Vacancy caducado!
CSAA Insurance Group (CSAA IG), a AAA insurer, is one of the top personal lines property and casualty insurance groups in the U.S. Our employees proudly live our core beliefs and fulfill our enduring purpose to help members prevent, prepare for, and recover from life's uncertainties, and we're proud of the culture we create together. As we commit to progress over perfection, we recognize that every day is an opportunity to be innovative and adaptable. At CSAA IG, we hire good people for a brighter tomorrow. We are actively hiring for a Vulnerability & Offensive Security Services Leader. Join us and support CSAA IG in achieving our goals.
Your Role: Are you a highly skilled Security professional that has a passion for vulnerability management & penetration testing? Bring your proficiency to help us craft our IT Security program, next gen. Work closely with our information technology teams to provide secure applications and foster a zero-trust environment theory and processes; aligning the overall security model with business goals and ongoing operations. You bring to this position a high-level of security expertise, a deep understanding of modern development languages and cloud platforms. You have a consistent record for driving product security initiatives and experience delivering software security at scale. You'll lead vulnerability management, penetration testing, web application firewall management, and purple teaming. Help us re-think what it means to be a secure insurance provider in a fast-changing, highly fierce market.Your work:- Mentor, guide, lead and direct the maturity of the Vulnerability & Offensive Services security team responsible for an enterprise program
- Guide and engage directly with various operational teams ensuring vulnerabilities are detected, prioritized, and remediation/mitigation actions are executed
- Support the development and implementation of a threat modeling framework, secure frameworks and libraries
- Work collaboratively within the organization and across business lines to support a program that includes the cybersecurity strategic roadmap, policy, practices and standards, a security awareness program, incident response and management, enterprise risk assessments and management, security assessments, and the development and maintenance of supporting business technology architecture
- Produce relevant security metrics that demonstrate a continually improving security posture
- You will be a hands-on technical manager, leading a team that develops and supports security services consumed by product teams
- You will utilize your technical expertise to deliver the next generation of software-defined security services and tools while integrating into product development processes
- 7 or more years of Information Technology and Security experience
- 4 or more years of Amazon AWS experience
- 4 or more years of in vulnerability management strategies, standards, procedures and technologies across infrastructure- and application-level vulnerabilities
- Broad knowledge of IT Security technologies, process, techniques and a solid understanding of application security leading practices, including OWASP and CWE.
- Experience deploying cybersecurity solutions in a public cloud environment (IaaS, PaaS, SaaS)
- Familiar with security tools like AttackIQ, BurpSuite Pro, nmap, Metasploit, and Kali Linux, etc.
- Proficiency working with and coding in Python, Node. js, JavaScript, Go, Ruby, PowerShell, Bash, and Scala. (SDK and RESTful API design/development is preferred)
- Recent experience with Agile development/Scrum teams
- Deep knowledge of software, application design and architecture
- Solid understanding of TCP/IP, DNS, HTTP, HTTPS, VPN, SQL and other database technologies.
- CISSP, CEH, GWAPT, or OSCP certifications are highly desired
- Bachelor's degree (in Information Technology or a related discipline) or equivalent experience
- Confidence can sometimes hold us back from applying for a job. But we'll let you in on a secret: there's no such thing as a 'perfect' candidate. CSAA IG is a place where everyone can grow. So, however you identify and whatever background you bring with you, please apply if you meet most of the requirements (not all) and this is a role that would make you excited to come to work every day.
- BELIEVE in a mission focused on building a community of service, rooted in inclusion and belonging.
- COMMIT to being there for our customers and employees.
- CREATE a sense of purpose that serves the greater good through innovation.
Vacancy caducado!