Technical Risk Engineer-Application Security
Company | Sentry Insurance |
---|---|
Location | Plover, WI, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | Associate’s |
Experience Level | Junior, Mid Level |
Requirements
- Associate’s degree in information security, networking, systems administration, computer science or one year of related work experience
- Bachelor’s degree preferred
- Two years of related work experience preferred
- SEC+, GSEC, OSCP, OSWA, Pen+ or equivalent certification preferred
Responsibilities
- Conduct static, dynamic, and open-source scanning to detect vulnerabilities that make an application susceptible to attacks.
- Evaluate severity of and prioritize the overall risk to the organization presented by the findings.
- Provides guidance and recommendations to development teams on best practices to mitigate or remediate security risks to the organization.
- Partners with the SOC as a subject matter expert on web application attacks, including training scenarios, documentation review and alert escalation.
- Assess overall program metrics, and create detailed reports related to the program for senior leadership.
- Review and recommend security training materials to help educate developers on secure coding practices.
- Maintain computing infrastructure used for scanning and reporting.
- Additional duties as assigned.
Preferred Qualifications
- Bachelor’s degree preferred
- Two years of related work experience preferred
- SEC+, GSEC, OSCP, OSWA, Pen+ or equivalent certification preferred