Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
IT Security Analyst (Penetration Testing) image - Rise Careers
Job details

IT Security Analyst (Penetration Testing) - job 1 of 2

Position Type :Full timeType Of Hire :Experienced (relevant combo of work and education)Education Desired :Bachelor of Computer ScienceTravel Percentage :1 - 5%Job DescriptionWe are FIS. Our technology powers the world’s economy and our teams bring innovation to life. We champion diversity to deliver the best products and solutions for our colleagues, clients and communities. If you’re ready to start learning, growing and making an impact with a career in fintech, we’d like to know: Are you FIS?NOTE: This role will be hybrid/3 days onsite for candidates who are located in/around Jacksonville, FL.About the role:As an IT Security Analyst with FIS, your skills will be put to the test on the front lines of cyber-crime. Information security is at the heart of fintech and you’ll help protect and secure highly-sensitive financial data for customers around the world. You will be part of a fast moving security environment and will be part of Data Protection team responsible to protect internal and external customer data. This position interfaces with internal application teams and external partners to develop and protect sensitive data.About the team:The role of a IT Security Analyst (Web App Penetration Tester) with TechDEV Security Architecture Penetration Testing team involves closely working with developers, ESO, and RBUs across the division to test applications for their security posture in both architecture and technologies. This position requires prior knowledge of web and API frameworks and how such components are coded. The team is interactive and supportive but will challenge the candidate to quickly learn new hacking techniques and defenses. The candidate will also learn about various tools and OWASP test cases needed to test and secure the applications and APIs from attacks. In this fast-paced environment, you will be working with internal and external application developers across different business units. Be a part of exciting career that will take your Cybersecurity skills to next level.What you will be doing:• Performs manual penetration testing for web/mobile/API applications as well as Networks across the organization• Performs dynamic scanning for web/mobile/API applications across the organization.• Provides assistance related to Veracode application security support in the form of secure designs and secure code.• Provides assistance related to Black Duck/3rd Party modules support by way of application security solutions.• Able to articulate penetration test findings to developers and explain exploits and remediations.• Provide support and explanation to any Corporate APT findings and able to provide developers with remediations• Interest in cloud security, Kubernetes, docker security within DevSecOps• Executes security controls to prevent hackers from infiltrating company information or jeopardizing programs.• Researches attempted efforts to compromise security protocol and recommends solutions.• Maintains security systems and administers security policies to control access to systems.• Maintains company firewall and utilizes applicable encryption methods.• Creates information security documentation related to work area and completes requests in accordance with company requirements.• Responds to information security-related questions and inquiries using established information security tools and procedures.• Resolves and/or performs follow through to resolve all information security issues and questions.• Implements and administers information security controls using software and vendor security systems.• Identifies opportunities and executes plans to improve workflow and understands and quantifies business impacts of those improvements for communication to management.• Interfaces with user community to understand security needs and implements procedures to accommodate them. Ensures that user community understands and adheres to necessary procedures to maintain security.• Provides status reports on security matters to develop security risk analysis scenarios and response procedures.• Other related duties assigned as needed.What you will need:• A bachelor's in computer science or Information Security, a related field, or the equivalent experience.• Minimum 6+ years of experience in Information Security and Technology. .• Knowledge of network and security technologies.• Experience with network design and engineering.• Prior programming (Python, Java, .NET) and architecture (any frameworks) experience requiredAdded Bonus if you have:• CISSP or any Security related certification is a plus.• AWS or Azure certification would be a plus.• Knowledge of Fintech or finance industry.• Knowledge of FIS products and services.What we offer you:At FIS, you can learn, grow and make an impact in your career. Our benefits include:• Flexible and creative work environment• Diverse and collaborative atmosphere• Professional and personal development resources• Opportunities to volunteer and support charities• Competitive salary and benefitsNOTE: This role will be hybrid/3 days onsite for candidates who are located in/around Jacksonville, FL.FIS is committed to providing its employees with an exciting career opportunity and competitive compensation. The pay range for this full-time position is $99,830.00 - $167,700.00 and reflects the minimum and maximum target for new hire salaries for this position based on the posted role, level, and location. Within the range, actual individual starting pay is determined additional factors, including job-related skills, experience, and relevant education or training. Any changes in work location will also impact actual individual starting pay. Please consult with your recruiter about the specific salary range for your preferred location during the hiring process.Privacy StatementFIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice.EEOC StatementFIS is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, genetic information, national origin, disability, veteran status, and other protected characteristics. The EEO is the Law poster is available here supplement document available hereFor positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will be required to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.Sourcing ModelRecruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company.#pridepass
Jobs for Humanity Glassdoor Company Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Jobs for Humanity DE&I Review
5.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Jobs for Humanity
Jobs for Humanity CEO photo
Unknown name
Approve of CEO

Average salary estimate

$133765 / YEARLY (est.)
min
max
$99830K
$167700K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About IT Security Analyst (Penetration Testing), Jobs for Humanity

Join FIS in St. Petersburg, FL, as an IT Security Analyst specializing in Penetration Testing, and become a crucial part of our mission to secure financial data for clients around the world! In this hybrid role, your expertise will be essential in defending against cyber-crime while collaborating with various teams across the organization. You’ll perform manual penetration testing for web, mobile, and API applications, uncover vulnerabilities, and help implement solutions to strengthen our security. Working closely with application developers, you'll explain your findings and guide them towards secure coding practices, which will have a direct impact on protecting our sensitive information. You’ll have hands-on experience with cutting-edge tools and techniques, collaborating in a dynamic environment that fosters learning and growth. The ideal candidate will have a strong background in information security and hands-on experience with penetration testing, network design, and coding. FIS values diversity and is dedicated to creating an inclusive workplace where innovation thrives. If you’re passionate about cybersecurity and ready to take your expertise to the next level, don’t miss this opportunity to make a real difference in the world of fintech!

Frequently Asked Questions (FAQs) for IT Security Analyst (Penetration Testing) Role at Jobs for Humanity
What are the main responsibilities of an IT Security Analyst at FIS?

As an IT Security Analyst at FIS, you will conduct manual penetration testing on various applications, perform dynamic scanning, assist with application security solutions, and articulate findings to development teams. Additionally, you'll collaborate to refine security controls, maintain security systems, and address corporate APT findings.

Join Rise to see the full answer
What qualifications do I need to become an IT Security Analyst at FIS?

To apply for the IT Security Analyst position at FIS, you need a bachelor's degree in computer science, information security, or a related field, along with at least 6 years of relevant experience in Information Security and Technology. Knowledge in network design, programming, and security technologies is key.

Join Rise to see the full answer
Is remote work an option for the IT Security Analyst role at FIS?

The IT Security Analyst position at FIS offers a hybrid work model allowing for three days in the office, primarily for candidates based in or around Jacksonville, FL. This flexibility can help foster a balanced work environment.

Join Rise to see the full answer
What tools and techniques will I learn as an IT Security Analyst at FIS?

In this role, you'll gain valuable experience with various penetration testing tools, dynamic scanning techniques, and secure coding practices. You’ll also delve into cloud security and learn about OWASP testing methodologies while collaborating with a supportive and interactive team.

Join Rise to see the full answer
What benefits does FIS offer to IT Security Analysts?

FIS offers a competitive salary and benefits package, which includes a flexible work environment, professional development resources, and opportunities to give back to the community. The company emphasizes collaboration and diversity, making it a rewarding place for IT Security Analysts to thrive.

Join Rise to see the full answer
Common Interview Questions for IT Security Analyst (Penetration Testing)
Can you describe your experience with penetration testing?

When discussing your experience with penetration testing, highlight specific tools you've used, your methodology, and a particular project where you uncovered critical vulnerabilities. Illustrating how you communicated findings to development teams and helped implement security improvements will showcase your effectiveness.

Join Rise to see the full answer
What steps do you take to prepare for a penetration test?

Explain your preparation process, including how you gather information about the target, identify potential vulnerabilities, and develop a testing plan. Emphasize the importance of understanding the application architecture and having the right tools ready for execution.

Join Rise to see the full answer
How do you stay updated with the latest cybersecurity threats?

Talking about your strategies for staying informed is key. Mention subscribing to cybersecurity channels, attending conferences, joining communities, reading industry reports, and participating in ongoing training or certifications like CISSP or cloud security.

Join Rise to see the full answer
What is your experience with coding, and how does it apply to security testing?

Discuss specific programming languages you're proficient in, how you utilize code review to identify security flaws, and how this knowledge informs your penetration testing. Share examples of remediating security issues through coding best practices.

Join Rise to see the full answer
How do you approach documenting your findings post-penetration test?

Detail your documentation process, emphasizing the need for clarity and thoroughness. Discuss how you categorize vulnerabilities, suggest remediation strategies, and ensure that reports are understandable for both technical and non-technical stakeholders.

Join Rise to see the full answer
Can you explain a significant penetration test you conducted and the outcome?

When answering this, offer a brief overview of the context, what your assessment revealed, and how the organization acted on your recommendations. Highlighting improved security measures as a result of your findings will demonstrate your impact.

Join Rise to see the full answer
What is the significance of OWASP and its testing methodologies in penetration testing?

Discuss how OWASP provides valuable guidelines and methodologies for identifying common security vulnerabilities in applications. Explain how adhering to OWASP standards ensures a comprehensive approach to securing web applications.

Join Rise to see the full answer
How do you handle challenging conversations with developers about security issues?

Talk about employing empathy and clear communication. Emphasize building relationships and trust with developers, to create a constructive dialogue about identified vulnerabilities and presenting them as opportunities for improvement, rather than just problems.

Join Rise to see the full answer
What steps would you take to secure an application in a cloud environment?

Outline your approach, including reviewing cloud provider security features, implementing proper access controls, conducting regular vulnerability assessments, and ensuring that best practices for securing APIs are followed in the cloud context.

Join Rise to see the full answer
Why do you want to work as an IT Security Analyst at FIS?

Share your enthusiasm for FIS's commitment to innovation and security in the fintech space. Discuss how you align with the company's values and your excitement about collaborating with diverse teams to combat cyber threats in an impactful manner.

Join Rise to see the full answer
Similar Jobs
Posted 4 days ago
Jobs for Humanity Remote London, United Kingdom
Posted 2 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Posted 9 days ago
Photo of the Rise User
Ardent Remote Washington, D.C. Metro - hybrid/remote
Posted 4 days ago
Photo of the Rise User
Posted 9 days ago
Photo of the Rise User
Posted 5 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 20, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!