Senior Security Analyst

PowerPlan, IncAtlanta, GA
20dHybrid

About The Position

PowerPlan is looking for every opportunity to help our customers and prospects gain more value from our suite of software solutions. We are seeking a Senior Security Analyst / AppSec Specialist to join our Information Security & Compliance team. This is a hands-on, high-impact role responsible for strengthening our application security posture, driving vulnerability management maturity, and supporting security operations across our cloud-hosted SaaS environment. The successful candidate will serve as a technical security practitioner embedded within our engineering and operations ecosystem, partnering closely with DevOps, product, and compliance teams. To be successful in this role, you should have extensive experience with CrowdStrike Falcon, including its Next-Gen SIEM, Data Protection, CSPM, and Threat Intelligence capabilities, as well as experience coordinating penetration tests and running vulnerability assessments with Qualys. You should have hands-on experience with Rapid7, CI/CD pipeline hardening, cloud security in AWS and/or Azure, and security architecture. Experience implementing process improvements and driving program maturity aligned with NIST CSF 2.0 is essential. You should also have excellent communication, problem-solving, and analytical skills, as well as the ability to work independently and as part of a team. COMPANY PowerPlan specializes in enterprise software solutions used by organizations with complex financial, regulatory, and operational needs. We deliver secure, cloud‑hosted SaaS products that help customers manage critical workflows with accuracy, transparency, and compliance. The security team plays a central role in protecting customer trust, enabling rapid product innovation, and ensuring alignment with frameworks such as SOC 2, ISO 27001, and NIST CSF 2.0. We operate in a collaborative environment that values technical depth, continuous improvement, and responsible innovation.

Requirements

  • Hands on experience with application security scanning (SAST/DAST/SCA), pen‑testing coordination, and vulnerability management platforms.
  • Strong working knowledge of CrowdStrike, Qualys, and/or Rapid7.
  • Cloud security experience in AWS and/or Azure, including IAM, logging, and posture management.
  • Experience performing or facilitating threat modeling and architecture reviews.
  • Familiarity with SOC 2, ISO 27001, and NIST CSF 2.0.
  • Strong analytical, communication, and documentation skills.
  • Ability to partner effectively across engineering, DevOps, CloudOps, IT, and compliance teams.
  • Demonstrated ability to drive process maturity and measurable improvements.

Responsibilities

  • Implement a Centralized Application Vulnerability Management Platform (First 120 Days)
  • Lead the Annual Application + Cloud Penetration Testing Program (Annual Cycle)
  • Implement a Standardized Security Architecture Review Process (First 120 Days)
  • Drive Measurable Maturity Improvements Aligned to NIST CSF 2.0 (First 12 Months)
  • Strengthen Cross‑Functional Collaboration Across Dev, CloudOps, IT & Compliance (First 6–9 Months)
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service