Home

Information Security Analyst - Code and Vulnerability Analysis @ Indianapolis, IN 46204 remote at Indianapolis, Indiana, USA
Email: [email protected]
Hi

Greetings from
Canopy One Solutions,

Please go
through below requirement if you are comfortable, please share your updated
resume to my email id: 
[email protected]

Position:
Information
Security Analyst - Code and Vulnerability Analysis

Location : 
10 N. Senate
Avenue, SE 210 Indianapolis, IN 46204 remote

Agency
Interview Type: Webcam only

Experience:8+

NOTE : Need
Passport number and LinkedIn ID and please do mention Current Location and Visa
of candidate while sending the Profile.

Short Description:

Information security
analyst position that functions as primary security code auditor for the
agency's primary application.

Complete Description:

Key Responsibilities:

Analyze code scan output from
Veracode and SonarQube, along with remediation recommendations from these
tools.

Assess security risks
associated with code vulnerabilities and develop a prioritization strategy that
mitigates the most critical issues efficiently.

Convert scan results and
remediation recommendations into well-defined stories within Atlassian Jira,
aligning with the Scaled Agile Framework (SAFe) for collaboration with
development teams.

Draft policies, procedures, and
best practices for publication in Atlassian Confluence to ensure consistent
security practices across the organization.

Monitor and validate the
completion of all remediation work through subsequent code scans.

Provide regular progress
updates to the information security manager.

Collaborate with development
teams to implement secure coding practices and address identified
vulnerabilities.

Required Skills and
Experience:

2-5 years of experience in
information security, with a focus on code and vulnerability analysis.

Strong knowledge of manual
audit, code reviews, and remediation techniques.

Proficiency in using Veracode
and SonarQube toolsets for code scanning and vulnerability assessment.

Expertise in Java programming
language and familiarity with secure coding standards and guidelines such as
OWASP Top Ten, CERT/CC, MITRE, Sun, and NIST.

Experience working with
Atlassian toolsets, particularly Jira, ServiceDesk, and Confluence.

Understanding of
authentication, authorization, session management, and secure communication
mechanisms.

Familiarity with Windows and
Linux operating systems.

Experience working with ORACLE
and MSSQL databases.

Knowledge of third-party
library security analysis and the ability to identify potential security leaks.

Excellent problem-solving and
analytical skills, with the ability to translate technical findings into
actionable tasks for development teams.

Strong communication and
collaboration skills to effectively work with cross-functional teams.

Preferred
Qualifications:

Relevant certifications such as
CISSP, CSSLP, or CEH are a plus.

Experience with automated
security testing tools and continuous integration/continuous deployment (CI/CD)
pipelines.

Knowledge of additional
programming languages such as Python, C++, or C#.

Familiarity with cloud security
best practices and securing cloud-based applications.

Please list
candidate's email address and full contact information.

Please list
the city and state where candidate currently resides.

Candidate can
use their own equipment, as long as that equipment is able to run Amazon
Workspaces for connection into the state network. Please confirm if candidate
will be using their own equipment or if they will need state equipment.

Skill

Years Used

Last Used

Information
security code analysis and review

Required
2 Years

Java
and secure coding standards Required 2 Years

Veracode
Required 2 Years

Atlassian
toolset with focus on Jira, ServiceDesk and Confluence Required 2 Years

SonarQube
Nice to have 1 Years

CISSP,
CSSLP or CEH certifications Nice to have  

Ravi Kumar Danda

LinkedIn


https://www.linkedin.com/in/ravikumar-danda-89a1a523b/

Email:
[email protected]

Web:www.canopyone.com

--

Keywords: cplusplus csharp continuous integration continuous deployment information technology golang Idaho
Information Security Analyst - Code and Vulnerability Analysis @ Indianapolis, IN 46204 remote
[email protected]
[email protected]
View all
Wed May 29 20:14:00 UTC 2024

To remove this job post send "job_kill 1434210" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 11

Location: ,