Contact Company
API Security Threat Analyst (Remote)
Information Technology company
Information Technology company
Jacksonville, FL 32256
W-2 onlyContract950 views
Jacksonville, FL 32256
Click to chat now!
Your Recruiter

Seeking an API Security Threat Analyst with expertise in web application and webservice scanning tools.

The IT Security Threat Analyst independently develops, maintains, and implements comprehensive information security monitoring programs including defining security policies, processes and standards for large and complex environments. Perform comprehensive threat analysis and recommends the appropriate course of action, mitigation, and remediation. Provide consultative guidance on the development of information security strategies and programs through demonstrated expertise and knowledge of industry trends and changes with respect to advanced and sophisticated cyberattacks and threats. Lead efforts, oversee work results, provide formal training and serve as a technical resource for Information Security team members. They are the single point of contact and coordination for third-party incident response teams and law enforcement agencies if the environment is breached.

Essential Functions

  • The essential functions listed represent the major duties of this role, additional duties may be assigned.
  • Subject matter expert in the detection and identification of web application cyberattack signatures, tactics, techniques and procedures associated with advanced threats
  • Independently and proactively prepares detailed technical papers, presentations, recommendations, and findings for Management and other Technology Leaders
  • Develops and maintains documentation for security evaluation procedures
  • Serve as a subject matter expert for team members, specializing in web application security monitoring and application analysis
  • Creates and leads initiatives to improve web application security evaluation processes
  • Leads improvements discussions with third-party vendor regarding security evaluations
  • Proactively identifies company-wide program opportunities and works to implement solutions. Guides the direction of the overall information security monitoring and application security program

Required Work Experience

  • 6+ years related work experience within IT Security
  • Experience in validation of OAUTH OIDC APIs.
  • Experience working with REST services (prefer also SOAP experience).
  • Experience with scripting (prefer also some application code development experience).
  • Experience utilizing multiple web application scanning tools. Must include DAST and SAST as well as specialty scanners.
  • Experience recommending web application security analysis tools.
  • Experience working in Agile methodology environment.
  • Experience implementing API vulnerability analysis into deployment processes.
  • Experience reporting on organizational vulnerability trending through slides, dashboards, Splunk, or similar.

Required Education

  • Related Bachelor’s degree or additional related equivalent work experience IT related field

Additional Required Qualifications

  • Demonstrated proficiencies in emerging technologies.
  • Strong technical knowledge of security architecture, tools and controls with specific demonstrated experience in web application security evaluation.
  • Experience working and managing vendor performance and service level agreements
  • Proven leadership abilities including effective knowledge sharing, conflict resolution, facilitation of open discussions, fairness and displaying appropriate levels of assertiveness.
  • Proven ability to work under stress in emergencies with flexibility to handle multiple high-pressure situations simultaneously.
  • Ability to communicate highly complex technical information clearly and articulately for all levels and audiences.
  • Ability to manage tasks independently and take ownership of responsibilities
  • Ability to learn from mistakes and apply constructive feedback to improve performance
  • Strong customer focus with ability to manage customer expectations and experience and build long-term relationships.
  • Strong team-oriented interpersonal skills with the ability to interface with a broad range of people and roles including vendors and IT-business personnel.
  • Ability to adapt to a rapidly changing environment and quickly identify new trends and industry changes specific to security and advanced cyberattacks
Skill Proficiency Years Experience Percent Used
Cyber Security
Agile Methodology
Applications Security