Job Search and Career Advice Platform

Enable job alerts via email!

Remote Attack Surface Reduction Analyst (Security & Cloud)

NatWest Group

Remote

GBP 50,000 - 70,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A major banking institution is seeking an Attack Surface Reduction Analyst to support the secure operation of services protecting stakeholders. This role involves a blend of strategic collaboration with teams, risk management, and proactive security measures using tools like Qualys. Candidates should have strong understanding across various cloud platforms and software security practices, particularly with the ability to communicate vulnerabilities and remediation effectively. The position emphasizes remote-first working arrangements.

Qualifications

  • Strong understanding of vulnerability discovery across diverse environments.
  • Ability to evaluate and prioritize vulnerabilities based on risk and business impact.
  • Familiarity with common code-level flaws and the OWASP API Security Top 10.

Responsibilities

  • Support identification of risks and contribute to risk management strategies.
  • Collaborate with feature teams and participate in Agile methodologies.
  • Produce clear reports and dashboards that highlight vulnerability status.

Skills

Knowledge of security subject areas
Experience in risk management frameworks
Vulnerability discovery
Cloud platforms (AWS, Azure, GCP)
Scanning tools (Qualys)
Container security (Docker, Kubernetes)
CI/CD pipeline understanding
Strong communication skills
Stakeholder management skills
Secure coding practices

Tools

Qualys
SAST
DAST
API scanning tools
Job description
A major banking institution is seeking an Attack Surface Reduction Analyst to support the secure operation of services protecting stakeholders. This role involves a blend of strategic collaboration with teams, risk management, and proactive security measures using tools like Qualys. Candidates should have strong understanding across various cloud platforms and software security practices, particularly with the ability to communicate vulnerabilities and remediation effectively. The position emphasizes remote-first working arrangements.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.