Kaiser Permanente logo

Cybersecurity Consultant III, Application Security (Greensboro, NC)

Kaiser Permanente

  • Greensboro, NC
  • 1 day ago
  • $98,800
Want to know if you’re a fit?
Upload your resume and let our AI show you.

Skills

  • Applications Securityunmatched
  • Best Practicesunmatched
  • Business Administrationunmatched
  • Business Analysisunmatched
  • Communication Skillsunmatched
  • Computer Scienceunmatched
  • Computer Securityunmatched
  • Consultingunmatched
  • Cross-Functionalunmatched
  • Data Analysisunmatched
  • Identify Issuesunmatched
  • Industry/Trade Analysisunmatched
  • Information/Data Security (InfoSec)unmatched
  • Internet Securityunmatched
  • Leadershipunmatched
  • Mathematicsunmatched
  • Metricsunmatched
  • Network Architecture/Engineeringunmatched
  • Penetration Testingunmatched
  • Performance Analysisunmatched
  • Performance Metricsunmatched
  • Problem Solving Skillsunmatched
  • Process Developmentunmatched
  • Process Improvementunmatched
  • Quality Assurance Methodologyunmatched
  • Reporting Skillsunmatched
  • Riskunmatched
  • Risk Analysisunmatched
  • Root Cause Analysisunmatched
  • Security Analysisunmatched
  • Social Sciencesunmatched
  • Software Developmentunmatched
  • Team Playerunmatched
  • Technology Analysisunmatched
  • Test Dataunmatched
  • Test Plan/Scheduleunmatched
  • Testingunmatched
  • Time Managementunmatched
  • Trend Analysisunmatched

Description

Job Summary:

In addition to responsibilities listed below, this position is responsible for reviewing application source code for potential security vulnerabilities under the guidance of more senior application security consultants by performing manual and automated security testing on applications in a running state (DAST); working with DevOps teams to integrate application security services; training DevOps personnel and developers to use application security tools; working one-on-one with developers to help them understand security vulnerabilities at hand and to identify/suggest remediation plans; and recommending application security training paths.

This also includes responsibility for protecting applications in production by enrolling them for continuous assessment of existing and emerging threats, evaluating web application firewalls; tuning WAF rules; reviewing alerts; and identifying issues as appropriate.
Essential Responsibilities:


  • Completes work assignments by applying up-to-date knowledge in subject area to meet deadlines; following procedures and policies, and applying data and resources to support projects or initiatives; collaborating with others, often cross-functionally, to solve business problems; supporting the completion of priorities, deadlines, and expectations; communicating progress and information; identifying and recommending ways to address improvement opportunities when possible; and escalating issues or risks as appropriate.

  • Pursues self-development and effective relationships with others by sharing resources, information, and knowledge with coworkers and customers; listening, responding to, and seeking performance feedback; acknowledging strengths and weaknesses; assessing and responding to the needs of others; and adapting to and learning from change, difficulties, and feedback.

  • Effectively communicates investigative findings to non-technical audiences.

  • Works with technology risk teams and business stakeholders to respond to and remediate identified issues, and determine the best approach for improving security posture.

  • Provides recommendations to team or department leadership on how to remediate issues identified through security testing processes.

  • Identifies the impact of security test plans on upstream and downstream solution components.

  • Follows established processes to ensure KPI goals are obtained and performance metrics are tracked on an ongoing basis.

  • Supports continuous process improvement by participating in the development, implementation, and maintenance of standardized security tools, templates, and processes across assigned business domain(s).

  • Performs security test data analysis in support of security vulnerability assessment processes, including root cause analysis.

  • Executes the vulnerability assessment and penetration testing plan, methodologies, and standard processes for moderately complex technology initiatives across multiple IT domains by analyzing business and technology requirements.

  • Researches and stays abreast of industry trends, emerging threats, best practices, and cutting edge techniques to creatively discover and exploit vulnerabilities, and recommend security solutions for technology systems.

  • Generates scheduled reports (e.g., status updates, risk assessment reports, remediation reports) and provides regular security metrics to IT teams as appropriate.

Minimum Qualifications:
  • Minimum two (2) years software or application development experience.
  • Bachelors degree in Business Administration, Computer Science, Social Science, Mathematics, or related field and Minimum three (3) years experience in IT or a related field, including Minimum one (1) year in information security, network engineering, or application development. Additional equivalent work experience may be substituted for the degree requirement.
Additional Requirements:
  • N/A

Numbers & Facts

LocationGreensboro, NC
IndustryHealthcare Services
Salary$98,800
Company Size10,000 employees or more
Year Founded1945
Websitehttp://www.kp.org/careers

About Company

At Kaiser Permanente, we are relentless in our pursuit of excellence. Driven by our mission to provide the highest quality preventive medicine, we are committed to eliminating health care disparities, and to making lives better through innovation, technology, and research. Our desire to deliver the best possible care inspires us to promote wellness among our members, communities, and each other. It also fuels our belief that everyone — regardless of circumstance — deserves access to affordable care, which further drives our motivation to expand our reach. Founded nearly 80 years ago, our unique business model sets us apart — positioning us to drive improvements across the industry and around the world.

Similar Jobs

See more jobs