Application Security Analyst III

2 months ago


Oklahoma City, United States Paycom Full time
Job Details

Level
Experienced

Job Location
Multiple: Grapevine, TX - Oklahoma City, OK

Position Type
Full Time

Education Level
Bachelor's Degree

Travel Percentage
None

Job Category
Information Technology

Description

The Application Security Analyst III position exists to protect the security posture of the Paycom application through tasks such as advanced web application penetration testing, code review, tool use, and other as-needed security reviews. Additional tasks include work to develop or improve existing projects that contribute to application security, and user education.

RESPONSIBILITIES
  • Perform and lead advanced web penetration test assessments and manual code review.
  • Work closely with Software Development Delivery teams, Product Owners and Development Project Managers to identify module-specific risks through threat modeling and provide mitigation recommendations to meet business and security requirements.
  • Provide guidance and train members of the software development teams on security best practices and encourage a culture of security awareness.
  • Participate in threat modeling processes and document module risks and potential mitigation techniques.
  • Contribute to the development of in-house security solutions, utilized for security testing and to meet compliance/regulatory requirements, as needed.
  • Work with the DevOps team on the integration of security tools into the DevOps lifecycle.
  • Research 3rd party tools, software libraries, APIs, and other incoming technology for security viability and document any concerns prior to application integration.
  • Interface with other departments to gain insight into new technology and initiatives as needed.
  • Train and guide other Application Security Analysts on threat modeling, advanced penetration testing, and development processes within Application Security.
  • Analyze complex or recurring issues within the application and work with the software development teams on remediation.
  • Act as a SME on assigned modules, advanced vulnerabilities, and automation technologies.
  • Attend trainings, pursue certifications, and research vulnerabilities, remediations, and new technology to learn and stay up to date on security best practices.
  • Contribute to the creation, maintenance, and improvement of documentation around security, policies, standards, guides, and procedures where applicable.
Qualifications

Education/Certification:
  • Bachelors or Master's Degree in Management Information Systems, Computer Science or Cyber Security.
Experience:
  • *At least 3 years of experience in Application Security.
  • Strong experience with the OWASP Top 10 vulnerabilities.
  • Experience implementing information security principles and practices.
  • Solid understanding of web server architecture and relevant concepts: HTTP, TLS, DNS, WAF, etc.
  • Experience with one or more programming/scripting languages highly recommended: PHP, Python, C#, Java, C++, C, JavaScript, React.
  • Basic understanding of cloud infrastructure and technologies: Kubernetes, Docker, etc.
  • Basic experience with the following technologies is highly recommended but not required: SQL (MySQL/MSSQL/Postgres), NoSQL, HTML, CSS
  • Experience with the following operating systems is highly recommended but not required: Linux distributions (Ubuntu, Kali Linux, Debian, Red Hat), iOS, Android OS, macOS.
  • Strong analytical and problem-solving skills.
  • Strong verbal and written communication skills.
* Will consider an equivalent combination of relevant education and experience.

PREFERRED QUALIFICATIONS

Education/Certification:
  • Industry Certification (CASP+, Pentest+, Burp Suite Certified Practitioner, OSCP, CISSP, etc.) preferred.


Paycom is an equal opportunity employer and prohibits discrimination and harassment of any kind. Paycom makes employment decisions on the basis of business needs, job requirements, individual qualifications and merit. Paycom wants to have the best available people in every job. Therefore, Paycom does not permit its employees to harass, discriminate or retaliate against other employees or applicants because of race, color, religion, sex, sexual orientation, gender identity, pregnancy, national origin, military and veteran status, age, physical or mental disability, genetic characteristic, reproductive health decisions, family or parental status or any other consideration made unlawful by applicable laws. Equal employment opportunity will be extended to all persons in all aspects of the employer-employee relationship. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, training, promotion, discipline, compensation benefits, and separation of employment. The Human Resources Department has overall responsibility for this policy and maintains reporting and monitoring procedures. Any questions or concerns should be referred to the Human Resources Department. ****To learn more about Paycom's affirmative action policy, equal employment opportunity, or to request an accommodation - Click on the link to find more information: paycom.com/careers/eeoc

  • Oklahoma City, United States Paycom Online Full time

    The Application Security Analyst III position exists to protect the security posture of the Paycom application through tasks such as advanced web application penetration testing, code review, tool use, and other as-needed security reviews. Additional tasks include work to develop or improve existing projects that contribute to application security, and user...


  • Oklahoma City, Oklahoma, United States Paycom Full time

    Job Title: Application Security Analyst IIIJob Summary:We are seeking an experienced Application Security Analyst III to join our team at Paycom. The successful candidate will be responsible for protecting the security posture of our application through advanced web application penetration testing, code review, and other security-related tasks.Key...


  • Oklahoma City, Oklahoma, United States Paycom Online Full time

    Job Title: Application Security Analyst IIIThe Application Security Analyst III position plays a critical role in protecting the security posture of the Paycom application. This involves advanced web application penetration testing, code review, tool use, and other as-needed security reviews. Additional responsibilities include developing or improving...


  • Oklahoma City, Oklahoma, United States Paycom Online Full time

    Job Title: Application Security Analyst IIIThe Application Security Analyst III position plays a crucial role in protecting the security posture of the Paycom application. This involves advanced web application penetration testing, code review, tool use, and other as-needed security reviews. Additional responsibilities include developing or improving...


  • Oklahoma City, United States Paycom Online Full time

    The Application Security Analyst I position exists to protect the security posture of the Paycom application through tasks such as web application penetration testing, code review, tool use, and other as-needed security reviews. Additional tasks include work to develop or improve existing projects that contribute to application security, and user...


  • Oklahoma City, Oklahoma, United States Love's Travel Stops & Country Stores Full time

    About the PositionThe Cyber Security Analyst III provides leadership and expertise to IT staff and other departments related to information security issues. The Analyst monitors and responds to security incidents, performs vulnerability assessments, creates process documentation, and otherwise contributes to the development and maintenance of a sound...


  • Jersey City, New Jersey, United States Verisk Analytics Full time

    Job Title: Application Security Analyst IIIVerisk Analytics is seeking an experienced Application Security Analyst III to join our team. As a key member of our security team, you will play a critical role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST),...


  • Jersey City, New Jersey, United States Verisk Full time

    Job Title: Application Security Analyst IIIVerisk is seeking an experienced Application Security Analyst III to join our team. As a key member of our security team, you will play a critical role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST), handling...


  • Jersey City, New Jersey, United States Insurance Services Office Full time

    Job Title: Application Security AnalystJob Summary:We are seeking an experienced Application Security Analyst to join our team. As an Application Security Analyst, you will play a key role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST), handling bug...


  • Jersey City, New Jersey, United States Verisk Analytics URIX Full time

    Job Title: Application Security AnalystAbout the Role:We are seeking an experienced Application Security Analyst to join our team at Verisk Analytics. As an Application Security Analyst, you will play a key role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing...


  • Oklahoma City, Oklahoma, United States Paycom Full time

    Job Title: Application Security AnalystPaycom is seeking a highly skilled Application Security Analyst to join our team. As a key member of our security team, you will be responsible for protecting the security posture of our application through various tasks such as web application penetration testing, code review, and security...


  • Oklahoma City, Oklahoma, United States Paycom Online Full time

    Job Title: Application Security AnalystThe Application Security Analyst position plays a critical role in protecting the security posture of the Paycom application. This includes tasks such as web application penetration testing, code review, tool utilization, and other as-needed security reviews. Additional responsibilities include developing or improving...


  • Oklahoma City, Oklahoma, United States Paycom Online Full time

    ### Job Summary We are seeking a skilled Application Security Analyst to join our team at Paycom Online. As a key member of our security team, you will play a critical role in protecting the security posture of our application through various tasks such as web application penetration testing, code review, and security scanning. ### Key Responsibilities *...


  • Oklahoma City, Oklahoma, United States Continental Resources Full time

    Job SummaryThe Division Order Analyst III is a senior-level position within the Division Order Department, responsible for addressing complex division order-related issues and mentoring junior-level analysts. This role requires a highly motivated individual with a strong understanding of land concepts and division order responsibilities.Duties and...


  • Oklahoma City, Oklahoma, United States Paycom Online Full time

    The Application Security Analyst role at Paycom Online exists to protect the security posture of the Paycom application through tasks such as web application penetration testing, code review, tool use, and other as-needed security reviews.Responsibilities:Perform web penetration test assessments and manual code review.Utilize security scanners and other...


  • Jersey City, United States Pyramid Consulting, Inc. Full time

    Immediate need for a talented Application Offensive Security Consultant Application Security Analyst. This is a 06+months contract opportunity with long-term potential and is located in Jersey City, NJ (Hybrid). Please review the job description below and contact me ASAP if you are interested. Job ID:24-45516 Pay Range: $68 - $74.36/hour. Employee benefits...


  • Jersey City, New Jersey, United States Verisk Analytics Full time

    Secure Our ApplicationsWe're seeking a highly skilled Application Security Analyst III to join our team at Verisk Analytics. As a key member of our security team, you'll play a critical role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST), handling bug...

  • Applications Analyst

    2 months ago


    Oklahoma City, United States Integris LLC Full time

    INTEGRIS Health Corporate Office, Oklahoma's largest not-for-profit health system has a great opportunity for an Applications Analyst in Oklahoma City, OK. In this position, you'll be a part of our Informatics and Training team providing exceptional work supporting the INTEGRIS Health caregivers and the community at large. If our mission of partnering with...

  • Help Desk Analyst III

    3 weeks ago


    Oklahoma City, United States Robert Half Full time

    Job DescriptionJob DescriptionWe are seeking a skilled Help Desk Analyst III to join our team in Oklahoma City, Oklahoma. This role falls within the technology industry and involves providing frontline support to end users, facilitating their daily business tasks. It offers a long-term contract employment opportunity and requires expertise in Azure Active...


  • Oklahoma City, Oklahoma, United States Paycom Online Full time

    Job SummaryThe Application Security Specialist position at Paycom Online exists to protect the security posture of our application through advanced web application penetration testing, code review, and other security-related tasks. This role requires a strong understanding of web server architecture, relevant concepts, and programming/scripting...