Security Testing Analyst

Intellibee
Charlotte, NC Full Time
POSTED ON 6/25/2024 CLOSED ON 7/13/2024

What are the responsibilities and job description for the Security Testing Analyst position at Intellibee?

Job Title : Security Testing Analyst

Location : Charlotte, NC (Hybrid)

Job Description :

Security Analyst

Technology Business Line Risk Testing Analyst

Top Skills:

** Several years of experience in Quality Assurance/Quality Control, IT Risk Management, or Information Security;

** Execute and perform test of design and test of effectiveness of Technology, Information Security and data controls;

** Knowledge and experience in performing assessments aligned with regulatory standards;

** Ability to interact across multiple organizations and levels and escalate when roadblocks are identified;

** Financial Services experience;

** CRISC - Certified in Risk and Information Systems Control, CISA - Certified Information Systems Auditor, or CISSP - Certified Information Systems Security Professional would be beneficial.

** Must have excellent communication skills – able to work with and influence senior stakeholders, self-motivated – independent worker who will take initiative and work well collaboratively.

Job Description

This role is within the Technology organization functioning as a first line of defense. The role performs tests over the design and effectiveness for Technology, Data, and Information Security process, applications, and infrastructure controls across Ally and risk management practices.

The role will work closely with multiple stakeholders including the Technology leaders and subject matter experts. BL Technology Risk professionals in this role build and manage relationships with subject matters and Technology partners. Partnership and collaboration with Enterprise Risk, Compliance, and Information Security teams is needed evaluate, report, and resolve (as needed) risk and controls.

In this role, individuals are expected to:

  • Execute and perform test of design and test of effectiveness of Technology, Information Security, and data controls.
  • Identify gaps in the operational effectiveness and compliance with Policies, Standards, regulatory requirements, and industry best practices.
  • Develop and present reports and action plans to business partners and senior management resulting from testing.
  • Evaluate Technology, Cyber Security, and Data Management processes and systems for opportunities to improve compliance with Internal Policies/Standard requirements, alignment to regulatory expectations, process improvement and risk management.
  • Design, coordinate and oversee testing procedures to verify the security of systems, networks, and applications, and manage the remediation of risks.
  • Identify process improvement opportunities and develop subsequent plans of action to resolve gaps with minimal management intervention.

Qualifications:

  • Completed at least an undergraduate degree in Information Systems, Information Technology, Cybersecurity, or Computer Science
  • 2-4 years of experience in performing audits for Technology or Cybersecurity, Audit, Compliance, and/or Risk Management
  • Perform audits for IT/IS controls which includes evaulate the design and operating effectiveness of the control structure and compliance with internal Policies and Standards, as well as industry guidance
  • Knowledge and understanding of Technology and Cybersecurity industry frameworks and guidance (i.e., NIST, FFIEC, ISO 27001/27002)
  • General understanding of fundamental technology and cyber security principles (e.g., Identity and Access Management, Vulnerability Management, Capacity Management, SDLC, Data Classifications, etc.)
  • Ability to exercise judgement, make conclusions and influence a technology risk mindset with stakeholders
  • Ability to function in a matrix organization and cross-functional team
  • Ability to interact and influence personnel at all levels across the organization including associated to mid-level leadership
  • Attention to detail and maintain relevant risk industry knowledge
  • Critical thinking, problem solving and analytical skills
  • Demonstrated ability to effectively synthesize and communicate ideas and insights across the organization, including with executive leadership
  • Develop and maintain strong working relationships with internal Technology, risk, compliance and audit partners
  • Document test results and provide support for an informed, objective opinion of the risk exposure
  • Communicate testing results, observations, and recommendations verbally and in writing
  • Engage directly with Business Line to understand business offerings, processes and procedures
  • Work effectively with peers and leaders while maintaining independence necessary to fulfill Technology review and testing responsibilities
  • Escalate and report technology and operational risks concerns as necessary
  • Proficient use of Microsoft Office products: Word, Excel, PowerPoint, and SharePoint
  • Identify emerging technology risks and lead the dialog among stakeholders
  • Proficient written and verbal communication
  • Monitor and drive Information Technology’s adherence to enterprise policies
  • Review management action plans to assess effectiveness of proposed remediation and appropriateness of the timeline
  • Strong detail orientation with ability to research, compile, and report on data
  • Understanding of different types of systems (e.g., applications, servers, virtual servers, APIs, SaaS, Cloud computing)

Job Types: Full-time, Contract

Benefits:

  • 401(k)
  • Dental insurance
  • Health insurance

Experience:

  • Technology or Cybersecurity, Audit, Compliance: 3 years (Preferred)
  • Quality Assurance/Quality Contro: 3 years (Preferred)
  • IT Risk Management, or Information Security: 3 years (Preferred)

License/Certification:

  • IT Risk Management, or Information Security (Preferred)
  • CISA - Certified Information Systems Auditor (Preferred)
  • CISSP - Certified Information Systems Security Professional (Preferred)

Ability to Relocate:

  • Charlotte, NC 28262: Relocate before starting work (Required)

Work Location: Hybrid remote in Charlotte, NC 28262

GCO Senior Controls Testing Analyst
Truist Bank -
Charlotte, NC
Senior Quality Assurance Analyst - Performance Testing
FairPoint Communications -
Charlotte, NC
Senior Treasury Analyst - Stress Testing - BSIRRM
Wells Fargo -
CHARLOTTE, NC

For Employer
Looking for Real-time Job Posting Salary Data?
Keep a pulse on the job market with advanced job matching technology.
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Testing Analyst?

Sign up to receive alerts about other jobs on the Security Testing Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$72,030 - $95,771
Income Estimation: 
$91,468 - $118,061
Income Estimation: 
$102,939 - $148,843
Income Estimation: 
$90,423 - $121,187
Income Estimation: 
$112,379 - $136,932
Income Estimation: 
$139,576 - $168,131
Income Estimation: 
$139,864 - $180,553
Income Estimation: 
$160,909 - $233,104
Income Estimation: 
$104,988 - $133,102
Income Estimation: 
$128,849 - $163,685

Sign up to receive alerts about other jobs with skills like those required for the Security Testing Analyst.

Click the checkbox next to the jobs that you are interested in.

  • SAP Asap Methodology Skill

    • Income Estimation: $160,434 - $212,550
    • Income Estimation: $197,548 - $265,629
  • Business Analytics Skill

    • Income Estimation: $160,434 - $212,550
    • Income Estimation: $155,194 - $226,189
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Intellibee

Intellibee
Hired Organization Address Jersey, NJ Full Time
Looking for a mix of: Must have 5 years of experience in implementing/maintaining Oracle OFSAA FCCM (Formally known as M...
Intellibee
Hired Organization Address Richmond, VA Full Time
Hybrid Schedule - Candidate should be able to work on-site 3 days a week. The Virginia Department of Transportation (VDO...
Intellibee
Hired Organization Address Raleigh, NC Full Time
The Expert SQL, Snowflake Tableau School Business Data Developer will provide analysis and leadership on data analysis p...
Intellibee
Hired Organization Address Raleigh, NC Full Time
Senior Salesforce Developer with lead experience Worked as a solution design tech lead. Communities experience, Data gov...

Not the job you're looking for? Here are some other Security Testing Analyst jobs in the Charlotte, NC area that may be a better fit.

Cyber Security Awareness Analyst

Securitas Security Services, Charlotte, NC

Cyber Security Senior Defense Analyst

Securitas Security Services, Charlotte, NC