Information Security Analyst

2 weeks ago


Jersey City, United States Saxon Global Full time

Need 10+ years of experience

Job Description:

What will I be doing?

We seek a candidate who has the technical expertise and communication skills to work closely with other teams at Hilton, such as infrastructure, cloud, external contractors, field-level IT resources, and risk management teams, as well as unaffiliated security researchers who participate in the Hilton Bug Bounty Program (BBP).

As a Senior Cyber Security Analyst on the SecPEN team, your primary responsibilities will include assisting developers with remediating vulnerabilities discovered from security testing, triaging findings that are submitted to the Hilton BBP, as well as developing Hilton BBP KPI reports for senior management.

What are we looking for?

Responsibilities:
• Track the lifecycle of bug bounty reports submitted through the Hilton Bug Bounty Program (BBP) assuring that program SLAs are met.
• Triage security vulnerabilities that are disclosed through the Hilton BBP.
• Facilitate communications as needed between the BBP and Hilton's various engineering teams, development teams, and finders.
• Collaborate with Hilton's Risk and Incident Response teams as needed to facilitate the management of reported security vulnerabilities.
• Schedule and assist with penetration and remediation testing for a wide variety of Hilton assets.
• Process and track all bug bounty payments to researchers and provide monthly expenditures.
• Analyze the data produced by Hilton's Bug Bounty Program using to surface trends and other insights which can be utilized to positively affect Hilton's security.
• Assist with the development of internal tooling to benefit the penetration testing and BBP programs.

We believe that success in this role will demonstrate itself through the following attributes and skills:
• Experience in Bug Bounty Management and experience working with shifting timelines and priorities is preferred.
• Strong oral and written communication skills with demonstrated experience presenting to various internal and external groups.
• Work effectively in situations involving uncertainty or lack of information, respond favorably to change, and react decisively in an unstructured environment.
• Demonstrated hands-on experience with penetration testing tools, such as Burp Suite or Metasploit • Deep understanding of common application security issues, such as Cross-Site Scripting (XSS) and Server-Side Request Forgery (SSRF)

To fulfill this role successfully, you should demonstrate the following minimum qualifications:
• At least three (3) years of experience in Technology or a related field • At least one (1) year of experience in a Cybersecurity-related role

It would be helpful in this position for you to demonstrate the following capabilities and distinctions:
• Bachelor's Degree, or Associate's Degree plus five (5+) years of Technology related experience, or High School Degree/GED plus ten (10+) years of Technology related experience • Experience programming in one or more of the following languages: Python, C#, JavaScript, TypeScript • Familiarity with one or more of the following technologies: Node.js, React, Express, GraphQL, IIS, Flask, ASP.NET, Active Directory (AD) • Understanding of fundamental networking related concepts, such as the OSI model, subnetting, etc.
• Relevant cybersecurity certifications (e.g., OSCP, CEH) • Prior security experience in a Fortune 500 or Hospitality environment



  • Panama City, Florida, United States General Dynamics Information Technology Full time

    Job Title: Information Security Analyst SeniorJoin General Dynamics Information Technology (GDIT) as an Information Security Analyst Senior and play a crucial role in transforming technology into opportunity. As a member of our team, you will be at the forefront of innovation, driving meaningful change in how agencies operate.Key Responsibilities:Coordinate...


  • Elizabeth City, United States CompQsoft Full time

    Apply Description Information Security Analyst - Journeyman Would you like to live and work in a community outside the hustle and bustle of a large metropolitan area but yet close enough to all the big city amenities? The quaint, coastal town of Elizabeth City, NC with plenty of southern charm will make you feel at home in no time! With its unique...


  • Panama City, United States The Computer Merchant Full time

    JOB TITLE: Secret Cleared Information Security AnalystJOB LOCATION: Tyndall Airforce BaseWAGE RANGE*: $55hr to $60hrJOB NUMBER: RQ189424REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk ManagementCertifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIAExperience: 3 + years of related experienceJOB...


  • Panama City, United States The Computer Merchant, LTD (TCM) Full time

    JOB TITLE: Secret Cleared Information Security AnalystJOB LOCATION: Tyndall Airforce BaseWAGE RANGE*: $55hr to $60hrJOB NUMBER: RQ189424REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk ManagementCertifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIAExperience: 3 + years of related experienceJOB...


  • panama city, United States The Computer Merchant, LTD (TCM) Full time

    JOB TITLE: Secret Cleared Information Security AnalystJOB LOCATION: Tyndall Airforce BaseWAGE RANGE*: $55hr to $60hrJOB NUMBER: RQ189424REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk ManagementCertifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIAExperience: 3 + years of related experienceJOB...


  • panama city, United States The Computer Merchant, LTD (TCM) Full time

    JOB TITLE: Secret Cleared Information Security AnalystJOB LOCATION: Tyndall Airforce BaseWAGE RANGE*: $55hr to $60hrJOB NUMBER: RQ189424REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk ManagementCertifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIAExperience: 3 + years of related experienceJOB...


  • Missouri City, United States Infojini Full time

    The Information Security Analyst is responsible for improving and maintaining a comprehensive Information Security Program for Bi-State Development. It would include working with all aspects of the BSD environment including the SCADA network and radio maintenance teams to ensure compliance to all mandates from the FTA, Homeland Security Department, and any...


  • Panama City, FL, United States The Computer Merchant, LTD (TCM) Full time

    JOB TITLE: Secret Cleared Information Security AnalystJOB LOCATION: Tyndall Airforce BaseWAGE RANGE*: $55hr to $60hrJOB NUMBER: RQ189424REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk ManagementCertifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIAExperience: 3 + years of related experienceJOB...


  • new york city, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • new york city, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • Salt Lake City, United States State of Utah Full time

    Are you a self-starter,who is detail-oriented,has the ability to learn quickly,manage multiple projects,and is looking for an opportunity to grow and expand your skills? If so,then this may be the position you're looking for. The Division of Technology Services (DTS) is looking for a hard-working,motivated,and innovative Security Operations Information...


  • Elizabeth City, North Carolina, United States MILVETS Systems Technology, Inc. Full time

    Job Title: Information Security Analyst, Journeyman PositionAbout the Company: MILVETS Systems Technology, Inc. is a reliable provider of quality services in the information and technology fields. As a Service-Disabled Veteran-Owned Small Business, certified by the Small Business Administration as a Small Disadvantaged Business, the company was founded to...


  • Jersey City, New Jersey, United States Insurance Services Office Full time

    Job Title: Application Security AnalystJob Summary:We are seeking an experienced Application Security Analyst to join our team. As an Application Security Analyst, you will play a key role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST), handling bug...


  • Jersey City, New Jersey, United States Verisk Analytics URIX Full time

    Job Title: Application Security AnalystAbout the Role:We are seeking an experienced Application Security Analyst to join our team at Verisk Analytics. As an Application Security Analyst, you will play a key role in securing our applications by managing the full lifecycle of Dynamic Application Security Testing (DAST) and Static Application Security Testing...


  • Panama City, United States The Computer Merchant, LTD. Full time

    JOB TITLE: Secret Cleared Information Security Analyst JOB LOCATION: Tyndall Airforce Base WAGE RANGE*: $55hr to $60hr JOB NUMBER: RQ189424 REQUIRED EXPERIENCE:Skills: Information Security, Information Systems, Risk Management Certifications: Security+, CE - CompTIA - Security+ CE - CompTIA, CompTIA Experience: 3 + years of related experience JOB...


  • jersey city, United States Rose International Full time

    Date Posted: 11/07/2024Hiring Organization: Rose InternationalPosition Number: 474040Job Title: Application Security AnalystJob Location: Jersey City, NJ, USA, 07310Work Model: HybridShift: 3 days per week onsiteEmployment Type: TemporaryEstimated Duration (In months): 13Min Hourly Rate($): 80.00Max Hourly Rate($): 85.00Must Have Skills/Attributes:...


  • jersey city, United States Rose International Full time

    Date Posted: 11/07/2024Hiring Organization: Rose InternationalPosition Number: 474040Job Title: Application Security AnalystJob Location: Jersey City, NJ, USA, 07310Work Model: HybridShift: 3 days per week onsiteEmployment Type: TemporaryEstimated Duration (In months): 13Min Hourly Rate($): 80.00Max Hourly Rate($): 85.00Must Have Skills/Attributes:...


  • Jersey City, United States Rose International Full time

    Date Posted: 11/07/2024Hiring Organization: Rose InternationalPosition Number: 474040Job Title: Application Security AnalystJob Location: Jersey City, NJ, USA, 07310Work Model: HybridShift: 3 days per week onsiteEmployment Type: TemporaryEstimated Duration (In months): 13Min Hourly Rate($): 80.00Max Hourly Rate($): 85.00Must Have Skills/Attributes:...


  • Kansas City, Missouri, United States UMB Financial Corporation Full time

    Job SummaryAs a key member of UMB's Corporate Information Security and Privacy (CISP) team, the Sr. Information Security Risk Analyst will play a vital role in identifying and mitigating threats, vulnerabilities, and risks to protect the organization's people, information, and services. This role will work closely with the UMB enterprise technology and...


  • Kansas City, Missouri, United States UMB Financial Corporation Full time

    Job SummaryAs a Senior Information Security Risk Analyst at UMB Financial Corporation, you will play a critical role in identifying and mitigating information security risks across the organization. This is a hybrid role, with a mix of on-site and remote work, and is open to qualified candidates within the US.Key Responsibilities:Collaborate with...