Information Security Analyst
3 weeks ago
Position- Information Security Analyst – Remote
Location: Open to remote
Assignment Type: 6 months- possible CTH or extension
Work Authorization- GC and USC
Must Have: 3+ Threat models, Strong understanding of access controls and authentication mechanisms, PKI, and cryptography
Preferred: CCSP, OSCP
Position Overview:
Information Security Analyst will partner closely and collaboratively with Enterprise Architecture (EA), Developers, Platform Owners, and other areas of the firm to help ensure Freddie Mac provides secure services and solutions.
Duties and Responsibilities:
• Assess Security Risk from an Architectural Perspective and Apply a Risk-Based Approach to Security
• Generate application treat models in a quick paced environment
• Manage workloads using Kanban methodologies to estimate and track task deliveries
• Mentor, assist, and share your expertise with team members
• Attend regular standups and team meetings
• Identify and be able to explain security weaknesses to a variety of audiences to include but not limited to software development teams
• Hold brown bag sessions to educate developers on the value and benefit that they and the firm derive by identifying threats early
• Develop training material for how to engage the Threat Management service, make use of technologies, and interpret findings.
• Drive beneficial security change into the business through supporting Developers with creation of threat models for their applications and remediation of potential threats, balancing risk against business need.
• Support the Security Architecture team to develop and mature an Application Threat Modeling Program by defining processes, procedures, controls, KRI’s/KPI’s, etc., that identify threats early in the development process reducing risks prior to deployment.
• Work with the InfoSec functional teams in the development of the Information Security strategy and roadmap, including and with focus on Threat Modeling; liaison and consult with Enterprise Architecture, IT and the business for ongoing input and awareness
• Advise and Contribute to Strategy and Roadmaps
Qualifications:
• Strong understanding of access controls and authentication mechanisms, PKI, and cryptography
• Demonstrated experience developing technical threat models
• Demonstrated experience performing security code reviews and explaining results to project teams
• Previous or active experience with bug bounty programs
• Experience working in Sprint or Agile environments
• Strong understanding of protocols, networking, firewalls, caching, VIPs, proxies, web applications, and database systems
• Experience with AWS and Azure or working knowledge of GCP
• Knowledge of several of the following programming languages; Java, C#, Python, C++, Node.JS, JavaScript
• Knowledge in one or several of the following Frontend frameworks; React, Angular, Ember, Vue
• Minimum of 3 years’ experience working as an Information Security Threat Modeling subject matter expert at a senior level
• Minimum of 5 years’ experience working as an Information Security Professional, preferably within the architecture or engineering disciplines
• Passion for leading change and ability to bring others along
• (Desirable) Able to provide references to CVEs filled, Bug Bounty Username, or GitHub repositories
• (Desirable) One or more security-related certifications associated with AWS, GCP, or Azure
• (Desirable) CISSP (+ ISSAP), CCSP, CEH, OSCP, CSSLP
#J-18808-Ljbffr
-
Information Security Analyst
1 week ago
Columbus, United States Ohiox Full timeBold Penguin is a leading integrated digital solution platform dedicated to simplifying small commercial insurance. Our technology makes the quote and bind process quick, effortless, and profitable for all parties - agents, brokers, and carriers. Bold Penguin’s innovative product suite has digitized and transformed a slow, manual process resulting in...
-
Sr. Information Security Analyst
1 week ago
Columbus, United States McKesson Full timeMcKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a...
-
Sr. Information Security Analyst
3 days ago
Columbus, United States McKesson Full timeMcKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a...
-
Management Information Analyst II
5 days ago
Columbus, United States Global Payments Full time1. Receive incoming products, unload trucks and stage for induction, update receiving logs. - 2. Validate count of product to packing information any discrepancies notify Material Management Rep. - 3. Inspect for damage, if damaged notify Leadership Analyst, Information, Management, Project Management, Technology
-
Business Information Analyst II
6 days ago
Columbus, United States Elevance Health Full timeBusiness Information Analyst II Location: This position will work a hybrid model (remote and office). The Ideal candidate will live within 50 miles of one of our Elevance Health PulsePoint locations. Preferred Location: Richmond, VA. The Business Information Analyst II is responsible for analyzing, reporting and developing recommendations on data related...
-
Sr. IT Security Compliance Analyst
4 weeks ago
Columbus, Ohio, United States Express Full timeOverview: About Express, Inc. Express, Inc. is a multi-brand fashion retailer whose portfolio includes Express, Bonobos and UpWest. The Company operates an omnichannel platform as well as physical and online stores. Grounded in a belief that style, quality and value should all be found in one place, Express is a brand with a purpose - We Create Confidence....
-
Sr. IT Security Compliance Analyst
4 weeks ago
Columbus, Ohio, United States Express Full timeOverview: About Express, Inc. Express, Inc. is a multi-brand fashion retailer whose portfolio includes Express, Bonobos and UpWest. The Company operates an omnichannel platform as well as physical and online stores. Grounded in a belief that style, quality and value should all be found in one place, Express is a brand with a purpose - We Create Confidence....
-
Columbus, Ohio, United States Marriott Full timeJob Number Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY The Manager will support the implementation, and maintenance of the Data Governance strategy for the Company. Further, supports...
-
Columbus, United States Marriott Full timeJob Number 24072895 Job Category Information Technology Location Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States Schedule Full-Time Located Remotely? Y Relocation? N Position Type Management JOB SUMMARY The Manager will support the implementation, and maintenance of the Data Governance strategy for the Company. Further,...
-
Information Technology Security Manager
3 weeks ago
Columbus, United States Vernovis Full timeJob Title: GRC ManagerLocation/Work Structure: OnsiteWho We Are: Vernovis is a Total Talent Solutions company that specializes in Technology, Cybersecurity, Finance & Accounting functions. At Vernovis, we help these professionals achieve their career goals, matching them with innovative projects and dynamic direct hire opportunities in Ohio and across the...
-
Information Technology Security Manager
3 weeks ago
Columbus, United States Vernovis Full timeJob Title: GRC ManagerLocation/Work Structure: OnsiteWho We Are: Vernovis is a Total Talent Solutions company that specializes in Technology, Cybersecurity, Finance & Accounting functions. At Vernovis, we help these professionals achieve their career goals, matching them with innovative projects and dynamic direct hire opportunities in Ohio and across the...
-
Information Technology Security Manager
3 weeks ago
Columbus, United States Vernovis Full timeJob Title: GRC ManagerLocation/Work Structure: OnsiteWho We Are: Vernovis is a Total Talent Solutions company that specializes in Technology, Cybersecurity, Finance & Accounting functions. At Vernovis, we help these professionals achieve their career goals, matching them with innovative projects and dynamic direct hire opportunities in Ohio and across the...
-
Help Desk Analyst
3 weeks ago
Columbus, Ohio, United States Soft Labs NA Inc Full timeSummaryThe FAMC Help Desk Analyst will support the Identity and Access Management's (IAM) Access Provisioning team at Franklin American Mortgage Company. IAM is a group within the Corporate Security & Resilience (CS&R) organization. The IAM group provides subject matter expertise and associated security services to the business division across the...
-
Treasury Analyst
3 days ago
Columbus, United States OhioHealth Full timeThe Treasury Analyst is responsible for performing the routine tasks related to managing the organization's operating cash, merchant services and debt compliance. This position is also responsible for managing projects in each of these areas to imple Treasury, Analyst, Accounting, Security, Healthcare, Technology, Financial
-
IT Security Analyst
1 week ago
Columbus, Ohio, United States Atechstar Full timejob Description Requirements Advanced proficiency in AWS and its services Linux expert Scripting expert Assistance in compliance evidence submission and automation. Advanced skills with Docker Familiar with the principals of least privilege. Thirst for finding and fixing security defects. Initiative to take your own path and do whats right. Excellent...
-
Epic Analyst
24 hours ago
Columbus, United States Columbus Regional Health Full timePotential for signing bonus on select Epic Analyst -Senior positions! Ask CRH Recruiting about eligibility requirements via email (hrjobs@crh.org?subject=CRH%20Signing%20Bonus) or phone (812-376-JOBS or 5627). What you need to know about this position: Our Information Services department is located in a secure technical center located minutes from our...
-
Technical Business Analyst
1 week ago
Columbus, United States eTeam Full timeTechnical Business analyst Technical Business Analysts are responsible for overseeing the implementation of technical business projects and solutions. Technical Business Analysts work with stakeholders and technical team members to map, analyse and document business processes and projects. Roles and Responsibilities Performing system analyses on software...
-
Technical Business Analyst
3 days ago
Columbus, United States eTeam Full timeTechnical Business analyst Technical Business Analysts are responsible for overseeing the implementation of technical business projects and solutions. Technical Business Analysts work with stakeholders and technical team members to map, analyse and document business processes and projects. Roles and Responsibilities Performing system analyses on software...
-
Columbus, United States SOC Full timeNetwork Systems Analyst III needed for a Contract-to-Hire opportunity with SOC's client to work in Columbus, OH. Job Summary With general direction, analyses of LAN/WAN systems, including planning, designing, evaluation, and selection of operating systems / protocol suites. Resolves complex inter-operability problems to maintain operations across all...
-
Columbus, United States SOC Full timeNetwork Systems Analyst III needed for a Contract-to-Hire opportunity with SOC's client to work in Columbus, OH. Job Summary With general direction, analyses of LAN/WAN systems, including planning, designing, evaluation, and selection of operating systems / protocol suites. Resolves complex inter-operability problems to maintain operations across all...