Demo

Lead Application Security Analyst

Sherwin-Williams
Cleveland, OH Full Time
POSTED ON 6/23/2024 CLOSED ON 8/16/2024

What are the responsibilities and job description for the Lead Application Security Analyst position at Sherwin-Williams?

Job Description

Strategy & Planning

  • Acquire and interpret business requirements and functional specifications to create security non-functional requirements.
  • Work with the security architects to validate potential architectures through techniques like threat modeling.
  • Maintain knowledge of best security practices through training, research, involvement with local IT security groups, and collaboration with internal cybersecurity teams.
  • Identify areas for improvement by recommending the use of reusable code libraries introduced in standard build/deploy pipelines.
  • Assist development teams in updating the CMDB records to reflect current state.
  • Validate that OS, middleware, and images are being scanned for vulnerabilities at regular intervals and any reported vulnerabilities are tied back to the appropriate application(s).
  • Work with development and QA teams to ensure the use of secure coding practices and verification methods.
  • Work with dev-ops teams and engineers to integrate security solutions into continuous delivery frameworks.
  • Mitigate security risks associated with projects, which have a high technical complexity and/or involve significant challenges to the business.
  • Work with delivery teams and product owners to reduce application security risks by assisting with code remediation before production delivery.

Acquisition & Deployment

  • Work with architects and developers to design optimal security practices when developing new application functionality.

Operational Management

  • Support and maintain automated application security testing within the devops pipelines.
  • Provide input in updating security standards on an annual basis.

Ensure that all applications are using effective security monitoring, and work with the endpoint security team to test configurations.

Responsibilities

Incidental Functions

  • Deciding new technologies including tools, components, and frameworks.
  • Project and task management and reporting as necessary.
  • Make presentations to management, clients, and peer groups as requested.
  • Participate in hiring activities and fulfilling affirmative action obligations and ensuring compliance with the equal employment opportunity policy.

This position is not eligible for sponsorship for work authorization now or in the future, including conversion to H1-B visa.

This position has a hybrid work schedule with three days in the office and the option for working remotely two days.

Qualifications

Formal Education & Certification

  • Bachelor’s degree (or foreign equivalent) in a Computer Science, Computer Engineering, or Information Technology field of study (e.g., Information Technology, Electronics and Instrumentation Engineering, Computer Systems Management, Mathematics) or equivalent experience.
  • GIAC GWAPT, or CISSP certifications are a plus.

Knowledge & Experience

  • 8 years of total IT and/or cybersecurity experience
  • Experience working on all phases of the Software Development Lifecycle.

Preferred Experience

  • 3 year(s) of experience in securing web services
  • 3 years of coding experience, preferably Java
  • Detailed understanding of authentication/authorization best practices
  • Working knowledge of oAuth 2.0 flows
  • Understanding of integrating security practices with container-based deployments
  • Understanding of web application firewall technology
  • Mentoring software engineers in writing secure code.

Personal Attributes

  • Strong analytical, conceptual, and problem-solving abilities.
  • Good written and oral communication skills.
  • Good presentation and interpersonal skills.
  • Ability to present ideas in user-friendly language.
  • Able to prioritize and execute tasks in a high-pressure environment.
  • Ability to work in a team-oriented, collaborative environment.
  • Strong commitment to inclusion and diversity
  • Minimal travel is required.
  • Work outside the standard office 7.5-hour workday may be required.

About Us

Here, we believe there’s not one path to success, we believe in careers that grow with you. Whoever you are or wherever you come from in the world, there’s a place for you at Sherwin-Williams. We provide you with the opportunity to explore your curiosity and drive us forward. Sherwin-Williams values the unique talents and abilities from all backgrounds and characteristics. All qualified individuals are encouraged to apply, including individuals with disabilities and Protected Veterans. We’ll give you the space to share your strengths and we want you show us what you can do. You can innovate, grow and discover in a place where you can thrive and Let Your Colors Show!

At Sherwin-Williams, part of our mission is to help our employees and their families live healthier, save smarter and feel better. This starts with a wide range of world-class benefits designed for you. From retirement to health care, from total well-being to your daily commute—it matters to us. A general description of benefits offered can be found at http://www.myswbenefits.com/ . Click on “Candidates” to view benefit offerings that you may be eligible for if you are hired as a Sherwin-Williams employee.

Compensation decisions are dependent on the facts and circumstances of each case and will impact where actual compensation may fall within the stated wage range. The wage range listed for this role takes into account the wide range of factors considered in making compensation decisions including skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled.

The wage range, other compensation, and benefits information listed is accurate as of the date of this posting. The Company reserves the right to modify this information at any time, with or without notice, subject to applicable law.

Sherwin-Williams is proud to be an Equal Employment Opportunity/Affirmative Action employer committed to an inclusive and diverse workplace. All qualified candidates will receive consideration for employment and will not be discriminated against based on race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, pregnancy, genetic information, creed, marital status or any other consideration prohibited by law or by contract.

As a VEVRAA Federal Contractor, Sherwin-Williams requests state and local employment services delivery systems to provide priority referral of Protected Veterans.

Salary : $103,301 - $133,336

Application Security Engineer 4
Hyland Software -
Westlake, OH
Manager, Application Security Engineer
KPMG US -
Cleveland, OH
Lockbox Application Analyst
BCForward -
Cleveland, OH

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Lead Application Security Analyst?

Sign up to receive alerts about other jobs on the Lead Application Security Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$164,835 - $201,088
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553

Sign up to receive alerts about other jobs with skills like those required for the Lead Application Security Analyst.

Click the checkbox next to the jobs that you are interested in.

  • Access Control Skill

    • Income Estimation: $59,793 - $89,166
    • Income Estimation: $59,454 - $77,232
  • Brand Management Skill

    • Income Estimation: $60,568 - $79,988
    • Income Estimation: $68,730 - $92,919
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Sherwin-Williams

Sherwin-Williams
Hired Organization Address Johnston, RI Full Time
Job Description This position is essential to the success of our retail stores. Customer Service Specialists work closel...
Sherwin-Williams
Hired Organization Address Minot, ND Full Time
Job Description This position is essential to the success of our retail stores. Customer Service Specialists work closel...
Sherwin-Williams
Hired Organization Address Yukon, OK Full Time
The Sherwin-Williams Management & Sales Training Program is an accelerated, entry-level position designed to prepare you...
Sherwin-Williams
Hired Organization Address Danbury, CT Full Time
Job Description Store associates work closely with wholesale and retail customers to determine their needs, answer their...

Not the job you're looking for? Here are some other Lead Application Security Analyst jobs in the Cleveland, OH area that may be a better fit.

Application Security Analyst or Senior Analyst

Federal Reserve Bank (FRB), Cleveland, OH

Application Analyst

Lensa, Cleveland, OH

AI Assistant is available now!

Feel free to start your new journey!