Talent.com
Senior Information Security Analyst

Senior Information Security Analyst

automotosocialCentreville, VA, US
12 hours ago
Job type
  • Full-time
Job description

JOIN OUR WINNING TEAM AS A SENIOR DEV OPS SECURITY ANALYST

AT CARFAX, WE ARE CONSTANTLY EXPANDING OUR PRODUCT AND TECHNOLOGY OFFERINGS! This means we are continually bringing new, innovative products to market through exciting technology initiatives to help our customers. Come join the success in Biz Tech. As a Senior Dev Ops Security Analyst, you will be responsible for guiding technical teams in building secure products in a DevOps model. The position aims to enhance security within the software development lifecycle through simple, automated tools that integrate seamlessly into developers' workflows. See if you have what it takes to join Team CARFAX!

THE TECH CULTURE AT CARFAX

Having a creative and innovative environment where our techies can collaborate, learn, and grow is something CARFAX is passionate about. We have an entire floor dedicated to our tech teams, designed specifically to enable big ideas and high-quality output. Along with creating and maintaining excellent software, you'll also have opportunities to participate in quarterly Hack-a-thons or relax by playing the latest games on Xbox. CARFAX is dog-friendly, providing dog beds, bowls, and toys, and encouraging visits from your furry friends!

AS A SENIOR DEV OPS SECURITY ANALYST, YOU WILL :

  • Serve as the technical point of contact for product teams regarding automation, CI / CD, and DevSecOps
  • Build tools and automation scripts to enable CARFAX developers to easily access security services
  • Enhance security accessibility through automation, continuous integration pipelines, and other means
  • Evaluate and recommend products and services across the corporate security technology stack
  • Research and advise on secure Cloud architecture designs following best practices
  • Work with teams to identify threats and vulnerabilities via threat assessments
  • Develop technical assessments for new technologies and third-party integrations, supporting security policy compliance
  • Develop hardened operating baselines based on industry standards and best practices
  • Create secure coding guidelines and provide security awareness and technical training
  • Perform and analyze vulnerability scans and penetration tests, guiding mitigation efforts
  • Lead security incident response, conduct forensic investigations, and determine root causes and response actions

QUALIFICATIONS :

  • Bachelor's degree in computer science or related field, or equivalent experience
  • 6+ years of experience developing secure software using TDD / Agile / XP / Lean methods
  • Experience in cloud, e-commerce, and mobile software release environments
  • Proficiency with development tools such as Jenkins and GitHub
  • Familiarity with scripting languages like Python, Perl, PowerShell
  • Understanding of application stack technologies (HTTP, HTML5, AJAX, REST, JSON) and platforms (AWS, ReactJS, AngularJS, Java, Spring Boot, MySQL, MongoDB, Hadoop, iOS, Android)
  • Experience with containers and Kubernetes
  • Knowledge of cryptography concepts (encryption, key storage, hashing, crypto libraries)
  • Hands-on experience with port and network scanning tools (Nessus, Nexpose, Nmap)
  • Experience with web application scanners and SAST / DAST testing platforms (Netsparker, Veracode)
  • Experience with firewall, network security, and intrusion detection products (Cisco ASA, F5, Sourcefire, Okta)
  • Familiarity with logging, alerting, and file integrity monitoring tools
  • Deep understanding of application vulnerabilities, threat vectors, and mitigations
  • Knowledge of IP protocols, network security architecture, and threats
  • Familiarity with security standards and compliance regulations (ISO 27001, NIST, OWASP, PCI DSS)
  • Preferred security certifications (CISSP, CSSLP, CEH, GSSP, GWEB)
  • ABOUT CARFAX

    CARFAX, a unit of IHS Markit, helps millions daily with vehicle history information. Since 1984, we provide services like Carfax Used Car Listings, MyCARFAX, and the Carfax Vehicle History Report. We own the world's largest vehicle history database and have been recognized as a top workplace by The Washington Post and Glassdoor. Based in London, IHS Markit is a leader in critical information, analytics, and solutions.

    J-18808-Ljbffr

    Create a job alert for this search

    Information Security Analyst • Centreville, VA, US

    Related jobs
    • Promoted
    Senior Security Compliance Analyst

    Senior Security Compliance Analyst

    VirtualVocationsArlington, Virginia, United States
    Full-time
    Security Compliance Analyst to monitor, assess, and improve its compliance program.Key Responsibilities Evaluate organizational policies and standards to ensure compliance with internal and exter...Show moreLast updated: 30+ days ago
    • Promoted
    Junior Information Security Analyst

    Junior Information Security Analyst

    ALTA IT ServicesSpringfield, VA, US
    Full-time
    Junior Information Security Analyst Springfield, VA – onsite Compensation : $75,000 - $83,500 annually Security Clearance : Secret clearance is required DUTIES AND RESPONSIBILITIES : • Review cyber in...Show moreLast updated: 9 days ago
    • Promoted
    Senior IT Compliance Analyst

    Senior IT Compliance Analyst

    VirtualVocationsFairfax, Virginia, United States
    Full-time
    A company is looking for a Senior IT Compliance Analyst to join their Information Security team.Key Responsibilities Ensure security and IT operations align with regulatory requirements and inter...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior ISSO

    Senior ISSO

    Assevero Security Consulting, LLCColumbia, MD, US
    Full-time
    Assevero Security Consulting, LLC has several current openings for highly motivated and qualified security professionals. Successful candidates will support cybersecurity-related projects for a larg...Show moreLast updated: 12 hours ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocationsAlexandria, Virginia, United States
    Full-time
    A company is looking for a Security Infrastructure Support Senior Security Engineer.Key Responsibilities : Design, install, maintain, and support enterprise IT systems across hybrid environments ...Show moreLast updated: 30+ days ago
    • Promoted
    IAM Security Analyst

    IAM Security Analyst

    VirtualVocationsAlexandria, Virginia, United States
    Full-time
    A company is looking for an IAM Security Analyst.Key Responsibilities Execute user access certifications for compliance and collaborate with audit teams Enhance IAM controls and participate in d...Show moreLast updated: 30+ days ago
    • Promoted
    Information System Security Manager (ISSM)

    Information System Security Manager (ISSM)

    The Johns Hopkins University Applied Physics LaboratoryLaurel, MD, United States
    Full-time
    Do you love solving problems while enabling impactful research to operate securely?.Are you passionate about making meaningful contributions to national security cyber missions?.Do you like collabo...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Insider Threat Information Systems Security - Senior Data Analyst

    Insider Threat Information Systems Security - Senior Data Analyst

    ZipRecruiterArlington, VA, US
    Full-time
    Job DescriptionJob Description.H4 Enterprises are currently seeking the following : .Insider Threat Information Systems Security - Senior Data Analyst will be responsible for analyzing, detecting, an...Show moreLast updated: 12 hours ago
    • Promoted
    Information Security Training Lead

    Information Security Training Lead

    VirtualVocationsFairfax, Virginia, United States
    Full-time
    A company is looking for an Information Security Training Awareness Lead to enhance cybersecurity awareness through training and outreach initiatives. Key Responsibilities Develop and implement an...Show moreLast updated: 2 days ago
    • Promoted
    Cyber and Information Systems Security Analyst / ISSO

    Cyber and Information Systems Security Analyst / ISSO

    The Johns Hopkins University Applied Physics LaboratoryLaurel, MD, United States
    Full-time
    Are you searching for challenging and impactful work supporting Highly Classified networks?.Are you passionate about cybersecurity operations and policy?. If so, we're looking for someone like you t...Show moreLast updated: 26 days ago
    • Promoted
    • New!
    Contractor - Senior Information Security Risk Analyst (Security)

    Contractor - Senior Information Security Risk Analyst (Security)

    Jobs via DiceMerrifield, VA, US
    Full-time
    Contractor - Senior Information Security Risk Analyst (Security).Title : Senior Information Security Risk Analyst (Security). Duration : Initial 6 months with extensions.Work Requirements : or Authoriz...Show moreLast updated: 12 hours ago
    • Promoted
    Senior Manager of Information Security

    Senior Manager of Information Security

    VirtualVocationsRockville, Maryland, United States
    Full-time
    A company is looking for a Senior Manager - Information Security - Threat Management.Key Responsibilities Lead daily security operations, including alerts, escalations, and ticketing Oversee thr...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Information Security Engineer

    Senior Information Security Engineer

    VirtualVocationsArlington, Virginia, United States
    Full-time
    A company is looking for a Senior Information Security Engineer who will contribute to the architecture, implementation, and ongoing support of a comprehensive, enterprise-grade security program.Ke...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Analyst

    Senior Security Analyst

    VirtualVocationsFairfax, Virginia, United States
    Full-time
    A company is looking for a Senior Security Analyst to monitor and respond to cybersecurity threats.Key Responsibilities Monitor and triage security alerts from various sources and lead incident r...Show moreLast updated: 30+ days ago
    • Promoted
    Security Analyst

    Security Analyst

    VirtualVocationsAlexandria, Virginia, United States
    Full-time
    A company is looking for a Security Analyst (Governance Program) to work remotely.Key Responsibilities Develop and implement governance frameworks for security policies and procedures Conduct ri...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Assurance Analyst

    Senior Security Assurance Analyst

    VirtualVocationsFairfax, Virginia, United States
    Full-time
    Security Assurance Analyst to lead the design, implementation, and optimization of enterprise information security controls and compliance programs. Key Responsibilities Lead and maintain SOC 2 an...Show moreLast updated: 1 day ago
    • Promoted
    South Carolina Licensed Information Security Analyst

    South Carolina Licensed Information Security Analyst

    VirtualVocationsWashington, District of Columbia, United States
    Full-time
    A company is looking for an Information Security GRC Analyst II.Key Responsibilities Develop and maintain information security policies and procedures in alignment with regulatory requirements C...Show moreLast updated: 1 day ago
    • Promoted
    Senior Detection Analyst

    Senior Detection Analyst

    VirtualVocationsAlexandria, Virginia, United States
    Full-time
    A company is looking for a Detection & Response Analyst.Key Responsibilities Act as the point of escalation for security incidents and lead the Incident Detection team Triage security incidents ...Show moreLast updated: 2 days ago