Discover. A brighter future.
With us, you’ll do meaningful work from Day 1. Our collaborative culture is built on three core behaviors: We Play to Win, We Get Better Every Day & We Succeed Together. And we mean it — we want you to grow and make a difference at one of the world's leading digital banking and payments companies. We value what makes you unique so that you have an opportunity to shine.
Come build your future, while being the reason millions of people find a brighter financial future with Discover.
Job Description:
At Discover, be part of a culture where diversity, teamwork and collaboration reign. Join a company that is just as employee-focused as it is on its customers and is consistently awarded for both. We’re all about people, and our employees are why Discover is a great place to work. Be the reason we help millions of consumers build a brighter financial future and achieve yours along the way with a rewarding career.
As a Cybersecurity Analyst, you will ensure disciplined execution of Cyber initiatives and risk remediation efforts. You will actively manages and escalates risk and customer-impacting issues within the day-to-day role to management.
The Application Security teams at DFS provides services and products for securing the software and product footprint used to run the business. As DFS business and engineering workforce has grown, our software footprint has also grown and become more heterogeneous, thus warranting next gen DevSecOps and Application security program implementation with focus on risk and compliance and app dev experience.
Reporting into the Head of Product Security the Cybersecurity Analyst will be a key team member of fast-paced Application security analysis team. This role will be the central point of contact to manage the portfolio of application security risks, develop application security assessments, provide technical support in code reviews (as needed), and help drive collaboration from internal application development and product teams to disposition the vulnerabilities, risk and non compliance to security requirements.
This role requires high levels of application security technical acumen, collaboration and oversight, including the effective challenge of remediation action plans, documentation of control gaps (e.g., Security Exceptions, Issues and Actions), and timely executive status reporting of overall organizational performance of application security risk management and compliance to security non functional requirements. If you are still reading this and intrigued, you could be the right candidate for the role. Please see additional details below and apply today.
Responsibilities
Lead and manage the security requirements compliance management program for product security
Engage (and lead as needed) with the various business and technology teams to assist with integrating product security practices and requirements at the beginning of application and product development process
Lead the engagement with open source office on key risk remediation initiatives.
Assess and report upon the application security threat landscape through architecture reviews, cyber threat intelligence, and vulnerability assessments
Support (and lead as needed) development and operations teams with vulnerability analysis and remediation
Identifying and implementing new opportunities to improve the efficiency of security testing.
Developing new methods to prevent security vulnerabilities and tracking the remediation of those found.
Providing weekly metrics on assessments completed and vulnerabilities found.
Engage with teams across technology.
Delivers metrics and performance reporting to enhance real-time risk decisions and initiative prioritization
Collaborates with cross-functional resources to drive progress toward cyber initiatives or risk remediation deliverables
Coordinates all exam management requests with program owners
Collects, reviews, and uploads all artifacts submitted as evidence in advance of requested dates
Assists in compiling management corrective action plans for risk item closure
Performs due diligence and validation on identified risk findings
Minimum Qualifications
At a minimum, here’s what we need from you:
Bachelors – Information Security, Information Technology, Analytics, Business or Project Management
4+ Years – Information Security, Information Technology, Business, Analytics, Project Management or related
In lieu of a degree 6+ Years – Information Security, Information Technology, Business, Analytics, Project Management or related
Internal applicants only: technical proficiency rating of competent on the Dreyfus cybersecurity scale
Preferred Qualifications
If we had our say, we’d also look for:
Strong project management skills, highly organized.
Ability to maintain executive level reporting.
Strong written & verbal communication skills.
Ability to manage problems independently.
DevSecOps background and experience would be beneficial.
Certifications:
CISSP, CISM, CRISC, etc
PMP, Agile SAFe etc
External applicants will be required to perform a technical interview.
What are you waiting for? Apply today!
And by the way, while you're waiting to hear from us, don't forget to check out the great benefits Discover offers.
All Discover employees place our customers at the very center of our work. To deliver on our promises to our customers, each of us contribute every day to a culture that values compliance and risk management.
The same way we treat our employees is how we treat all applicants – with respect. Discover Financial Services is an equal opportunity employer (EEO is the law (https://www.dol.gov/ofccp/regs/compliance/posters/ofccpost.htm) ). We thrive on diversity & inclusion. You will be treated fairly throughout our recruiting process and without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status or any other characteristic protected by federal, state, or local law in consideration for a career at Discover.
Application Deadline:
The application window for this position is anticipated to close on Jan-29-2024. We encourage you to apply as soon as possible. The posting may be available past this date, but it is not guaranteed.
Compensation:
The base pay for this position generally ranges between $88,500.00 to $149,300.00. Additional incentives may be provided as part of a market competitive total compensation package. Factors, such as but not limited to, geographical location, relevant experience, education, and skill level may impact the pay for this position.
Benefits:
We also offer a range of benefits and programs based on eligibility. These benefits include:
Paid Parental Leave
Paid Time Off
401(k) Plan
Medical, Dental, Vision, & Health Savings Account
STD, Life, LTD and AD&D
Recognition Program
Education Assistance
Commuter Benefits
Family Support Programs
Employee Stock Purchase Plan
Learn more at MyDiscoverBenefits.com .
What are you waiting for? Apply today!
All Discover employees place our customers at the very center of our work. To deliver on our promises to our customers, each of us contribute every day to a culture that values compliance and risk management.
Discover is committed to a diverse and inclusive workplace. Discover is an equal opportunity employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, protected veteran status, or other legally protected status. (Know Your Rights) (https://urldefense.com/v3/__https:/www.eeoc.gov/poster__;!!MjXRb4uW6x5k!ABIVgRw0WsyX2wfQC-pKxK3V9X4h1NBUGgjO7EM8PTvp5MNRgpEuVC_jVk0fcn_ISAZjmwkbLuUIrj8mFedCBkyz$)