Job Description: Security Analyst / Security Engineer

The Maven
Seattle, WA, United States
about 2 months ago
Apply on dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Burp Suite Cyber Security DevOps Identity and Access Management Intrusion Detection Systems Nmap Open Web Application Security Systems Development Life Cycle Salesforce.Com Secure Coding Web Application Security
+11 more
Security Information and Event Management Software Engineering Software Vulnerability Management Software Security QRadar Information Technology Nessus Microsoft Sentinel Splunk Qualys Vulnerability Analysis

Job description

We are seeking a skilled Security Analyst / Security Engineer to strengthen our organization’’s cybersecurity posture. The ideal candidate will have experience in application security, vulnerability management, incident response, and collaborating with cross-functional security and engineering teams. This role is responsible for identifying, assessing, and mitigating security risks while ensuring compliance with organizational security standards and industry best practices., * Perform application security assessments, including secure code reviews and vulnerability identification.

  • Conduct vulnerability assessments and coordinate remediation efforts with development and infrastructure teams.
  • Monitor, investigate, and respond to security incidents, ensuring timely containment and resolution.
  • Analyze security alerts from SIEM, EDR, IDS/IPS, and other security monitoring tools.
  • Collaborate with development, DevOps, infrastructure, and security teams to integrate security throughout the software development lifecycle (SDLC).
  • Support penetration testing activities and validate remediation of identified vulnerabilities.
  • Assist in threat modeling, risk assessments, and security architecture reviews.
  • Develop and maintain security policies, standards, and technical documentation.
  • Participate in incident response planning, forensic investigations, and post-incident reviews.
  • Recommend and implement security controls to reduce organizational risk.
  • Stay informed about emerging threats, vulnerabilities, and industry best practices.

Requirements

  • Bachelor’’s degree in Computer Science, Information Security, Cybersecurity, or a related field.
  • 7 years of experience in information security, application security, or security engineering.
  • Strong understanding of application security principles and the Secure SDLC.
  • Experience with vulnerability management tools such as Tenable, Qualys, Rapid7, or similar.
  • Hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, QRadar) and endpoint security solutions.
  • Knowledge of web application security concepts, including the OWASP Top 10.
  • Familiarity with common security testing tools such as Burp Suite, Nessus, Nmap, OWASP ZAP, or similar.
  • Understanding of authentication, authorization, encryption, and identity management concepts. *

  • Salesforce exp. is required

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · World Congress 2026 Europe

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

2:30 min

Establishing shared definitions for devops and cloud architectures

Bruno Amaro Almeida · World Congress 2022

Videos

See all

Related articles

See all