This job listing has expired and the position may no longer be open for hire.

Security Analyst (Dynamic Application Security Tester) at PNC Financial Services Group

Posted in General Business 30+ days ago.

Type: Full-Time
Location: Montgomery, Alabama





Job Description:

Position Overview

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success. As a(n) (position title) within PNC's (name of division) organization, you will be based in (city/state location of position).

Job Profile

Position Overview

At PNC, our people are our greatest differentiator and competitive advantage in the markets we serve. We are all united in delivering the best experience for our customers. We work together each day to foster an inclusive workplace culture where all of our employees feel respected, valued and have an opportunity to contribute to the company’s success.

As a Security Analyst (Dynamic Application Security Tester) within PNC's Technology Organization, this is a remote position and can sit anywhere within the PNC footprint, except for Colorado, Hawaii, Alaska.

In person activities may occur periodically based on business need.

• Execute dynamic security testing as part of an release-based assessment process.
• Lead testing engagements from kickoff through conclusion.
• Leverage application artifacts such as business requirements, user stories, design documents, architecture patterns, and other information sources to understand application release changes.
• Validate application vulnerabilities using both manual and automated dynamic security testing methods.

Job Description


  • Execute dynamic security testing as part of an release-based assessment process.

  • Lead testing engagements from kickoff through conclusion.

  • Leverage application artifacts such as business requirements, user stories, design documents, architecture patterns, and other information sources to understand application release changes.

  • Validate application vulnerabilities using both manual and automated dynamic security testing methods.

  • Provides technical evaluation and analysis. Supports activities, process, and tools needed to improve overall security posture of the organization.

  • Applies security concepts, reviews information, executes defined tasks, analyzes requirements, reviews logs, and creates documentation. Performs investigation and data loss prevention, data manipulation, and coordination of activities. Performs actions to address or mitigate risks and vulnerabilities. Reviews and defines controls.

  • Advises on more complex security procedures and products for clients, security administrators and network operations. Participates in enforcement of control security risks and threats; potential of one more controls subject to manager discretion. Shares knowledge with staff.

  • Conducts security assessments and other information security routines consistently. Investigates and recommends corrective actions for data security related to established guidelines.

PNC Employees take pride in our reputation and to continue building upon that we expect our employees to be:



  • Customer Focused - Knowledgeable of the values and practices that align customer needs and satisfaction as primary considerations in all business decisions and able to leverage that information in creating customized customer solutions.


  • Managing Risk - Assessing and effectively managing all of the risks associated with their business objectives and activities to ensure they adhere to and support PNC's Enterprise Risk Management Framework.

Competencies

Analytical Thinking – Knowledge of techniques and tools that promote effective analysis and the ability to determine the root cause of organizational problems and create alternative solutions that resolve the problems in the best interest of the business.

Effective Communications – Understanding of effective communication concepts, tools and techniques; ability to effectively transmit, receive, and accurately interpret ideas, information, and needs through the application of appropriate communication behaviors.

Information Assurance – Knowledge of and the ability to protect information and information systems while ensuring their confidentiality, integrity and availability.

Information Security Management – Knowledge of and the ability to manage the processes, tools, techniques and practices for assuring adherence to standards associated with accessing, altering and protecting organizational data.

Information Security Technologies – Knowledge of technologies and technology-based solutions dealing with information security issues.

IT Environment – Knowledge of an organization's IT purposes, activities and standards; ability to create an effective IT environment for business operations.

IT Standards, Procedures & Policies – Knowledge of and the ability to utilize a variety of administrative skill sets and technical knowledge to manage organizational IT policies, standards, and procedures.

IT Systems Management – Knowledge of and ability to utilize a variety of technical tools and techniques to guarantee service availability and ensure IT system performance.

Problem Solving – Knowledge of approaches, tools, techniques for recognizing, anticipating, and resolving organizational, operational or process problems; ability to apply this knowledge appropriately to diverse situations.

Software Security Assurance – Knowledge of and the ability to detect and prevent data security vulnerabilities of coding throughout the software development life cycle within software development organizations.

Work Experience

Roles at this level typically require a university / college degree, with 5+ years of industry-relevant experience. Specific certifications are often required. In lieu of a degree, a comparable combination of education and experience (including military service) may be considered.

Education

Bachelors (Required)

Additional Job Description

Benefits

PNC offers employees a comprehensive range of benefits to help meet your needs now and in the future. Depending on your eligibility, options for full-time employees include medical/prescription drug coverage (with a Health Savings Account feature); dental and vision options; employee and spouse/child life insurance; short- and long-term disability protection; maternity and parental leave; paid holidays, vacation days and occasional absence time; 401(k), pension and stock purchase plans; dependent care reimbursement account; back-up child/elder care; adoption assistance; educational assistance and a robust wellness program with financial incentives. To learn more about these and other programs, including benefits for part-time employees, visit pncbenefits.com > New to PNC.

Disability Accommodations Statement:

The PNC workplace is inclusive and supportive of individual needs. If you have a physical or other impairment that might require an accommodation, including technical assistance with the PNC Careers website or submission process, please call 877-968-7762 and select Option 4: Recruiting or contact us via email at pathfinder@pnc.com. 

The Human Resources Service Center hours of operation are Monday - Friday 9:00 AM to 5:00 PM ET.

Equal Employment Opportunity (EEO):

PNC provides equal employment opportunity to qualified persons regardless of race, color, sex, religion, national origin, age, sexual orientation, gender identity, disability, veteran status, or other categories protected by law.

California Residents

Refer to the California Consumer Privacy Act Privacy Notice to gain understanding of how PNC may use or disclose your personal information in our hiring practices.





More jobs in Montgomery, Alabama


CAVA

CAVA

GFL Industries
More jobs in General Business


TransCore, LP

Chimes District of Columbia.

TransCore, LP