Analyst, Application Security Job at Intercontinental Exchange Holdings, Inc., Jacksonville, FL

cTRqZllGSDFuYi84alpTTzZ5YTVWSldCQlE9PQ==
  • Intercontinental Exchange Holdings, Inc.
  • Jacksonville, FL

Job Description

Overview:

Job Purpose

An ICE IS Application Security Analyst is part of a team responsible for ensuring that ICE produces and maintains secure applications. The team member influences secure design, performs code analysis, identifies vulnerabilities through hands-on penetration testing, assists developers in remediation efforts, and communicates findings to developers, QA teams and management.

 

Core Duties – IS AppSec (Application Security)

  • Application Identification and Review - Operates the Application Development Security Lifecycle from design review through automated and hands-on testing.
  • Standards and Policies -  Maintains and contributes to Application Development Security Policies and standards by keeping up with industry trends and publications from organizations such as NIST, OWASP, and SANS.
  • Secure Design – Works with development teams to establish security requirements early in the SDLC and contributes security subject matter expertise during the development of new projects and releases.
  • Tool Management – Focuses on automation while implementing, maintaining and integrating cutting-edge technologies to assess an application’s security with static code analyzers (SAST), dynamic testing (DAST) tools, software composition scanners, Web Application Firewall (WAF) and bug bounty programs.
  • Developer Education – Keeps software engineers apprised of secure coding practices and builds strong rapport and respect with the ICE application development community via training sessions, one-on-one education, Intranet blogs and other opportunities.

Desirable Knowledge and Experience

  • Software engineering experience in Java, C++, .NET and/or related languages
  • Expert at deploying, configuring, and using SAST, DAST, and Software Composition in large environments
  • Experience designing solutions to integrate transparently with the CI/CD pipeline
  • Familiar with application development in large cloud environments
  • University degree in Computer Science, Engineering, MIS, CIS, or related discipline

Analyst, Engineer, and Sr. Engineer Distinction
Seniority is determined by experience and demonstration of exceptional competencies including:

  • Documenting and effectively publishing technology guidance and repeatable processes
  • Mentoring peers in groups and individually
  • Improving processes and introducing superior technology
  • Taking initiative to learn business goals, liaise with other departments, and identify ways to increase productivity in other ICE groups and offices
----------: Intercontinental Exchange, Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to legally protected characteristics.

Job Tags

Full time,

Similar Jobs

Kitty Hawk Kites, Inc.

E-commerce Warehouse Operations Team Lead Job at Kitty Hawk Kites, Inc.

Job title: E-commerce Warehouse Operations Team Lead Department: Amazon 501/Internet Sales - 002Reports to: E-commerce Director FLSA Status: Non-Exempt Job Summary: This is an intermediate level role within the Ecommerce department. This person manages the... 

Accor Hotels

Brand Marketing Manager Job at Accor Hotels

 ...ENNISMORE Company Description We are looking for a Brand Marketing Manager to join the newly formed Americas regional brand team at Ennismore, supporting our central brand and regional hotel & restaurant teams to execute global marketing projects. The Brand... 

PRACTICE

Bilingual Ukrainian-English Online Tutor Job at PRACTICE

 ...their full potential by providing academic assistance in both English and a second language. Flexible Schedule: Work 10-35 hours...  ...caregiving, or other commitments. Professional Growth: Sharpen your teaching skills, build your resume, and advance your career with ongoing...