Sr. Security Analyst

BDAWoodinville, WA
$120,000 - $130,000Hybrid

About The Position

BDA is looking for a Senior Security Analyst to strengthen our security program and transition from a reactive to a proactive security strategy. This role will focus on application, cloud, and infrastructure security, involving vulnerability identification, testing, exploit evaluation, and risk reduction in collaboration with IT and business partners. The position also offers the chance to help define BDA's red-team security function. The role is open to experienced mid-level professionals with strong application security skills or seasoned security professionals seeking broad ownership and challenges.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Professional experience in information security, application security, infrastructure security, or a closely related area.
  • Hands-on experience with all of the following: Microsoft Defender, Microsoft Purview, CrowdStrike, Tenable Nessus, and Burp Suite
  • Proven experience with application and environment security, vulnerability testing, exploit testing, penetration testing, or vulnerability scanning.
  • Strong understanding of cloud security and experience securing environments such as AWS, OCI, or Azure.
  • Experience working with Linux environments and securing cloud-based or distributed infrastructure.
  • Knowledge of security frameworks and standards such as NIST, CIS, or ISO 27001.
  • Understanding of risk management practices and the ability to identify, prioritize, and communicate security risks.
  • Working knowledge of security technologies such as firewalls, IDS/IPS, endpoint security, SIEM, and enterprise intrusion-prevention systems.
  • Experience with system-hardening standards for servers, desktops, laptops, or network devices.
  • Understanding of malware, attack vectors, network threats, incident response, authentication, and access-control technologies.
  • Knowledge of internet protocols and security technologies, including HTTP, TLS, SSL, HTML, and XML.
  • Understanding of cloud, container-based, and virtualized architectures.
  • Knowledge of encryption techniques, standards, and appropriate encryption levels.
  • Strong analytical, problem-solving, and attention-to-detail skills.
  • Clear communication skills and the ability to work effectively across technical and nontechnical teams.
  • A collaborative and humble working style, with the ability to accept direction, execute priorities, and remain open to the perspectives of others.

Nice To Haves

  • Previous experience in an IT infrastructure, systems administration, networking, DevOps, or engineering role before moving into security.
  • Experience that combines technical security with governance, risk, compliance, or privacy responsibilities.
  • Familiarity with privacy regulations such as GDPR, CPRA, or CCPA.
  • Experience with firewalls, load balancers, web application firewalls, or VPN concentrators.
  • Experience with databases and related technologies such as Elasticsearch, SQL, or Oracle.
  • Experience handling and protecting information across different sensitivity levels.
  • Familiarity with standards or regulations such as FISMA, GLBA, FERPA, PCI DSS, ISO, or NIST.
  • Higher education or government information-security experience.
  • Security certifications such as CISSP, CISA, CISM, CEH, GWAPT, GPEN, CSFA, or similar credentials.
  • Experience with SUMO Cloud or comparable security monitoring and log-analysis tools.

Responsibilities

  • Conduct vulnerability scans, penetration testing, and security assessments across applications, systems, cloud environments, and infrastructure.
  • Use tools including Tenable Nessus, Burp Suite, and CrowdStrike to identify vulnerabilities, investigate threats, and recommend remediation.
  • Test web applications to identify potential exploits, attack paths, and security weaknesses.
  • Evaluate the security of Linux-based and cloud environments, including AWS, OCI, and Azure.
  • Partner with infrastructure and engineering teams to improve system configurations, hardening standards, access controls, and overall security posture.
  • Monitor security events, investigate potential incidents, and support incident response and forensic activities.
  • Conduct account reviews, access reviews, risk assessments, and other security-related analysis.
  • Develop clear reports and recommendations for technical teams, business leaders, and executive stakeholders.
  • Help establish repeatable security processes, priorities, and testing practices that allow the organization to address risks proactively.
  • Collaborate with security team members, consultants, IT infrastructure, engineering, legal, compliance, and business teams across BDA.
  • Support the development and ongoing improvement of security policies, procedures, standards, and employee awareness initiatives.
  • Stay current on emerging threats, vulnerabilities, attack methods, and security best practices.

Benefits

  • robust PTO
  • vacation
  • a paid volunteer day
  • holidays
  • summer Fridays
  • medical, dental, vision, life, and AD&D insurance
  • 401k
  • tuition reimbursement
  • mental health and financial wellness programs
  • professional development opportunities including tuition reimbursement
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service