Enable job alerts via email!
A leading software intelligence firm in Maidenhead seeks a Lead Information Security Analyst to enhance security for Salesforce and other enterprise systems. This role focuses on risk management frameworks, security auditing, and collaborating with various teams to ensure compliance and security standards across the organization. The ideal candidate should have deep expertise in application security and proven skills in securing ERP applications.
We're looking for a Lead Information Security Analyst with deep expertise in Salesforce (SFDC) security to help safeguard our enterprise systems and support secure digital transformation.
Dynatrace exists to make the world’s software work perfectly. Our unified software intelligence platform combines broad and deep observability and continuous runtime application security with the most advanced AIOps to provide answers and intelligent automation from data at an enormous scale. This enables innovators to modernize and automate cloud operations, deliver software faster and more securely, and ensure flawless digital experiences. That is why the world’s largest organizations trust Dynatrace to accelerate digital transformation.
We're an equal opportunity employer and embrace all applicants. Dynatrace wants YOU—your diverse background, talents, values, ideas, and expertise. These qualities are what make our global team stronger and more seasoned. We're fueled by the diversity of our talented employees.
• Represent the Corporate Security team in the selection and implementation of large ERP type packages. Most specifically SFDC but others as well.
• Train and coordinate with systems application owners, data custodians, technical leads, and business impact analysts on security standards, guidelines, and vendor risk management of the systems within the organization and sub organizations.
• Build relationships with Dynatrace Business Systems application teams.
• Create, conduct, and report on security audits and assessments for all systems applications (custom, SaaS and 3rd Party applications).
• Provide guidance and support over the teams and ensure they can meet risk management requirements and industry control frameworks for their systems/applications.
• Contribute to the development and implementation of security policies, procedures, and controls.
• Serve as a bridge between the Dynatrace business units and the Security Risk Management organization to promote and facilitate the adaptation and involvement with the Dynatrace Risk Management Framework
Technical skills:
Risk Management Skills:
• Identifying potential security vulnerabilities, risks and their potential impact to the organization
• Risk analysis and mitigation of potential vulnerabilities
• Applying risk management frameworks and methodologies
• Performing data classification
• Conducting security risk reviews
• Control framework implementation, such as NIST 800-53, ISO 27001, Fed Ramp and NIST CSF
• Knowledge of penetration tests on web applications and tools.
• Maintaining systems/applications records status for reporting and alerts
• Providing advice and guidance in implementing IT security policies and procedures to reduce risk.
• Stay current with emerging threats, vulnerabilities, and security technologies.