Logo
Berkley Technology Services

Vulnerability Management Application Security Lead

Berkley Technology Services, Urbandale, Iowa, United States, 50322

Save Job

Overview

Berkley Technology Services (BTS) is the dynamic technology solution for W. R. Berkley Corporation, a Fortune 500 Commercial Lines Insurance Company. BTS provides innovative and customer-focused IT solutions to WRBC’s 60+ operating units across the globe. BTS acts as consultants to our customers and Operating Units, addressing challenges and proactively planning for the “What’s Next” in the industry. BTS emphasizes collaboration, growth, and innovation. Location: Des Moines, IA (on-site) Responsibilities

Vulnerability Management Application Security Lead

works within Berkley’s Information Security team, coordinating with stakeholders to address remediation of vulnerability scanning and assessment. Maintain and improve the vulnerability management program, including documents, procedures, reporting, and stakeholder communications. Provide guidance to stakeholders on vulnerability management, including goals and roadmaps, remediation tracking, and reporting. Analyze scan/assessment results and present value-based remediation recommendations tailored to security maturity and stakeholder needs. Use and analyze large datasets with Microsoft tools and other business tools to report enterprise-level vulnerability data. Key Responsibilities

Lead Security Initiatives: spearhead and enhance application security efforts, including penetration testing and static code analysis. Innovate and Optimize: evaluate and implement improvements to security tools and explore new technologies to strengthen security posture. Code Analysis and Remediation: lead projects to analyze source code, identify vulnerabilities, and implement remediation strategies. Compliance Management: oversee the enterprise-wide compliance scanning process to quickly identify and address risks. Stakeholder Communication: regularly update and secure buy-in from global engineering, business units, security management, and senior leadership on project status. Qualifications

Experience: Minimum of 5+ years in Information Security with expertise in security compliance, penetration testing, vulnerability management, and static code analysis. Leadership: Prior experience in project leadership or as a team lead is preferred. Education: Bachelor’s Degree in Computer Science, Information Technology, Information Systems, or a related discipline; equivalent experience considered. Technical Proficiency: Skilled in common penetration testing tools, web application scanning tools, and static code analysis tools (e.g., Veracode, Fortify, Checkmarx). Stakeholder Engagement: Proven ability to engage and secure buy-in from business, technical, and executive stakeholders. The Company is an equal employment opportunity employer.

#J-18808-Ljbffr