Application Security Analyst

| Hybrid
Sorry, this job was removed at 4:12 p.m. (CST) on Monday, July 15, 2019
Find out who's hiring in Chicago.
See all Cybersecurity + IT jobs in Chicago
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

Who We Are

Origami Risk is a wildly successful Enterprise Software as a Service growing at an exceptional rate. Origami has been consistently ranked the #1 Risk Management Information System (RMIS) in the industry’s most comprehensive studies for the past 5 years. Founded by industry veterans committed to bringing new ideas and advanced features to the RMIS market, Origami Risk’s innovative software is designed with the latest technology and a focus on performance and ease-of-use and is supported by industry experts. It features powerful workflow, advanced reporting and analysis tools, and intuitive features to improve productivity and better manage Total Cost of Risk—saving our clients time and money and enabling them to be more successful.

Making a Difference

We have an immediate opening for an Application Security Analyst to join our growing Security Operations team.

As an Application Security Analyst, you will be a member of the Security Team, helping drive the continuous evolution of Origami Risk's Secure Development Lifecycle while addressing ever-evolving cyber security threats to the Origami Risk SaaS Platform. This individual will be responsible for identifying new platform vulnerabilities, managing vulnerability detection processes, and developing automations to assist in vulnerability management and DevSecOps strategies. This individual will also work closely with our development teams to help define application security best practices, perform software architecture and design reviews, conduct black box and white box security testing, and support the identification, interpretation, and remediation of vulnerabilities across Origami Risk SaaS platform.

Tasks and Responsibilities:

  • Perform manual and automated scanning and security analysis of the Origami Risk SaaS platform; identify threats, vulnerabilities, and risks to the business

  • Use Security/Threat Intelligence feeds to improve indicators of compromise

  • Work with DevOps teams during the application development process to adopt secure design and coding practices

  • Respond to security incidents to include the collection, preservation, and analysis of forensic evidence

  • Proactively identify, triage and address security flaws, threats, and vulnerabilities

  • Participate in Security Operations and Support for a virtualized public cloud environment

  • Participate in risk and security assessments based on Governance, Risk and Compliance requirements

Qualifications:

  • Bachelor’s degree in Engineering, Information Security, Information Assurance, Network Security or related field

  • 5 years’ information security experience with a minimum of 3 years in an application security role

  • Knowledge of secure coding principles and best practices for web applications

  • Extensive knowledge of common application vulnerabilities, attack techniques, and remediation tactics and strategies

  • Experience with commercial and open source security solutions such as AppSpider, Burp Suite, Metasploit, Nexpose, Paros, Samurai WTF, and Kali Linux

  • Experience performing automated and manual vulnerabilities assessments of web applications based on methodologies such as OWASP and WASC

  • Knowledge of firewalls, IDS/IPS, centralized anti-virus solutions, patch management, data encryption, and cryptography techniques

  • Additional Skills, Experience, and Certifications:

  • Experience securing public cloud environments such as Amazon AWS, GCP or Microsoft Azure

  • Technical knowledge of Software Defined Networking

  • Experience with NIST 800-53, NIST 800-190, NIST 800-163, FISMA & FedRAMP compliance, and ISO 27001/2 security controls

  • Experience with SSAE 16/18 SOC audits

  • Relevant security certifications (i.e., GWEB, GCWN, CSSLP, OSWE, CASE)

  • Working knowledge of security frameworks, development, test, and deployment models

  • Experience with software development lifecycle (SDLC) methodologies such as Agile, DevSecOps

Clearance Requirements:

Applicants selected will be subject to a background check, a government security investigation and must meet eligibility requirements to be considered for the position. Authorized to work in the United States.

Origami Risk is a drug-free work place. Equal Opportunity Employer M/F/D/V

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
  • People Operations
    • C#Languages
    • CSSLanguages
    • JavaLanguages
    • JavascriptLanguages
    • SqlLanguages
    • TypeScriptLanguages
    • D3JSLibraries
    • jQueryLibraries
    • jQuery UILibraries
    • ASP.NETFrameworks
    • React NativeFrameworks
    • Microsoft SQL ServerDatabases
    • RedisDatabases
    • AWS (Amazon Web Services)Services
    • Google AnalyticsAnalytics
    • TableauAnalytics
    • CanvaDesign
    • IllustratorDesign
    • PhotoshopDesign
    • Google DriveManagement
    • Google DocsManagement
    • Google SlidesManagement
    • JIRAManagement
    • SmartsheetManagement
    • BoxManagement
    • DrupalCMS
    • HootsuiteCMS
    • DocuSignCRM
    • LinkedIn SalesNavigatorCRM
    • SageCRM
    • SalesforceCRM
    • Salesforce CPQCRM
    • Campaign MonitorEmail
    • MarketoLead Gen
    • ZoomInfoLead Gen
    • GrooveLead Gen
    • DemandbaseLead Gen
    • SlackCollaboration
    • ZoomCollaboration
    • LatticeCollaboration
    • SmartsheetProject Management

Location

Our Chicago HQ office is situated right on the river at LaSalle & Wacker – convenient to both the Loop and River North neighborhoods downtown. The building itself has restaurants and amenities inside along with plenty others within a one block radius. It is public transit friendly as well!

An Insider's view of Origami Risk

What are some social events your company does?

My day-to-day role is already fulfilling, but getting the chance to plan office parties, events, and happy hours for our Chicago office just helps to emphasize our strong culture. Being on the “Fun Committee”, I bring these socials to our London office while traveling for work too. There are plenty of reasons to celebrate while at Origami!

Matt B

Associate Client Service Executive

How do you collaborate with other teams in the company?

Our teams work cross-functionally to validate ideas, implement best practices, or share insights on market trends. We set agendas, outline goals, and follow up with key next steps. Through this practice of collaboration and a culture of accountability and ownership, we can best support our clients and empower them to achieve success on our platform

Anooja C

Senior Market Strategy Lead - Healthcare

How does the company support your career growth?

3 years ago, I started as an Analyst, but through my adaptability, analytical creativity, and effective collaboration, I was able to move up roles. Origami offered to pay for certifications, provided an extensive knowledge base, and great mentorship. The team helps define a clear path toward growth and gives you exactly what you need to achieve it.

Pedro N

Senior Client Service Executive

What unique initiatives do you have that encourage innovation?

We have very high expectations of ourselves. As Origamians, we want to be the best -- as individuals, as a team, and for our clients. These high expectations translate into creating solutions that go above and beyond.

Jaime H

Vice President of Product

How would you describe the company’s work-life balance?

Origami encourages a healthy work-life balance for all employees whether they are in an office or remote. Origami truly respects and cares for employees by providing support in many different ways - gym memberships, company outings, volunteer efforts, flexible work schedules, and more!

Beth S

Service Delivery Manager

What are Origami Risk Perks + Benefits

Origami Risk Benefits Overview

We are committed to providing our colleagues with comprehensive and affordable benefits for themselves and their family. We offer maximum options and flexibility in our packages.

Culture
Volunteer in local community
We recently helped create a mural in Englewood with Green Star Movement. Our Denver office teamed up with VOC and Grow Local Colorado to help harvest vegetables to donate to local people in need.
Partners with nonprofits
Past partnerships include Cradles to Crayons, Feeding America, Unicef, Toys for Tots, Restaurant Workers' Community Foundation, and World Health Organization.
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Employee resource groups
Employee-led culture committees
Hybrid work model
In-person all-hands meetings
Employee awards
Flexible work schedule
Remote work program
Diversity
Dedicated diversity and inclusion staff
Mandated unconscious bias training
Diversity employee resource groups
Hiring practices that promote diversity
Diversity recruitment program
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Opportunity for pre-tax contributions through Medical, Limited Purpose, Dependent Care, Transit, and Parking FSA Accounts.
Disability insurance
Short-term and long-term disability benefits are 100% paid by Origami.
Dental insurance
2 competitive dental plans available.
Vision insurance
Vision is 100% paid for by Origami.
Health insurance
2 competitive medical plan options (traditional & HSA eligible).
Life insurance
100% paid by Origami with opportunity to elect additional voluntary life insurance.
Pet insurance
Partnership with Nationwide for discounted pet insurance plans.
Wellness programs
Annual wellness reimbursement.
Team workouts
Mental health benefits
Financial & Retirement
401(K)
401(K) matching
Origami matches up to 4%.
Performance bonus
Annual target bonuses.
Charitable contribution matching
Child Care & Parental Leave Benefits
Childcare benefits
Generous parental leave
Origami provides up to 12 weeks of paid parental leave.
Family medical leave
Vacation & Time Off Benefits
Unlimited vacation policy
Generous PTO
Paid volunteer time
Paid holidays
Paid sick days
Flexible time off
Bereavement leave benefits
Office Perks
Commuter benefits
Pre-tax benefits for transit & parking.
Company-sponsored outings
Annual all-company retreat, summer & holiday parties, luncheons, sporting events, and more!
Free snacks and drinks
Some meals provided
Company-sponsored happy hours
Recreational clubs
Origami's kickball league is on the road to victory!
Fitness stipend
Home-office stipend for remote employees
Mother's room
Onsite gym
Professional Development Benefits
Job training & conferences
Tuition reimbursement
Lunch and learns
Promote from within
Mentorship program
Voluntary annual membership to mentor or be a mentee internally.
Continuing education stipend
Continuing education available during work hours
Online course subscriptions available
Customized development tracks
Paid industry certifications
Certifications are fully funded.
Personal development training

Additional Perks + Benefits

We listen to & take action on colleague feedback to ensure our offering continues to support and enrich their day to day lives. It's just work - enjoy the ride!

More Jobs at Origami Risk

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about Origami RiskFind similar jobs like this