> Markdown version of [/jobs/ext/2450583-sr-cyber-security-analyst](https://www.wearedevelopers.com/jobs/ext/2450583-sr-cyber-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr Cyber Security Analyst - **Company:** FedEx - **Location:** Plano, TX, United States - **Experience:** Expert - **Salary:** $85,131.0 - $150,398.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Java (Programming Language), Agile Methodology, C Sharp (Programming Language), Cloud Computing Security, Cloud Engineering, Code Review, Cyber Security, Information Systems, Continuous Integration, Identity and Access Management, Information Systems Security Architecture Professional, Python (Programming Language), Open Web Application Security, Secure Coding, Software Engineering, Software Vulnerability Management, Google Cloud, Software Security, Build Server, GWAPT, Kubernetes, Information Technology, Static Application Security Testing, Golang, Dynamic Application Security Testing - **Published:** August 24, 2026 - **Apply:** https://www.dice.com/job-detail/f9c0f840-f7a4-4301-a58b-ab97ea008fcd ## About the Role * 3+ years of hands-on experience in application security or product security. * Proficiency in at least one programming language (e.g., Python, Java, Go, C#) with the ability to read and review code for security vulnerabilities. * Deep familiarity with common vulnerability classes (OWASP Top 10, CWE Top 25) and a demonstrated ability to identify and guide remediation in a codebase. * Hands-on experience with security tooling in a CI/CD pipeline (e.g., SAST, DAST, SCA). * Ability to work independently, exercise sound technical judgment, and deliver results in a fast-paced, evolving environment. * Experience contributing to or maturing a security program within a large, complex organization. * Familiarity with Google Cloud Platform-native security tooling relevant to the software supply chain and container security (e.g., Artifact Registry, Binary Authorization, Cloud Build). * Experience with cloud-native architectures and their security considerations, including container security and Kubernetes (e.g., GKE). * Ability to identify and automate repetitive security tasks to improve team efficiency and scale security operations. * Relevant security certifications (e.g., CSSLP, GWEB, GWAPT, GPEN, or equivalent). * Familiarity with security requirements in a regulated or critical infrastructure industry. Minimum Education Bachelor's degree in computer science, information systems, or related degree, and/or equivalent formal training or work experience. Minimum Experience Four (4) years of experience in IT information security. Knowledge, Skills, and Abilities General knowledge of hardware, software, and network. ## Description As a Senior Cyber Security Analyst, you will be a key technical contributor on a growing Product Security team. Working closely with the team manager and engineers, you will help shape security practices and drive the team's program maturity while serving as a hands-on security practitioner embedded with our agile development teams. You will bring senior-level technical judgment to secure the software development lifecycle and provide technical guidance and mentorship to teammates who are newer to product security. This role is well-suited for an experienced engineer who thrives in a dynamic, evolving environment and is energized by contributing to a team that is actively building its foundation., * Program Development: Collaborate with the manager and team members to define and mature the Product Security program's long-term strategy, processes, and roadmap. * Embedded Security Guidance: Serve as a senior security resource for agile development teams. Lead sprint security discussions, drive security-focused backlog grooming, and act as a trusted technical advisor to developers. * Secure Design & Code Review: Independently lead security design reviews and secure code reviews for new features and architectures, identifying and remediating vulnerabilities including OWASP Top 10 and cloud-specific risk patterns. * Threat Modeling: Facilitate and lead threat modeling sessions, producing actionable threat models, risk documentation, and mitigation plans. * Security Tooling: Own the evaluation, configuration, and continuous tuning of security tooling in the CI/CD pipeline (SAST, DAST, SCA); drive actionable remediation with engineering teams based on findings. * Vulnerability Management: Own end-to-end vulnerability identification, triage, prioritization, and remediation tracking for assigned product teams. * Cloud Security: Apply cloud security principles and best practices to support the organization's ongoing migration to public cloud like Google Cloud Platform, including secure architecture review, IAM, and workload protection guidance. * Mentorship & Technical Guidance: Provide mentorship and technical guidance to team members, actively helping grow the team's collective capabilities. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Scoring 2000 Products per Request: Performance Pitfalls in Golang](https://www.wearedevelopers.com/videos/2073-scoring-2000-products-per-request-performance-pitfalls-in-golang) - [Instant KAI Sandboxes with vCluster: Multi-Tenant, Multi-Scheduler GPU Sharing](https://www.wearedevelopers.com/videos/100333-instant-kai-sandboxes-with-vcluster-multi-tenant-multi-scheduler-gpu-sharing) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know)