Application Security Tester Job at Santander Consumer USA Inc., Quincy, MA

eWEveGI4VUt6aVN0ZnI3ekhNQ2hyTjkyVkE9PQ==
  • Santander Consumer USA Inc.
  • Quincy, MA

Job Description

Application Security Tester

Country: United States of America

Your Journey Starts Here:

Santander is a global leader and innovator in the financial services industry. We believe that our employees are our greatest asset. Our focus is on fostering an enriching journey that empowers you to explore diverse career opportunities while nurturing your personal growth. We are committed to creating an environment where continuous learning and development are prioritized, enabling you to thrive both professionally and personally. Here, you will find ample opportunities to connect and collaborate with talented colleagues from around the world, sharing insights and driving innovation together. Join us at Santander, where you are supported by a culture of engagement and a commitment to your success.

An exciting journey awaits, if you are interested in exploring the possibilities We Want to Talk to You!

The Difference You Make :

The Associate, Information Security responsible for detecting threat and vulnerabilities in target systems, networks and applications by conducing systems, network, web vulnerability assessment and security testing. The incumbent is responsible for identifying the security flaws and weaknesses in the systems that can be exploited to cause business risk, and provides crucial insights into the most pressing issues, suggesting how to prioritize security resources.

  • Experience with CVSS and how to apply
  • Acts as influencer of peers and management
  • Conducts Software Composition Analysis, SAST, DAST and Penetration testing
  • Post vulnerability assessment, work with various stakeholders to provide remediation to the identified risks and bring the same to closure
  • Conducts proof of concepts, vendor comparisons and recommend solutions in line with business requirements
  • Conducts risk assessments to evaluate the effectiveness of existing controls and determine the impact of proposed changes to business processes, applications, and systems
  • Conducts security research on threats and remediation methods
  • Conducts vulnerability assessment on the target IT Infrastructure, applications, and related information assets
  • Conducts walk-through of the assessment report to the stakeholders and help define remediation plan
  • Creates process improvement by identifying inefficiencies and solutions for process improvements
  • Develops and maintains a set of operational and forward-looking security metrics
  • Follows a standard methodology to identify and/or detect threats to the IT infrastructure, applications, and other information assets
  • Interacts with partners as needed to explain work product, security techniques, methodology and results to ensure appropriate business value
  • Oversees monitoring of security reports to identify issues and follow these issues to resolution
  • Performs web application security assessments (e.g., exploiting web app vulnerabilities such as SQL injection, cross-site scripting, parameter manipulation, session hijacking, etc.
  • Prepares system security reports by collecting, analyzing, and summarizing data and trends; presents reporting for management review
  • Promotes cross-department collaboration and communication to ensure appropriate processes, procedures and tools are installed, monitored, and effectively operating and alerting
  • Provides direction and act as an escalation point on projects and issues to other team members,
  • Provides technical security consulting support to address complex business and technology projects and requests


What You Bring :
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Bachelor's Degree or equivalent work experience: Computer Science or equivalent field.

5+ Years Experience in information security, governance, IT audit, or risk management.
5+ Years SAS experience.  
  • Must have experience with web application and code vulnerability scanning tools such as AppScan, Fortify, WebInspect, Burp Suite.
  • Acts as a subject matter expert (SME) while providing leadership, and guidance 
  • Security certifications a plus
  • Ethical hacking experience is a plus
  • Exposure to IT risk management is a plus.
  • Proven relationship building skills working with mid to senior level management and cross-functional teams; understands risks; additional focus on leadership; strong interpersonal skills; delivers precise, accurate results to meet commitments; mentors other team members.
  • Demonstrated presentation development; tailors message as needed; comfortable presenting to all levels; strong writing skills; demonstrates creativity in articulating messages that support recommendations.


It Would Be Nice For You To Have :
Established work history or equivalent demonstrated through a combination of work experience, training, military service, or education.

What Else You Need To Know :

The base pay range for this position is posted below and represents the annualized salary range. For hourly positions (non-exempt), the annual range is based on a 40-hour work week. The exact compensation may vary based on skills, experience, training, licensure and certifications and location.

Base Pay Range

Minimum:

$80,625.00 USD

Maximum:

$132,500.00 USD

Link to Santander Benefits:

Risk Culture:

We embrace a strong risk culture and all of our professionals at all levels are expected to take a proactive and responsible approach toward risk management.

EEO Statement:

At Santander, we value and respect differences in our workforce. We actively encourage everyone to apply. Santander is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, genetics, disability, age, veteran status or any other characteristic protected by law.

Working Conditions :

Frequent minimal physical effort such as sitting, standing and walking is required for this role. Depending on location, occasional moving and lifting light equipment and/or furniture may be required .

Employer Rights:

This job description does not list all of the job duties of the job. You may be asked by your supervisors or managers to perform other duties. You may be evaluated in part based upon your performance of the tasks listed in this job description. The employer has the right to revise this job description at any time. This job description is not a contract for employment and either you or the employer may terminate your employment at any time for any reason.

What To Do Next :

If this sounds like a role you are interested in, then please apply.

We are committed to providing an inclusive and accessible application process for all candidates. If you require any assistance or accommodation due to a disability or any other reason, please contact us at TAOps@santander.us to discuss your needs.

Primary Location:  Quincy, MA, 1 Enterprise Drive-Quincy-Corp

Other Locations:  Massachusetts-Quincy,Texas-Dallas,Florida-Coconut Grove

Organization:  Santander Consumer USA Inc.

Job Tags

Hourly pay, Contract work, Work experience placement,

Similar Jobs

Laurel Valley Golf Club

Human Resources Director Job at Laurel Valley Golf Club

 ...1965 PGA Championship Winner, Dave Marr ~1970 National Four-Ball Tournament Winners, Jack Nicklaus, and Arnold Palmer ~1975 Ryder Cup Winner, US Defeats Great Britain & Ireland (21-11)~1989 U.S. Senior Open Winner, Orville Moody ~2001 Marconi Pennsylvania... 

Odoo

Product Content Writer Job at Odoo

Product Content Writer / Technical Content Writer Location: This is a hybrid (3 days onsite, 2 days remote) role in Brisbane, CA Position Type: W-2 employee, fixed-term (5 months), full-time contract with potential for conversion based on business needs To get...

Contractor Growth Network

Junior SEO Specialist Job at Contractor Growth Network

 ...Junior SEO Specialist (Web Developer Experience Required) Company Overview: We're a digital marketing agency that helps high-end contractors (remodelers, landscapers, deck builders, etc.) grow their businesses through SEO, web design, and PPC. Our SEO team is led by... 

Studio Blu Dental

Dental Assistant Job at Studio Blu Dental

 ...Ready to Break Into Field of Dentistry? (No Experience Needed - Full Training Provided!) Do you want a meaningful career that actually fits your life? Join our modern dental practice where we're redefining work-life balance while making a real difference in people's lives... 

Aequor

Scientist I Job at Aequor

Position: Scientist I Location: Ridgefield, CT Duration: 12+ Months Description: Duties: Scientist I will execute pharmaceutical manufacturing and characterization studies to support drug product development activities and critical issues. Set up unit operation...