> Markdown version of [/jobs/ext/2433499-sr-it-security-analyst-g-a-and-business-applications](https://www.wearedevelopers.com/jobs/ext/2433499-sr-it-security-analyst-g-a-and-business-applications). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr IT Security Analyst - G&A and Business Applications - **Company:** Dynatrace LLC - **Location:** Boston, MA, United States - **Experience:** Expert - **Salary:** $110,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Amazon Web Services, Audit Trail, User Authentication, Business Software, Business Systems, Software as a Service, Cloud Computing, Cyber Security, System Configuration, Data Security, Human Resources Information System (HRIS), Middleware, Identity and Access Management, Network Security, Netsuite, Role-Based Access Control, Azure Active Directory, SuccessFactors, Security Information and Event Management, Data Streaming, Systems Integration, Data Logging, Enterprise Software Applications, Cloud Platform System, Okta, Boomi, Software Security, Dynatrace - **Published:** August 3, 2026 - **Apply:** https://dejobs.org/x/x/813F46BEF2754EB09E4109634C3221CC/job/ ## About the Role * 2+ years of experience in IT security, application security, or enterprise systems security Preferred Requirements: * Hands-on experience securing or administering one or more of the following: * NetSuite * SAP SuccessFactors * Strong understanding of: * Identity and access management (IAM) principles * Role-based access control (RBAC) and segregation of duties (SoD) * Secure system integration and API security * Experience working with compliance frameworks: * Familiarity with FedRAMP, ISO 27001, and SOC 2 * Experience with AWS security controls (IAM, logging, network security) * Knowledge of enterprise logging/monitoring practices (SIEM integration, audit logging) * Experience supporting audits or working with internal/external auditors * Experience with Dell Boomi or similar iPaaS solutions * Familiarity with identity providers (e.g., Okta, Azure AD) and SSO integrations * Familiarity with SOX controls for financial systems * Ability to translate business processes into security control requirements * Strong analytical mindset with focus on risk identification and mitigation * Experience working cross-functionally with IT, Security, and business stakeholders * Clear communication skills with ability to explain risks and recommendations ## Description Dynatrace is seeking an experienced IT Security Analyst with a strong focus on business application and enterprise (G&A) system security. This role is responsible for evaluating, and implementing security controls across critical enterprise platforms such as NetSuite, SAP SuccessFactors, and other SaaS-based business systems., Business Application Security * Assess and strengthen security controls for enterprise applications including: * NetSuite (ERP) * SAP SuccessFactors (HRIS) * Review system configurations, access models, and integrations to identify security risks * Partner with application owners to implement least privilege access and secure configuration standards Integration & Data Flow Security * Analyze and secure data flows between business systems and internal platforms * Evaluate API and middleware integrations (e.g., Boomi) for: * Authentication and authorization risks * Data exposure risks * Logging and monitoring gaps * Recommend and enforce secure integration patterns across the IT landscape Security Controls & Risk Management * Perform security reviews and risk assessments for new and existing G&A applications * Define and recommend compensating controls where platform limitations exist * Support threat modeling and identify combination risks across interconnected systems Compliance & Governance * Align application security controls with regulatory and audit requirements: * FedRAMP (where applicable to systems in scope) * ISO 27001 and SOC 2 control frameworks * SOX (financial controls, user access reviews) * Support audit activities including: * Evidence collection * Control validation * Remediation tracking Cloud & Platform Security (Optional) * Contribute to securing SaaS and cloud-hosted applications within AWS environments * Review IAM configurations, network exposure, and platform-level risks * Partner with cloud and platform teams to ensure consistent security control implementation ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Get security done: streamlining application security with Aikido](https://www.wearedevelopers.com/videos/1638-get-security-done-streamlining-application-security-with-aikido) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools)