RemOps - InfoSec
Phoenix, AZ ยท On-site
Phoenix AZ (onsite 3 days in office) Overview: The Information Security Analyst for the Remediation ... security exceptions, assessing associated risk, and driving remediation of critical and high-risk ...
Phoenix, AZ ยท On-site
Phoenix AZ (onsite 3 days in office) Overview: The Information Security Analyst for the Remediation ... security exceptions, assessing associated risk, and driving remediation of critical and high-risk ...
Phoenix, AZ ยท On-site
Phoenix AZ (onsite 3 days in office) Overview: The Information Security Analyst for the Remediation ... security exceptions, assessing associated risk, and driving remediation of critical and high-risk ...
Scottsdale, AZ ยท Hybrid
$81K - $95K/yr
Perform security, privacy, and compliance assessments using standardized questionnaires and ... High attention to detail with strong organizational and documentation skills. * Ability to adapt to ...
Scottsdale, AZ ยท Hybrid
$81K - $95K/yr
Perform security, privacy, and compliance assessments using standardized questionnaires and ... High attention to detail with strong organizational and documentation skills. * Ability to adapt to ...
Phoenix, AZ ยท On-site
$46/hr
The Department of Economic Security, Division of Technology Services is seeking an experienced and ... We have been consistently delivering on our promises as a high-performance team. Our expertise in ...
Phoenix, AZ ยท On-site
$46/hr
The Department of Economic Security, Division of Technology Services is seeking an experienced and ... We have been consistently delivering on our promises as a high-performance team. Our expertise in ...
Phoenix, AZ ยท On-site
Phoenix AZ (onsite 3 days in office) Overview: The Information Security Analyst for the Remediation ... security exceptions, assessing associated risk, and driving remediation of critical and high-risk ...
Phoenix, AZ ยท On-site
Phoenix AZ (onsite 3 days in office) Overview: The Information Security Analyst for the Remediation ... security exceptions, assessing associated risk, and driving remediation of critical and high-risk ...
... day life and activities with colleagues, friends, and family. WHAT WE DO Our Security, Risk and ... Control design or maturation for high-demand technical areas such as ERP, Identity and Access ...
... day life and activities with colleagues, friends, and family. WHAT WE DO Our Security, Risk and ... Control design or maturation for high-demand technical areas such as ERP, Identity and Access ...
Phoenix, AZ ยท On-site +1
$46/hr
The Department of Economic Security, Division of Technology Services is seeking an experienced and ... Ability to produce high quality work products for both the IT groups and Senior Management. Ability ...
Quick apply
Phoenix, AZ ยท On-site +1
$46/hr
The Department of Economic Security, Division of Technology Services is seeking an experienced and ... Ability to produce high quality work products for both the IT groups and Senior Management. Ability ...
Mesa, AZ ยท On-site
$17.75 - $21.75/hr
The Security Site Supervisor is responsible for the safety and protection of executive employees and other high-risk individuals who visit the data center. The role also supervises day-to-day ...
Mesa, AZ ยท On-site
$17.75 - $21.75/hr
The Security Site Supervisor is responsible for the safety and protection of executive employees and other high-risk individuals who visit the data center. The role also supervises day-to-day ...
Mesa, AZ ยท On-site
The Security Site Supervisor is responsible for the safety and protection of executive employees and other high-risk individuals who visit the data center. The role also supervises day-to-day ...
Mesa, AZ ยท On-site
The Security Site Supervisor is responsible for the safety and protection of executive employees and other high-risk individuals who visit the data center. The role also supervises day-to-day ...
The Security Site Supervisor is responsible for the safety and protection of executive employees and other high-risk individuals who visit the data center. The role also supervises day-to-day ...
The Security Site Supervisor is responsible for the safety and protection of executive employees and other high-risk individuals who visit the data center. The role also supervises day-to-day ...
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Every day, we work to exceed the expectations of our residential mortgage borrowers and business ... Identify strengths and weaknesses in the risk and security program as they relate tosecurity ...
Every day, we work to exceed the expectations of our residential mortgage borrowers and business ... Identify strengths and weaknesses in the risk and security program as they relate tosecurity ...
Free day train tickets! * Free gym and pool access! * Full benefits package and employee perk ... Ensures Security personnel are scheduled for maximum coverage and properly trained in company ...
Free day train tickets! * Free gym and pool access! * Full benefits package and employee perk ... Ensures Security personnel are scheduled for maximum coverage and properly trained in company ...
Free day train tickets! * Free gym and pool access! * Full benefits package and employee perk ... Ensures Security personnel are scheduled for maximum coverage and properly trained in company ...
Free day train tickets! * Free gym and pool access! * Full benefits package and employee perk ... Ensures Security personnel are scheduled for maximum coverage and properly trained in company ...
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
Phoenix, AZ ยท On-site
... high-risk user groups and implementing targeted interventions to proactively mitigate human-centric threats to cultivate a security-first culture internally through education and behavioral change.
... high risk applications and shared services, ensuring alignment with enterprise security policies ... Ability to work a hybrid schedule - 3 days per week on-site/in office and 2 days per week remote ...
... high risk applications and shared services, ensuring alignment with enterprise security policies ... Ability to work a hybrid schedule - 3 days per week on-site/in office and 2 days per week remote ...
| Aspect | Day High Risk Security | Day Security Guard |
|---|---|---|
| Credentials | Security license, specialized training in high-risk scenarios | Basic security license, general security training |
| Work Environment | High-risk areas, events, or facilities with potential threats | Commercial, retail, or office buildings with standard security needs |
| Employer & Industry | Security firms, government agencies, high-value assets | Commercial businesses, retail stores, corporate offices |
Day High Risk Security professionals handle high-threat environments requiring specialized training and credentials, focusing on threat mitigation and safety. In contrast, Day Security Guards provide general security services in lower-risk settings. Both roles are essential but differ significantly in scope, training, and work environment.
Role : RemOps - InfoSec
Location : Phoenix AZ (onsite 3 days in office)
Overview:
The Information Security Analyst for the Remediation Operations team is responsible for evaluating security exceptions, assessing associated risk, and driving remediation of critical and high-risk vulnerabilities across applications and platforms. This role operates within the Application Security and Infrastructure Security ecosystem, ensuring adherence to Enterprise Vulnerability standards and reducing enterprise risk exposure.
Key Responsibilities:
Exception Review & Risk Assessment
โข Review and assess security exception requests for compliance with Enterprise Vulnerability standards and supporting policies.
โข Validate business justifications, compensating controls, and risk responses (Mitigate, Accept, Transfer, Avoid).
โข Ensure exceptions align with the Exceptions Management Program and include required documentation and leadership approvals.
โข Challenge insufficient or unjustified exceptions, prioritizing remediation over risk acceptance.
Vulnerability Governance & Remediation Oversight
โข Monitor and track critical and high vulnerabilities across application and infrastructure portfolios.
โข Enforce remediation timelines in accordance with defined Service Level Objectives (SLOs).
โข Ensure vulnerabilities exceeding SLOs are either remediated or formally documented via approved exceptions.
โข Validate remediation through coordination with security tooling, rescans, or evidence-based confirmation.
Stakeholder Engagement & Reach-Out
โข Proactively engage application and platform owners with critical risk exposure or past-due vulnerabilities.
โข Communicate risk clearly, including exploitability, business impact, and compliance implications.
โข Drive accountability through follow-ups, escalation paths, and alignment with leadership where required.
โข Support application teams in understanding remediation options and security requirements.
Security Tooling & Data Analysis
โข Leverage results from enterprise security tools (e.g., SAST, DAST, SCA, IRIS, Tenable, API security tools) to identify and track vulnerabilities.
โข Analyze risk metrics, dashboards, and reports (e.g., Application Health, vulnerability reports) to prioritize actions.
โข Correlate findings across tools to identify systemic risk patterns and recurring issues.
Policy & Standards Alignment
โข Ensure adherence to:
โข Application Security Policy
โข Enterprise Vulnerability Standard
โข Application Vulnerability Management Procedure
โข Interpret and translate policy requirements into actionable guidance for engineering teams.
โข Identify gaps or non-compliance and recommend corrective actions.
Continuous Threat Exposure Management (CTEM) Support
โข Contribute to continuous risk identification, prioritization, and validation efforts.
โข Support risk-based prioritization using exploitability, asset criticality, and exposure context.
โข Assist in reducing attack surface and improving overall security posture.
Required Qualifications
Technical & Security Expertise
โข Strong understanding of:
โข Application Security (OWASP Top 10, secure coding practices)
โข Vulnerability management lifecycle and risk-based prioritization
โข Security testing methodologies (SAST, DAST, SCA, API security)
โข Familiarity with enterprise security tools and platforms
โข Ability to interpret vulnerability data, CVSS scoring, and exploitability context.
Risk & Governance Knowledge
โข Experience with security exceptions management and risk acceptance processes.
โข Understanding of SLO-driven remediation and escalation models.
โข Ability to assess compensating controls and residual risk.
Communication & Stakeholder Management
โข Ability to engage technical and non-technical stakeholders effectively.
โข Strong written and verbal communication skills for risk articulation and escalation.
โข Experience driving remediation through influence rather than authority.
Preferred Qualifications
โข Experience within financial services or highly regulated environments.
โข Familiarity with Enterprise Vulnerability Management or similar enterprise security frameworks.
โข Exposure to CTEM practices and risk-based security operations.
โข Experience working with cloud, APIs, or distributed systems.
Key Success Metrics
โข Reduction in critical/high vulnerabilities past SLO
โข Decrease in exception volume and aging exceptions
โข Improved application security posture
โข Timely engagement and remediation outcomes with application teams
โข Quality and completeness of exception reviews and risk assessments
Role Positioning
This role is not a passive reviewer. It is an active risk driver responsible for:
โข Enforcing security standards
โข Driving remediation outcomes
โข Preventing misuse of exceptions as a substitute for fixing risk
Sourced by ZipRecruiter
Recruiting and staffing services
51 - 200 Employees
Dulles, VA, US
2001