Talent.com
Vulnerability Management Application Security Lead

Vulnerability Management Application Security Lead

BerkleyWilmington, DE, United States
4 days ago
Job type
  • Full-time
Job description

Company Details

Company URL :

Berkley Technology Services (BTS) is the dynamic technology solution for W. R. Berkley Corporation, a Fortune 500 Commercial Lines Insurance Company. With key locations in Urbandale, IA and Wilmington, DE, BTS provides innovative and customer-focused IT solutions to the majority of WRBC’s 60+ operating units across the globe. BTS’s wide reach ensures that ideas and opinions are considered at every level of the organization to guarantee we find the best solutions possible.

Driven by a commitment to collaboration, BTS acts as consultants to our customers and Operating Units by providing comprehensive solutions that not only address the challenge at hand, but proactively plan for the “ What’s Next ” in our industry and beyond.

With a culture centered on innovation and entrepreneurial spirit, BTS stands as a community of technology leaders with eyes toward the future leaders who truly care about growing not only their team members, but themselves, and take pride in their employees who shine. BTS offers endless ways to get involved and have the chance to grow your career into a wide range of roles you'd never known existed. Come join us as we push forward into the future of industry leading technological solutions.

Berkley Technology Services : Right Team, Right Technology, Simple and Secure.

Responsibilities

The Vulnerability Management Application Security Lead  works within Berkley’s Information Security team, interacting directly with stakeholders to address issues related to remediation of vulnerability scanning and assessment. The Vulnerability Management Analyst’s support activities are focused on helping key stakeholders understand their vulnerability results, providing guidance on the remediation of failing threats, and evaluating false positives.

Maintain and improve upon, as necessary, the existing vulnerability management program, including maintenance of documents, procedures, reporting, and stakeholder communications. Provide guidance to stakeholders in support of vulnerability management services, which includes, but is not limited to, sharing goals and road maps of vulnerability management. Analysis and validation of scan / assessment results communicated to clients through reporting and results-review meetings. Provide stakeholders with remediation recommendations and guidance, up to and including remediation tracking and reporting. Provide stakeholders reports that provide the most value based on security maturity and established vulnerability management goals. This requires the ability to be adaptive in report parameters and formats depending on stakeholder needs and target audience. Ability to use analyze large amounts of data using Microsoft and other business tools to report on enterprise level vulnerability data.

Key Responsibilities :

  • Lead Security Initiatives :  Spearhead and enhance our application security efforts, including penetration testing and static code analysis.
  • Innovate and Optimize :  Evaluate and implement improvements to our security tools and explore new technologies to strengthen our security posture.
  • Code Analysis and Remediation :  Lead projects to continuously analyze source code, identify vulnerabilities, and implement remediation strategies.
  • Compliance Management :  Oversee the enterprise-wide compliance scanning process to quickly identify and address potential risks.
  • Stakeholder Communication :  Regularly update and secure buy-in from global engineering, business operating units, security management, and senior leadership teams on the status of Application Security projects.

Qualifications

  • Experience :  Minimum of 5+ years in Information Security or a related field, with expertise in security compliance, penetration testing, vulnerability management, and static code analysis.
  • Leadership :  Prior experience in project leadership or as a team lead is preferred.
  • Education : Bachelors Degree in Computer Science, Information Technology, Information Systems, or a related discipline. Equivalent experience and / or alternative qualifications will be considered.
  • Technical Proficiency :  Skilled in commonly used penetration testing tools, web application scanning tools, and static code analysis tools (e.g., Veracode, Fortify, Checkmarx).
  • Stakeholder Engagement :  Proven ability to engage and secure buy-in from business, technical, and executive stakeholders.
  • The Company is an equal employment opportunity employer.

    Create a job alert for this search

    Lead Application Security • Wilmington, DE, United States

    Related jobs
    • Promoted
    Senior Security Analyst

    Senior Security Analyst

    EnvestnetBerwyn, PA, United States
    Full-time
    This is a hybrid role, with in-office work required at our Berwyn, PA office location.Envestnet is transforming the way financial advice is delivered through its connected technology, advanced insi...Show moreLast updated: 4 days ago
    • Promoted
    Asset Protection Specialist

    Asset Protection Specialist

    Home Depot (Retail)King Of Prussia, PA, US
    Full-time
    The Asset Protection Specialist is primarily responsible for preventing financial loss caused by theft and fraud and supporting safety and environmental program compliance in their assigned store / m...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineering Manager - SIEM and Vulnerability Management

    Senior Security Engineering Manager - SIEM and Vulnerability Management

    VanguardMalvern, PA, United States
    Full-time
    Lead and manage software engineering teams of 5–10 direct reports focused on cybersecurity and enterprise-critical systems. Drive the design, development, and optimization of large-scale data pipeli...Show moreLast updated: 4 days ago
    • Promoted
    Technology Leadership Program - Risk & Security Analyst

    Technology Leadership Program - Risk & Security Analyst

    VanguardMalvern, PA, United States
    Full-time
    Bring courage and clarity to risk and security.At Vanguard, we're changing the way the world invests by always doing the right thing for our clients. That means security is more than a priority ; it...Show moreLast updated: 4 days ago
    • Promoted
    Cyber Security Lead

    Cyber Security Lead

    Capgemini USAAvance ConsultingMalvern, PA, United States
    Full-time
    Defining the product roadmap and prioritizing the application list based on customer priority and business goals.Excellent communication and leadership capabilities to influence stakeholders at all...Show moreLast updated: 4 days ago
    • Promoted
    Security Analyst II

    Security Analyst II

    Agile DefenseAberdeen, MD, United States
    Temporary
    Surveillance Loop, Building 6007, Aberdeen Proving Ground, Maryland 21005.DoD IAT Level II Certification (Must obtain within 90 days of starting). PM MC provides integrated system-of-system solution...Show moreLast updated: 30+ days ago
    • Promoted
    Intune Security Analyst

    Intune Security Analyst

    Mondo StaffingWilmington, DE, United States
    Temporary
    Hybrid (Onsite in Wilmington, DE - Mon-Wed onsite, office closed in February ).Help secure and manage enterprise Windows endpoints, ensuring device compliance, identity access, and vulnerability re...Show moreLast updated: 4 days ago
    • Promoted
    Cybersecurity Lead w / PM

    Cybersecurity Lead w / PM

    Amtex EnterprisesWilmington, DE, United States
    Full-time
    Wilmington, DE (4 days on-site).We are seeking an experienced Cybersecurity Lead with a strong background in project management to oversee and deliver complex security initiatives.The ideal candida...Show moreLast updated: 1 day ago
    • Promoted
    Application Governance Specialist

    Application Governance Specialist

    Diverse LynxNewark, DE, United States
    Full-time
    Job Title : Application Governance Specialist.Must Have Technical / Functional Skills : .Primary : Application Security Assessment. Secondary : Data Governance Protection & Data Management.Highly effective...Show moreLast updated: 30+ days ago
    • Promoted
    Vulnerability Analyst External Attack Surface & VDP

    Vulnerability Analyst External Attack Surface & VDP

    VanguardMalvern, PA, United States
    Full-time
    Validate & reproduce findings from EASM ( internet exposed assets, misconfigurations, leaked services, weak crypto, open ports) and from VDP submissions (web, API, mobile, infrastructure).Use manu...Show moreLast updated: 4 days ago
    • Promoted
    Security Portfolio Management - Analyst I

    Security Portfolio Management - Analyst I

    AmerisourceBergen CorporationWayne, PA, United States
    Full-time
    Our team members are at the heart of everything we do.At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on ...Show moreLast updated: 3 days ago
    • Promoted
    Secret Vulnerability Penetration Tester

    Secret Vulnerability Penetration Tester

    Insight GlobalAberdeen Proving Ground, MD, United States
    Full-time
    A client of Insight Global is seeking a Cybersecurity Penetration Tester to work 100% onsite at Aberdeen, MD in support of a defense program. This role requires an active DoD Secret clearance and th...Show moreLast updated: 4 days ago
    • Promoted
    Security Analyst

    Security Analyst

    EnvestnetBerwyn, PA, United States
    Full-time
    This is a hybrid role, with in-office work required at our Berwyn, PA office location.Envestnet is transforming the way financial advice is delivered through its connected technology, advanced insi...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Lead Cyber Security Engineer

    Lead Cyber Security Engineer

    Insight GlobalWilmington, DE, United States
    Temporary
    This is a 6 month contract with possibility of extension • •.Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field. IT or cybersecurity, including 3+ years ...Show moreLast updated: 17 hours ago
    • Promoted
    Senior GRC Analyst

    Senior GRC Analyst

    Soni ResourcesKing of Prussia, PA, United States
    Full-time
    Hybrid role - King of Prussia, PA or Denver, PA.Minimum of 3 days (Tues, Wed & Thursday's).Information Security / Compliance / Risk Management. Global Cybersecurity GRC Manager.Reporting to the Glob...Show moreLast updated: 4 days ago
    • Promoted
    Security Solutions Manager

    Security Solutions Manager

    UnisysBlue Bell, PA, United States
    Full-time
    What success looks like in this role : .Design and develop full stack security architectures covering application security, API security, zero trust, identity & access management, cloud security, sec...Show moreLast updated: 4 days ago
    • Promoted
    Security Incident Response

    Security Incident Response

    Lincoln Financial ServicesWayne, PA, United States
    Full-time
    Remote : Work at home employee residing outside of a commutable distance to an office location.This position continuously monitors the alert queue. investigates security alerts; monitors health of ...Show moreLast updated: 4 days ago
    • Promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    RelativityWilmington, DE, United States
    Full-time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...Show moreLast updated: 4 days ago
    • Promoted
    Intune Security Analyst

    Intune Security Analyst

    MondoWilmington, DE, United States
    Temporary
    Hybrid (Onsite in Wilmington, DE - Mon-Wed onsite, office closed in February ).Help secure and manage enterprise Windows endpoints, ensuring device compliance, identity access, and vulnerability re...Show moreLast updated: 4 days ago
    • Promoted
    Lead Incident Response Analyst

    Lead Incident Response Analyst

    M&T BankWilmington, DE, United States
    Full-time
    This role offers a hybrid work schedule at our Wilmington, DE Tech Hub.At M&T Bank, cybersecurity isn't just a function-it's a mission-critical pillar of trust and resilience.As a Lead Cyber Incide...Show moreLast updated: 30+ days ago