Application Security Analyst/ Senior

Federal Reserve SystemCleveland, OH
62dHybrid

About The Position

The Federal Reserve Bank of Cleveland is part of the nation’s central bank, and we’ve provided many opportunities for professional growth during our history. For twenty-six years in a row, we’ve been named “One of Northeast Ohio’s Best Places to Work” by North Coast 99. This prestigious award honors organizations with outstanding employment practices, including compensation, benefits, training, recruitment, retention, community services, and employee communications. Our People Make the Difference! The Federal Reserve Bank of Cleveland is seeking innovative thinkers with vision to build the framework that will carry the Bank into the future. Follow us on LinkedIn, X, Instagram, and our YouTube channel – Cleveland Fed Organizational Expectations: In this role you will provide leadership in protecting the confidentiality, integrity, and availability of web and/or mobile applications by establishing and enforcing system access controls. You will define system security requirements, recommend improvements to system security frameworks, ensure authorized access to systems through monitoring, performing testing, or scanning for security vulnerabilities, and raising security awareness.

Requirements

  • Application Security Analyst: Bachelor’s degree with 3+ years of related work experience or Associate's degree with 5+ years of related work experience
  • Application Security Analyst Senior: Bachelor’s degree with 5+ years of related work experience or Associate's degree with 7+ years of related work experience
  • Ability to analyze highly complex business requirements.
  • Thorough understanding of industry based security controls relating to applications, services, and systems.
  • Knowledge of cloud-based platforms and technologies and how to ensure these environments are secure.
  • Thorough understanding of security controls relating to access control, authentication, and auditing.
  • Demonstrated knowledge and understanding of information security industry trends and emerging technologies, especially relating to application security vulnerabilities.
  • Proficient at testing web application for security vulnerabilities, such as those listed in the OWASP Top 10 and familiar with the tools used for testing.
  • Demonstrated ability to learn new systems and technologies
  • Excellent time management skills, and the ability to prioritize and multi-task.
  • To be considered for this role, candidates must be a U.S. citizen.

Nice To Haves

  • Strong preference of at least one security certification (CISSP, CSSLP, CCSP, CEH, AWS Security, etc.)

Responsibilities

  • Identify security related issues and define security requirements during all phases of the application development lifecycle.
  • Review program/development documents to ensure adherence to secure coding standards, guidelines and security requirements.
  • Coordinate with developers to ensure secure and resilient design, prototyping, development, testing, support, and documentation of moderately complex application software.
  • Monitor for atypical usage of information system accounts and other abnormalities to identify possible breaches.
  • Assist with FISMA initiatives, e.g., updating security plans, to support ISSO responsibilities.
  • Coordinate the identification of security-related issues and definition of security requirements during all phases of the software development lifecycle (SDLC).
  • Perform penetration testing activities to ensure web vulnerabilities are not present within Treasury Services applications.
  • Conducts analysis and interpreting of cybersecurity trends and emerging risks, quantifies potential impact, and develops conclusions and recommended application security responses.
  • Performs other duties as assigned or requested
  • Adheres to the Banks attendance policies through regular and prompt attendance.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service