Senior Analyst in Information Security leading offensive security testing for FNBO. Collaborating with teams to improve security defenses and compliance measures.
Responsibilities
Lead and execute penetration testing of APIs, web applications, and internal/external systems
Coordinate penetration testing activities with application/system owners and guide issue resolution
Act as a subject matter expert on offensive security and secure design for enterprise projects
Contribute to operating system hardening standards and secure configuration guidelines
Manage vulnerability management activities and ensure remediation efforts are effective
Evaluate and advise on new technologies for secure enterprise adoption
Provide consulting and training to business and technical teams on reducing security risks
Partner with regulators and internal auditors on compliance reporting and assessments
Monitor and scan systems for compliance with security standards, remediating gaps as needed
Recommend process improvements to strengthen the enterprise security posture
Requirements
5+ years of relevant experience in information security, with at least 2 years of hands-on penetration testing
Expertise across multiple security domains, including penetration testing, vulnerability assessment, risk assessment, and secure architecture
Strong knowledge of application security principles, including secure SDLC and threat modeling
Practical experience with tools such as Burp Suite, Metasploit, Nmap, Nessus, or similar
Familiarity with regulatory and industry frameworks (ISO 27001, PCI-DSS, FFIEC, OCC, etc.)
Excellent communication and documentation skills — able to present complex findings to both technical and non-technical audiences
Ability to mentor junior team members and influence cross-functional teams
Bachelor’s degree in Computer Science, Information Systems, Engineering, or related field (or equivalent experience)
Professional certifications strongly preferred: OSCP, GPEN, GXPN, CISSP, or similar
Candidates must possess unrestricted work authorization and not require future sponsorship.
Residential Security Agent providing safety and security for clients' residences in the Bay Area or beyond. Responsible for liaisons and emergency response, ensuring client safety at all times.
Event Security Associate supporting corporate events and high - visibility functions in the United States. Responsible for conducting risk assessments and translating findings into security plans.
IT Security Specialist performing operational tasks on firewalls and security systems in Doha. Maintaining IT security measures, user configurations, and assessing network vulnerabilities.
Cloud Cybersecurity Engineer supporting multi - cloud environments for critical USAF missions. Designing, deploying, and maintaining security for AWS, Azure, Google, and Oracle Clouds.
Information Systems Security Engineer (ISSE) driving cybersecurity initiatives in the Digital Modernization Sector. Supporting A&A efforts and ensuring security compliance with federal requirements.
Intern supporting occupational safety and health initiatives at ALTEN Mexico. Assisting in risk management and promoting safe work environments through regulatory compliance and innovation.
Senior SAP Security Specialist working with SAP Security solutions on customer projects. Responsible for workshops and leading consultancy in SAP Security environments.
Cybersecurity Engineer ensuring the security of IT & OT systems at ArianeGroup. Collaborating with internal teams and overseeing compliance and protection measures.