royalties. The ASCAP blanket license offers an efficient solution for businesses to legally perform ASCAP music while respecting the right of songwriters and composers to be paid fairly. ASCAP puts music creators first, advocating for their rights and the value of music on Capitol Hill, driving innovation that moves the industry forward, building community and providing the resources and support that creators need to succeed in their careers. Learn more and stay in touch at www.ascap.com, on X and Instagram @ASCAP and on Facebook.

# # #

Are you passionate about working with customers? Are you excited to learn new technologies? Would you rather be coding than whiteboarding? If the answer is yes, then you might make a great fit for our team of talented software engineers who work with our business and product teams on high impact projects using emerging technologies and platforms. ASCAP technologists live our mission, we are passionate about what we do for our customers, and we practice what we preach. Our technologists serve with humility and a deep respect for their responsibility in helping our business partners and members achieve their goals and realize their dreams. We stand behind our mission and are committed to delivering the impossible. Bottom line? We outthink ordinary. Discover what you can do with technology at ASCAP

Job Description: Information Security Analyst (Application Security)

We are looking for a motivated, detail-oriented individual with strong technical skills. This role’s primary focus is on working to secure in-house built and software as a service integrated applications plus working with management on security strategies and product owners/designers/developers/platform engineers/endpoint engineers to design, develop and implement secure systems, networks, and applications. They will also work with Sr. Security Analysts to investigate and respond to security event alerts, manage technical aspects of incident response, work on third party applications/services reviews and the organizations vulnerability management program. This role requires knowledge of Salesforce security and privacy architecture including Salesforce Shield. This role will assist with the creation of a true SDLC program with DevSecOps for our in-house built applications and work with developers to implement information security best practices ensuring that our code is proactively secured while in the pipeline prior to moving to production. The person in this role will need to prioritize and ensure the timely completion of tasks from the scrum masters and management. They should also be able to shift and adjust priorities based on changing business needs in our dynamic environment, while also remaining task-oriented to ensure completion of work from start to finish with appropriate solutions.

Responsibilities:

  • Configures, manages, and uses security systems, security monitoring and alerting applications, and security management tools.
  • Works closely with Sr. Security Analysts and Security Platform Engineers to investigate and resolve security related events.
  • Reviews business partners, new vendors, and products/services for security stature
  • Work independently with developers, system/network administrators, product owners, design teams and other colleagues to ensure secure design, development, and implementation of applications and networks - promoting a full SDLC program.
  • Perform security architecture design reviews of our applications (primarily Salesforce).
  • Perform code analysis of large applications manually and conduct manual vulnerability analysis.
  • Provide remediation guidance and recommendations to developers and administrators.
  • Work with development teams to help prioritize and validate urgency of mitigation of identified product vulnerabilities and security feature enhancement requests.
  • Ensure development teams receive pertinent annual secure coding training.
  • Researches, evaluates, tests, and assists on implementation of new security solutions around DevSecOps and the application pipeline.
  • Works alongside project management in a SCRUM environment to successfully monitor progress and implement security initiatives.

Qualifications:

  • Experience supporting security products like CrowdStrike, SecureWorks, Cisco Umbrella, BitLocker, Qualys, CloudLock, SonarQube, Nexus IQ, and Checkpoint.
  • Cloud security experience with Salesforce Shield and AWS.
  • Bachelor’s degree in computer science or information security.
  • Experience investigating and resolving security events.
  • A keen eye for detail, an analytical thinker, and the ability to multitask.
  • The ability to thrive in fast-paced, high stress situations.
  • A problem solver with the ability to communicate effectively with peers, business partners, and management.
  • Experience working with development teams to build secure solutions.
  • Experience breaking down complex systems and applications to find flaws.
  • Able to read, write, and audit Java and the ability to pick up new languages/technologies.
  • Experience with secure coding practices and architecting secure applications written in Java.
  • The ability to communicate complicated technical issues and the risks they pose to developers, network engineers, system administrators, and management.
  • Self-starter, positive attitude, ability to work independently, enjoys learning and staying current with industry developments, regulations, and best practices.
  • Interest in providing security training to developers.

What We Love About You:

  • You love our users. You deeply understand our users and put them at the center of everything you do. You aim to serve and delight them every day.
  • You do the right thing. You are respectful and act with the highest integrity. If you see something that isn’t right, you say something.
  • You debate it. You ask questions to understand a perspective and are comfortable respectfully challenging assumptions. You are not turned off by constructive conflict to get to the right answer.
  • You own your outcomes. You set clear ambitious goals. You anticipate obstacles, persevere, and are accountable for your commitments.
  • You make fast decisions. You are an effective and timely communicator. You understand how to collaborate, compromise, and escalate when needed.
  • You get better every day. You welcome the gift of feedback. You never settle in your quest to grow and develop. By being here, you make our company stronger.

Besides providing a unique and dynamic work environment, there are a few other reasons you should consider ASCAP in your career planning. We also offer generous benefit options that are comprehensive and provide the flexibility that most employees want and need. These health care and financial plan options include the following:

  • A choice of either network only provider medical and dental plans or more flexible medical and dental plans where you can see providers in or out-of-network.
  • Vision plan that offers both in and out- of network provider options
  • Immediate eligibility for 401(k) participation with an employer provided match.
  • An additional Employer paid retirement savings program regardless of your participation in the 401(k) Plan.
  • Generous time-off policy
  • Health care and dependent care flexible spending accounts
  • Short term disability Insurance/salary continuation and long-term disability insurance
  • Company provided basic life and accidental death and dismemberment insurance.
  • Supplemental and dependent life insurance options

Please be aware that ASCAP is not a nut-free or other allergen-free workplace.

ASCAP is an equal opportunity employer. All ASCAP employment decisions are made on the basis of individual qualifications and performance and not on the basis of race, national origin, ethnicity, sex, age, marital status, sexual orientation or preference, gender identity, genetic information, disability, handicap, color, creed, religion, veteran status, or any characteristic protected by applicable federal, state or local laws.

Occasional travel for in-person meetings may be required.

The anticipated base salary range for this position is $100,000.00 to $110,000.00 and will be determined on an individualized basis depending on several factors that are unique to each candidate including geographic location (due to differences in the cost of labor), skills, education and prior relevant experience.



  • New York, United States Lightbend Full time

    Job DescriptionJob DescriptionInformation Security Analyst About Us:Lightbend is a leading organization in the software business, dedicated to delivering innovative solutions and services to our clients. We pride ourselves on our commitment to excellence, integrity, and customer satisfaction. As we continue to grow, we are seeking a skilled and motivated...


  • New York, United States SideRamp Part time

    Job DescriptionJob DescriptionAbout SideRampSideRamp allows professionals to engage with part-time opportunities in the gig economy, offering a centralized platform that manages high-quality, flexible side gigs. We focus on connecting our users to various freelance and part-time work—from discovering opportunities to streamlining the application process....


  • New York, United States Winston Resources LLC Full time

    Senior Information Security AnalystPosition SummaryThe goal of information security is to protect the confidentiality, integrity, and availability of information assets. The information security team is responsible for defining and implementing security policy and standards and continuously monitoring for new threats. The Information Security Analyst is a...


  • New York, United States DRUM UPSKILL Full time

    We are looking for an Information Security Analyst to join a large financial institution with a headquarters in New York City.In this role, you will work on a team that establishes baseline standard controls, resolves security vulnerabilities, and reduces cyber risk. Being a global organization, it’s important that you identify, notify, problem solve, and...


  • New York, United States DRUM UPSKILL Full time

    We are looking for an Information Security Analyst to join a large financial institution with a headquarters in New York City.In this role, you will work on a team that establishes baseline standard controls, resolves security vulnerabilities, and reduces cyber risk. Being a global organization, it’s important that you identify, notify, problem solve, and...


  • New York, New York, United States Mhymatch Inc Full time

    About the Role: As an Information Security Analyst at Mhymatch Inc, you will play a crucial role in protecting our organization's digital assets and ensuring the integrity of our information systems. Location: Remote Company Overview: Mhymatch Inc is a leading firm in the realm of cybersecurity, dedicated to delivering innovative solutions that safeguard...


  • New York, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity! A well-known Financial Services Company is looking for a Information Security Analyst in New York, NY (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is a long-term contract opportunity that includes a competitive benefit package! Our client has been around...


  • New Orleans, United States ExecRecruitment Full time

    Job DescriptionJob DescriptionExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth.One of our direct clients is actively seeking a Information Security Analyst to join their team.Job Title: Information Security AnalystLocation: RemoteDuration:...


  • New York, United States MORS Full time

    Details Posted: 10-Aug-24 Location: New York, NY, US, Type: Full-time Salary: Open Internal Number: Information Security Analyst Tier 1 US-NY-New York Job ID: - Type: NYU IT (WS) # of Openings: 1 Category: Technology New York University Overview The Information Security Analyst I role involves conducting basic threat...


  • New York, United States MORS Full time

    Details Posted: 10-Sep-24 Location: New York, NY, US, Type: Full-time Salary: Open Internal Number: Information Security Analyst Tier 1 US-NY-New York Job ID: - Type: NYU IT (WS) # of Openings: 1 Category: Technology New York University Overview The Information Security Analyst I role involves conducting basic threat...


  • New Castle, Delaware, United States Delaware River & Bay Authority (DRBA) Full time

    INFORMATION SECURITY ANALYSTPosition Overview:The Information Security Analyst plays a crucial role in proactively identifying and mitigating security threats that could impact the operations, personnel, clients, and partners of the Delaware River and Bay Authority (DRBA). Reporting directly to the Director of Information Technology Services, this position...


  • New Orleans, United States ExecRecruitment Full time

    Job DescriptionJob DescriptionExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth.One of our direct clients is actively seeking an Information Security Compliance Analyst to join their team.Job Title: Information Security Compliance...


  • New Orleans, United States ExecRecruitment Full time

    Job DescriptionJob DescriptionExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth.One of our direct clients is actively seeking a Senior Information Security Analyst to join their team.Job Title: Senior Information Security AnalystLocation:...


  • New York, New York, United States Michael Page Full time

    Client will move quickly qualified candidatesCompetitive compensation and benefits About Our Client A new financial software company located in Manhattan. Job DescriptionOversee the firm's information security posture, providing regular updates to senior management.Conduct assessments to identify information security risks and recommend remediation...


  • New York, United States Michael Page Full time

    Client will move quickly qualified candidatesCompetitive compensation and benefits About Our Client A new financial software company located in Manhattan. Job DescriptionOversee the firm's information security posture, providing regular updates to senior management.Conduct assessments to identify information security risks and recommend remediation...


  • New York, New York, United States Noor Staffing Group Full time

    This position is based in a dynamic environment focused on safeguarding information assets.Please be aware that sponsorship is not available for this role, and we are not considering contract-to-contract candidates.The key responsibilities of this position involve identifying and evaluating security vulnerabilities, working collaboratively with various...


  • New York, New York, United States Noor Staffing Group Full time

    Salary: $125,000-$145,000Work Arrangement: On-Site Monday-Thursday / Remote FridaysPlease note that candidates must reside in the local area as relocation is not an option for this position.The Cybersecurity Specialist plays a crucial role in safeguarding, managing, and overseeing the security of the organization's enterprise infrastructure and network...


  • New York, New York, United States Heidrick & Struggles Full time

    About Us:Heidrick & Struggles (Nasdaq: HSII) stands as a leading provider of global leadership advisory and on-demand talent solutions, addressing the senior-level talent and consulting requirements of the world's foremost organizations. As trusted advisors in leadership, we collaborate with our clients to cultivate future-ready leaders and organizations,...


  • New York, New York, United States Heidrick & Struggles Full time

    About Us:Heidrick & Struggles (Nasdaq: HSII) stands as a leading provider of global leadership advisory and on-demand talent solutions, catering to the senior-level talent and consulting requirements of the world's foremost organizations. As trusted advisors in leadership, we collaborate with our clients to cultivate future-ready leaders and organizations,...


  • New York, New York, United States Heidrick & Struggles Full time

    About Us:Heidrick & Struggles (Nasdaq: HSII) stands as a leading provider of global leadership advisory and on-demand talent solutions, addressing the senior-level talent and consulting requirements of the world's foremost organizations. As trusted advisors in leadership, we collaborate with our clients to cultivate future-ready leaders and organizations,...