CAPPS Security Analyst
Location
United States
Posted
6 days ago
Salary
$38 / month
Seniority
Mid Level
Job Description
CAPPS Security Analyst
Numentica LLC
Role Description This is a remote position. Position Requirements: - Performing highly advanced (senior-level) consultative services and technical assistance work related to supporting the CAPPS Program. - Responsible for the (CAPPS) security framework, which includes but is not limited to: - Manage and enforce role‑based access control (RBAC) and least‑privilege models within CAPPS and connected systems. - Design and maintain segregation‑of‑duties (SoD) rules; identify and remediate SoD conflicts across business processes. - Review and validate security roles, permission sets, and custom authorizations within CAPPS and all ancillary systems. - Monitor and analyze authentication, authorization, and privilege‑escalation logs for suspicious behavior and coordinate any findings with CPA Information Security Office. - Oversee secure integration of third‑party apps via SAML, OAuth, OIDC, SCIM, and custom APIs. - Validate CAPPS application changes, customizations, and workflows for security and compliance impact. - Respond to and investigate identity‑related security incidents, including account compromise, unauthorized access, and fraud indicators. - Maintain standards for security, performance, compliance, and architecture. - Responsible for ensuring that all digital products and content meet WCAG 2.1 accessibility standards, including: - Maintaining perceivable, operable, understandable, and robust experiences for all users. - Regularly reviewing content for compliance and implementing updates or remediation whenever accessibility issues are identified. - Reviewing and suggesting approval for all assigned Security Deliverables related to CAPPS Architecture, CAPPS System Development Lifecycle, Disaster Recovery, CAPPS Security Plans (SSP), and all CAPPS related Security plans. - Service Desk Support: - Plans, designs, develops, deploys, supports, and maintains system configurations and modifications for CPA’s CAPPS HR/Payroll application. - Performs highly advanced analysis and participates in special projects and cyclic processes in support of CPA’s CAPPS HR/Payroll application. - Supports CAPPS agencies with discovery, prototyping, configuration, security, conversion, integration, and acceptance testing. - Provides Level 2 Service Desk duties, including ticket handling for complex issues, in-depth troubleshooting, and basic configurations. - Performs all duties following CPA’s processes, policies, and procedures within project scope and on schedule. - Works under minimal supervision, relying on experience and judgment to plan and accomplish goals. - Performs all work in accordance with ITIL principles and practices for IT activities. - Actively responds to and maintains customer ticket requests via the CAPPS Service Desk. - Actively participates in CPA’s Major Incident Management (MIM) process for P1 and P2 incidents. - Participates in Disaster Recovery and Upgrade Testing activities. - Assists with expansion activities. - Makes presentations at CAPPS User Groups. - Plans, designs, develops, implements, supports, and maintains information technology security measures. - Participates in an annual SOC-1 attestation audit. - Performing other related work as assigned. Qualifications - 10 years Required: Extensive Texas public sector experience, directly working for or supporting a Texas state government agency. - 10 years Required: Extensive experience performing technical activities in support of CPA application systems. - 10 years Required: Extensive experience creating and managing a strategic roadmap by combining strong planning skills, technical insight, and effective cross-functional communication. - 10 years Required: Experience preparing materials for and conducting executive-level presentations. - 10 years Required: Experience performing technical project management activities in support of CPA’s CAPPS program. - 10 years Required: Experience in interpreting contractual language and integrating it into daily workflows. - 10 years Required: Extensive knowledge of/experience with data integration, data quality, and SDLC processes and methodologies. - 10 years Required: Experience in IT security and control practices. - 10 years Required: Technical experience with PeopleSoft FSCM or HCM 9.2, PeopleTools, Peoplecode, Application Designer, SQL, PS Query, SQR, Application Engine, and Oracle 11 or higher. - 10 years Required: Experience with CAPPS Central production and deployment technical support activities for more than 100 agencies and 5 Hub instances. - 8 years Required: Experience with IT service desk functions, knowledge of ITIL framework methodologies and processes. - 5 years Required: Experience serving in a security analyst role with responsibility overseeing a Managed Services provider. - 5 years Required: Experience with user role segregation of duties (SoD) in multi-tenant software applications. - 10 years Preferred: Experience with software and hardware management industry best practices. - 10 years Preferred: Experience with CPA’s legacy Statewide Financial Systems production support activities. - 10 years Preferred: Experience developing technical specifications to support IT procurements.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cloud Security Analyst
CloudbedsCloudbeds is a quickly growing Software-as-a-Service (SaaS) company that provides exceptional software to the hospitality industry. Thousands of hotels, groups,
Role Description As a Cloud Security Analyst on our Security team, you will help deliver an exceptional and secure product experience to our customers all around the world. You will play a crucial role in ensuring the security and compliance of our systems, customers, and data. Working on security at Cloudbeds requires an adaptable cross-functional mindset. You should be comfortable talking to individuals at every level and space across the organization, from Engineering to Sales, and even Executives. Our Security strategy is to enable the delivery of trusted, scalable, and reliable products leveraging the best of modern technologies, tools, and standards. For the Cloud Security Analyst role, we are looking for someone who can communicate best practices across both a technology and organizational process space. Our best fit team members will have worked with a broad range of compliance regulation standards, application development best practices, and Security frameworks. - Participate in implementation and ongoing monitoring of security tooling at all edges of the security landscape. - Assist with Requests for Proposals from prospective customers. - Daily monitoring of endpoint detection platforms. - Conduct Pen-tests, application vulnerability discovery and remediation. - Handle compliance requests and company-wide security training programs. - Engage in more security owned initiatives. Qualifications - 5 years of practical experience in cloud or application security. - Hands-on experience securing application stacks deployed in the cloud — both the code and the infrastructure behind it. - Strong experience with AWS security services and the ability to design and implement cloud-native controls. - Solid software development fundamentals: comfortable reading code, working in a repository, and reasoning about application vulnerabilities (e.g., OWASP Top 10). - Practical experience integrating security into CI/CD pipelines and DevOps workflows (SAST, DAST, SCA, secrets, and IaC scanning). - Experience with container and Kubernetes security (image scanning, runtime protection, policy enforcement). - Working knowledge of IAM concepts and least-privilege design across cloud environments. - Strong technical documentation skills — able to write clear standards, runbooks, and policies that engineers will actually use. - Strong communication, problem-solving, and diplomacy skills. - Familiarity with compliance standards relevant to the cloud (PCI DSS, GDPR, SOC 2, etc.). - Understanding and evaluating short and long term risk vs implementation speed when selecting tooling. - Ability to wield security knowledge to resolve disputes rationally without hierarchical authority. - A Bachelor's Degree in a relevant field. Requirements - Certifications such as AWS Certified Security – Specialty, AWS Solutions Architect, CCSP, or CompTIA Cloud+/Security+. - Scripting/automation experience (e.g., Python, Terraform) for security orchestration and infrastructure-as-code. - Direct experience with tools like GitHub Advanced Security, AWS Security Hub, Crowdstrike, ArgoCD, Github Actions, Kubernetes, and GRPC. - Experience with cloud security automation and orchestration (SOAR, policy-as-code). - Experience with incident response planning and execution in cloud environments. - Experience working with a remote-first and globally distributed team. - Experience with Atlassian products [Jira/Confluence]. - Travel industry experience is a plus but definitely not required. Benefits - Remote First, Remote Always. - PTO in accordance with local labor requirements. - Monthly Wellness Fridays - enjoy an extra long weekend every month. - Full Paid Parental Leave. - Home office stipend based on country of residency. - Professional development courses in Cloudbeds University. - Access to professional development, including manager training, upskilling, and knowledge transfer.
IT Security Analyst
BuiltIn Integration SandboxWe deliver the most advanced and flexible learning experience for certification, credentialing, test prep, continuing education, and training. Our cloud-based learning platform helps training organizations, associations, and the extended enterprise deliver a highly engaging and effective learning experience for individuals looking to advance their careers. We incorporate the latest in learner-centered technology, including personalization, gamification, data science, usability, and omni-channel delivery. We’re committed to helping people learn better, and that starts with our own people. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
Role Description Within the Accounting function at BenchPrep, you'll play a pivotal role in our finance team. Your focus will be on maintaining accurate financial records, preparing reports, analyzing data, and ensuring regulatory compliance. You'll contribute to budgeting, forecasting, audits, and process improvements, supporting our financial health and strategic decision-making. The ideal candidate has a strong background in accounting, financial analysis, and reporting, along with excellent analytical skills, attention to detail, and the ability to communicate financial information effectively across the organization. Proactivity, problem-solving abilities, and a commitment to continuous improvement are also essential. - Manage accounting function including account reconciliations, journal entries, AR, AP, and Billing - Analysis and review of company expenditures, confirming proper allocation of expenses to the various departments, and reporting to these departments as necessary - Review transactions to ensure accounting treatment is in accordance with GAAP and company policies and procedures - Analyze billing transactions to ensure proper allocation of revenue recognition policies - Review general ledger accounts and making all necessary journal entries including posting monthly, quarterly, and yearly accruals - Assist in building financial statements including balance sheet, income statement, and changes in financial position, as well as budget variance analysis - Assist in the design and preparation of budgets for review by management - Prepare year-end schedules for the annual tax returns - Look for ways to improve upon accounting processes and procedures Qualifications - Bachelor’s degree in accounting; CPA preferred - 3-5 years (Staff Accountant), or 5-8 (Sr Accountant) years in accounting or auditing; public accounting experience preferred - Team player with a positive attitude towards contributing and learning - Thorough knowledge and experience in the areas of financial statement preparation, GAAP, and revenue recognition - Strong verbal/written communication skills - Excellent analytical and problem-solving skills - Ability to work well independently and in a team environment - Self-starter, quick learner, and ability to multitask on a regular basis - Detail-oriented with excellent organizational skills and deadline driven - Capacity to thrive in a fast-paced environment - Strong sense of ownership on issues and following through to completion - Advanced proficiency with Microsoft Excel - Experience working in accounting systems (NetSuite, Intacct, Quickbooks, etc.) strongly preferred Benefits - Medical and ancillary benefits - Potential for yearly bonus - Stipends for work-from-home expenses - Flexible paid time off (our version of unlimited PTO) - Annual professional development stipend dollars - Competitive base salary Company Description We deliver the most advanced and flexible learning experience for certification, credentialing, test prep, continuing education, and training. Our cloud-based learning platform helps training organizations, associations and the extended enterprise deliver a highly engaging and effective learning experience for individuals looking to advance their careers. We’re committed to helping people learn better, and that starts with our own people. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. We are looking for high performing and motivated professionals who are excited about the chance to leverage technology to impact the lives of millions of learners. Join us.
• Play a key role in protecting the university's information assets while helping to shape and strengthen our security culture. • Responsible for maintaining and enhancing our information security framework, ensuring that policies, procedures, controls, and risk management activities remain effective and aligned with industry best practice. • Contribute to the design and implementation of new security controls, helping to continually improve our security posture and support our ongoing compliance with ISO 27001. • Collaborate closely with colleagues across IT, Cyber Security, and the wider university community to embed security into everyday operations and strategic initiatives. • Take a leading role in coordinating Business Continuity Management activities, supporting the university's resilience objectives and alignment with ISO 22301. • Conduct risk assessments, supporting audits, advising stakeholders, or helping drive security improvements.
Security Analyst – Level 1
ProArchConsulting and technology- enabled by cloud, guided by data, fueled by apps, and secured by design.
• SOC Dashboard Monitoring. • First Response to Alerts generated from Security Solutions ingested in the SIEM/SOAR Tool. • Verifying the Facts and Enriched Data in Incidents using SOAR Platform. • Preliminary triage based on the facts from the SOAR. • Sending email notifications for Medium & lower priority alerts to the client for confirmation on potentially false or benign alerts. • Helping seniors in triage, evidence collection, incident documentation, etc. • Reporting to the Shift Lead about the alerts handled during the shift and updating the SHO Sheet. • Escalation of Incidents based on the preliminary triage using the escalation workflow in case of possible true positives. • Identifying daily repeat false positive alerts, and interesting patterns based on monitoring of alerts. • Reporting any tool outages or monitoring downtime during one’s own shift to the Shift Lead or Leads asap. • Performing Monthly Maintenance Tasks for Health Checks for the Security Monitoring and Response Tools • Develop, test, and fine-tune detection rules and use cases based on log sources, threat intelligence, attack patterns, and client requirements. • Identify emerging threats and incorporate them into use-cases for alerts and detections. • Optimize and refine alert thresholds and logic to minimize false positives and enhance detection accuracy. • Leverage expertise in Microsoft 365 Defender/Defender XDR, Microsoft Defender for Endpoint, Defender for Office 365 and Entra ID Protection to improve overall threat detection and response. • Analyze security logs and telemetry data for signs of compromise, anomalous activities, or malicious behavior. • Prioritize the work effectively and handle shifting priorities professionally. • Work closely with cross-functional teams (IT, Cloud Operations, Application Development) to mitigate security risks and improve SOC capabilities. • Create detailed reports and post-analysis reports to communicate findings and recommendations to technical and non-technical stakeholders. • Contribute to continuous improvement of SOC processes, including SOPs, playbooks, runbooks, and escalation procedures. • Stay updated with the latest threat landscape, vulnerabilities, and attack methods. • Share knowledge and insights with other SOC analysts and participate in team knowledge-sharing sessions. • Participate in red/blue team exercises to test and improve detection and response capabilities.


