Job Closed
This listing is no longer active.
KnitWell Group, a specialty retail operating company, comprises some of the most iconic brands in America – Ann Taylor, Chico's, Haven Well Within, Lane Bryant, LOFT, Soma, Talbots, White House Black Market. Individually, our brands are unique and strong. Together, we are powerful. Our common thread is our commitment to create exceptional products, provide memorable experiences, and achieve superior results. Our associates are innovators who thrive through collaboration and are dedicated to excellence. At the heart of it all are the customers we serve.
Application Security Analyst
Location
United States
Posted
93 days ago
Salary
0
No structured requirement data.
Job Description
Application Security Analyst
Knitwell Group
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description An application security analyst is a trained professional responsible for providing security assessments of applications and other software. The goal of these assessments is to protect organizations from hacking attempts and threats such as phishing, malware, and ransomware. - Conduct application security assessments to identify and mitigate security risks - Perform DAST scans for the internal and external applications - Conduct end-to-end Pentest engagement for E-commerce applications - Perform False positive analysis for vulnerabilities from scan results - Analyze the security risks and create vulnerability report with recommendations - Work collaboratively with cross-functional teams to identify and solve complex security problems - Work on ad hoc SAST scan requests and vulnerability analysis - Participate in incident response activities and provide technical guidance on security-related incidents - Develop and maintain technical documentation related to application security Qualifications - Education and/or Certifications in Computer Science, Information Systems, other related field, or equivalent work experience - 3-5+ years of IT work experience, with at least 2 years of experience working in Application security - Working experience with security testing tools (DAST, SAST, SCA) - Hands on experience with manual web application penetration testing (VAPT) - Proficient in Burp suite and Kali Linux tools - Experience on API testing - Knowledge of secure coding practices/frameworks such as OWASP, SSDF - Strong knowledge of application security principles - Knowledge on Threat Modeling and DevSecOps - Strong working knowledge of IT Security best practices - Knowledge of policies and procedures; governance practices and control frameworks (ITIL); and regulatory obligations (SOX and PCI) as it relates to information systems - Familiarity with software development methodologies such as Agile or DevOps - Knowledge in any one programming languages such as Java, Python, or C++ - Proficiency in some scripting languages (PowerShell, JavaScript, SQL, etc.) - Understanding of various operating system platforms including Windows, UNIX, etc. - Ability to interact with all levels of management - Must possess an understanding of the retail industry - Must possess an understanding eCommerce infrastructure Benefits - You will be eligible to receive a merchandise discount at select KnitWell Group brands, subject to each brand’s discount policies - Support for your individual development plus opportunities for career mobility within our family of brands - A culture of giving back – local volunteer opportunities, annual donation and volunteer match to eligible nonprofit organizations, and philanthropic activities to support our communities - Medical, dental, vision insurance & 401(K) - Employee Assistance Program (EAP) - Time off – paid time off & holidays - The target salary range for this role is: $100,000 – 115,000
Job Requirements
- Education and/or Certifications in Computer Science, Information Systems, other related field, or equivalent work experience
- 3-5+ years of IT work experience, with at least 2 years of experience working in Application security
- Working experience with security testing tools (DAST, SAST, SCA)
- Hands on experience with manual web application penetration testing (VAPT)
- Proficient in Burp suite and Kali Linux tools
- Experience on API testing
- Knowledge of secure coding practices/frameworks such as OWASP, SSDF
- Strong knowledge of application security principles
- Knowledge on Threat Modeling and DevSecOps
- Strong working knowledge of IT Security best practices
- Knowledge of policies and procedures; governance practices and control frameworks (ITIL); and regulatory obligations (SOX and PCI) as it relates to information systems
- Familiarity with software development methodologies such as Agile or DevOps
- Knowledge in any one programming languages such as Java, Python, or C++
- Proficiency in some scripting languages (PowerShell, JavaScript, SQL, etc.)
- Understanding of various operating system platforms including Windows, UNIX, etc.
- Ability to interact with all levels of management
- Must possess an understanding of the retail industry
- Must possess an understanding eCommerce infrastructure
Benefits
- You will be eligible to receive a merchandise discount at select KnitWell Group brands, subject to each brand’s discount policies
- Support for your individual development plus opportunities for career mobility within our family of brands
- A culture of giving back – local volunteer opportunities, annual donation and volunteer match to eligible nonprofit organizations, and philanthropic activities to support our communities
- Medical, dental, vision insurance & 401(K)
- Employee Assistance Program (EAP)
- Time off – paid time off & holidays
- The target salary range for this role is: $100,000 – 115,000
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
• Manage and maintain Elastic Stack (ELK) environments • Create dashboards and reports in Kibana • Develop and tune correlation rules in the SIEM • Monitor security events and support incident investigations • Work with the SOC and infrastructure teams to continuously improve the environments
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We're looking for a highly motivated individual with a strong work ethic and the ability to work in a collaborative, fast-paced, changing environment. As the RTX Cybersecurity Compliance Analyst you will play a critical role in providing cybersecurity compliance services that facilitate contract awards and program execution. - Perform cybersecurity impact analysis for proposal and contract/subcontract requirements to include Statements of Work (SOW), Contract/Subcontract Data Requirements Lists (CDRLs/SDRLs), etc. - Provide discrete guidance/direction and textual language for program capture and execution teams that mitigate risk, address residual risk, and/or outline bid/acceptance constraints. - Support the development and delivery of cybersecurity CDRL/SDRL artifacts to enable programs to respond to cybersecurity requirements. - Enable programs to respond to external cybersecurity requests to include, but not limited to, regulatory compliance, cybersecurity posture of the program, etc. - Enable program capture and execution teams to collaborate with external parties (e.g. customers, partners, vendors) by evaluating requirements, assessing solution landscape, and providing direction thereof. - Support programs with prime contractor and supplier/subcontractor cybersecurity challenges. - Travel 10%. Qualifications - Typically requires a University Degree or equivalent experience and a minimum 10 years of experience, or an Advanced Degree and a minimum 7 years experience. - Certified security expert – ISC2 Certified Information Systems Security Professional (CISSP) or equivalent. - 6+ years of cybersecurity experience across the following domains: security and risk management, asset security, security architecture and engineering, communication and network security, identity and access management (IAM), security assessment and testing, security operations and software development security. - 3+ years of experience analyzing U.S. Government cyber regulations, requirements, industry standards and frameworks (e.g. DFARS 252.204-7012, FARS 52.204-21, NIST 800-171, NIST 800-53, RMF, CMMC). - 3+ years of experience as a contributing member of a cross-functional program capture team responding to DoD and Federal business opportunities (e.g. RFPs, RFIs, etc.). - Active and transferable U.S. government issued security clearance is required prior to start date. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance. Requirements - Advanced degree preferred (e.g., MS, MBA). - Familiarity with project management concepts. - Demonstrated ability to lead, manage and be fully accountable in a geographically dispersed virtual and fast paced work environment. - Strong team player, able to meet deadlines and adjust to changing and competing priorities. Benefits - Robust total rewards package with compensation; healthcare, wellness, retirement and work/life benefits; career development and recognition programs. - Parental (including paternal) leave. - Flexible work schedules. - Achievement awards. - Educational assistance. - Child/adult backup care.
• Help in alerts investigation generated by security controls. • Implement provided recommendations to improve detection capability accuracy. • Participate in the optimization of incident response standards. • Analyze the enterprise information security environment and identify potential gaps. • Help identify, evaluate, and report on information security risks. • Collaborate with vendors and internal departments to optimize performance. • Collaborate with security teams to enhance security processes and documentation. • Participate in the evaluation and assessment of information security vulnerabilities. • Investigate any fraud and other computer issues. • Perform daily operational tasks to protect NM’s assets.
IT Infrastructure, Security Analyst
Quorum Federal Credit UnionQuorum Federal Credit Union is a member-owned financial institution offering a comprehensive range of financial products and services designed to meet the diver
• The IT Infrastructure & Security Analyst is a member of the Information Technology team and is responsible to support and maintain the organization's IT infrastructure environment, ensuring the reliability, performance and security of systems and networks. • The position will hold a hybrid role, providing technical support for our IT Infrastructure alongside our Managed Service Provider (MSP) while also owning several key Information Security activities. • The IT Infrastructure & Security Analyst works closely with both internal teams and the MSP to ensure that servers, network devices, endpoints and related infrastructure and software effectively support Quorum’s business needs. • The IT Infrastructure & Security Analyst operates independently, managing and/or supporting projects and deliverables across infrastructure, Azure Cloud and M365 platforms and tools. • In addition, the IT Infrastructure & Security Analyst provides first-line end-user client services support (help desk) as needed. • Responsibilities include monitoring outsourced security services, producing reports on the organization’s security posture (including patching status and vulnerability scans), and reviewing threat intelligence. • The role is also responsible for developing and delivering regular security education and awareness content, including bimonthly Information Security communications published in Microsoft Teams and SharePoint.


