Senior Information Security Administrator

Public Storage

Frisco (TX)

Hybrid

USD 120,000 - 170,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Public Storage is seeking a Senior Information Security Administrator to strengthen the security of enterprise apps, cloud services, and APIs. You will partner with engineering, DevOps, and architecture teams to embed secure design and remediation throughout the SDLC and lead secure coding practices across multiple platforms.

The role requires hands-on security expertise, strong development background, and the ability to translate findings into prioritized actions.

Qualifications

  • Bachelor’s degree in information security, CS, software engineering, IT, or related field; or equivalent.
  • 5–8+ years of cybersecurity, app security, DevSecOps, or related roles.
  • Strong coding background in Java, C#, JavaScript/TypeScript, Python, Go, or similar.
  • Hands-on secure code reviews, risk assessments, and remediation guidance.
  • Knowledge of web apps, API security, encryption, and secure data handling.
  • Experience with SAST, DAST, SCA, container scanning, IaC, or similar tools.
  • Cloud security fundamentals across Azure, AWS, or GCP, IAM and logging.
  • Familiarity with CI/CD pipelines, DevSecOps automation.
  • Ability to communicate technical findings clearly to diverse stakeholders.
  • Strong analytical, troubleshooting, and documentation skills.

Responsibilities

  • Lead or support application security assessments for diverse app types.
  • Perform secure code reviews and provide actionable remediation guidance.
  • Partner with developers to embed secure coding in the SDLC and threat modeling.
  • Operate and improve SAST/DAST/SCA and container/IaC security tooling.
  • Review data flows, cloud patterns, and designs to spot security risks.
  • Translate findings into risk-based remediation plans for teams.
  • Secure application configurations, including encryption and auth flows.
  • Support cloud security controls across Azure, AWS, GCP.
  • Advise on DevSecOps practices, CI/CD security, and automation.
  • Coordinate with security ops on incidents and remediation validation.
  • Support vulnerability management with evidence and controls.
  • Develop and maintain secure coding standards and checklists.
  • Assist with audit/compliance by providing secure development evidence.
  • Mentor teams on application security concepts and remediation techniques.

Skills

Application Security
DevSecOps
Cloud Security
Secure Code Review
Threat Modeling
CI/CD Security
Vulnerability Validation
SAST
Communication
Leadership

Education

Bachelor’s degree in CS/InfoSec

Tools

SAST
DAST
SCA
Container Scanning
IaC Scanning

Job description

Since opening our first self-storage facility in 1972, Public Storage has grown to become the largest owner and operator of self-storage facilities in the world. With thousands of locations across the U.S. and Europe, and more than 170 million net rentable square feet of real estate, we're also one of the largest landlords.

We've been recognized as A Great Place to Work by the Great Place to Work Institute. And, our employees have also voted us as having Best Career Growth, ranked us in the Top 5% for Work Culture, and in the Top 10% for Diversity and Inclusion.

We're a member of the S&P 500 and FT Global 500. Our common and preferred stocks trade on the New York Stock Exchange.

Public Storage is the nation’s leading self-storage provider, recognized for its iconic orange doors and commitment to delivering simple, reliable solutions to millions of customers across the country. We are expanding our creative team to enhance our consistent and engaging visual brand presence.

Job Description

The Senior Information Security Administrator is responsible for strengthening the security of enterprise applications, cloud services, APIs, and development practices. This role partners closely with software engineering, DevOps, architecture, infrastructure, and business teams to identify and remediate application security risks, perform secure code reviews, guide secure design decisions, and embed security controls into the software development lifecycle. The ideal candidate combines hands‑on application security experience, a strong development background, cloud security knowledge, and practical security operations expertise to reduce risk across the enterprise.

Key Responsibilities
  • Lead or support application security assessments for internally developed, third‑party, SaaS, cloud‑hosted, web, mobile, and API‑based applications.
  • Perform secure code reviews and provide actionable remediation guidance for common application security issues, including authentication, authorization, input validation, secrets exposure, insecure dependencies, API abuse, logging gaps, and insecure configuration.
  • Partner with development teams to implement secure coding practices throughout the SDLC, including threat modeling, design reviews, peer review standards, and release readiness checks.
  • Operate and improve application security tooling such as SAST, DAST, SCA, container scanning, IaC scanning, secrets detection, API security tools, and CI/CD security controls.
  • Review application architecture, data flows, cloud deployment patterns, and integration designs to identify security risks before production deployment.
  • Translate vulnerability findings into prioritized, risk‑based remediation plans and work with application owners, developers, DevOps, and product teams to drive closure.
  • Secure application‑side configurations, including encryption, session management, authentication flows, authorization models, logging, error handling, secure headers, CORS, API gateways, and secrets management.
  • Support cloud security control design and validation across platforms such as Azure, AWS, or GCP, including IAM, network segmentation, workload protection, logging, storage security, key management, and policy‑as‑code.
  • Advise on DevSecOps practices, including secure CI/CD pipelines, branch protection, dependency governance, artifact signing, container hardening, and environment separation.
  • Coordinate with security operations teams on application‑related incidents, suspicious activity, exploit attempts, and remediation validation.
  • Support vulnerability management by validating exploitability, reducing false positives, documenting compensating controls, and tracking remediation evidence.
  • Develop and maintain application security standards, secure coding guidelines, design patterns, checklists, procedures, and technical documentation.
  • Support audit and compliance activities by providing evidence for secure development, change management, access controls, logging, vulnerability remediation, and cloud security controls.
  • Mentor developers, security analysts, and IT teams on application security concepts and practical remediation techniques.
Qualifications

Required Qualifications

  • Bachelor’s degree in information security, Computer Science, Software Engineering, Information Technology, or related field; or equivalent combination of education and experience.
  • 5-8+ years of experience in cybersecurity, application security, secure software development, DevSecOps, cloud security, or related technology roles.
  • Strong development background with practical experience reading, reviewing, or writing code in languages such as Java, C#, JavaScript/TypeScript, Python, Go, or similar.
  • Hands‑on experience performing secure code reviews, application risk assessments, vulnerability validation, and remediation guidance.
  • Working knowledge of web applications, API, authentication, authorization, encryption, session management, and secure data handling concepts.
  • Experience with application security testing tools such as SAST, DAST, SCA, container scanning, secrets scanning, IaC scanning, or similar platforms.
  • Understanding of cloud security fundamentals across Azure, AWS, or GCP, including IAM, logging, workload security, encryption, networking, and secure configuration.
  • Familiarity with CI/CD pipelines, repositories, build processes, release controls, and DevSecOps automation.
  • Ability to communicate technical findings clearly to developers, engineers, leadership, auditors, and non‑technical stakeholders.
  • Strong analytical, troubleshooting, documentation, and prioritization skills.

Preferred Qualifications

  • Professional certifications such as CSSLP, CISSP, GWAPT, GWEB, CASE, Security+, CISM, Azure Security Engineer, AWS Security Specialty, Google Professional Cloud Security Engineer, or similar.
  • Experience with OWASP risks, secure coding standards, threat modeling, API security, mobile security, cloud‑native security, Kubernetes/container security, or software supply chain security.
  • Experience supporting compliance frameworks such as SOX, PCI DSS, NIST, ISO 27001, SOC 2, or internal secure SDLC standards.
  • Experience with developer enablement, security champions programs, secure coding training, and application security metrics.
  • Familiarity with identity federation, OAuth, OIDC, SAML, JWT, MFA, PAM, secrets vaulting, and key management patterns.
  • Experience in enterprise, multi‑site, regulated, or high‑volume application environments.
Core Competencies
  • Application Security
  • Development and DevSecOps
  • Cloud and Enterprise Risk
  • Secure code review
  • Secure SDLC practices
  • Cloud security control design
  • Threat modeling and design review
  • CI/CD pipeline security
  • Risk-based prioritization
  • API and web application security
  • Developer partnership
  • Compliance evidence support
  • Vulnerability validation
  • Automation mindset
  • Technical leadership
Additional Information
Workplace
  • One of our values pillars is to work as One Team and we believe that there is no replacement for in‑person collaboration but understand the value of some flexibility. Public Storage teammates are expected to work in the office five days each week with the option to take up to three flexible remote days per month.

Public Storage is an equal opportunity employer and embraces diversity. We do not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or any other protected status.

Sponsorship for Work Authorization is not available for this posting. Candidates must be authorized to work in the U.S. without restrictions or requiring sponsorship now or in the future. We do not provide training plans or support for F-1 OPT, STEM OPT extensions, or future visa sponsorship.

ll your information will be kept confidential according to EEO guidelines.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Specialist
Cyber Security Specialist

Public Storage • Frisco (TX)

On-site
USD 90,000 - 130,000
Director of Corporate Technology Operations and Strategic Programs
Director of Corporate Technology Operations and Strategic Programs

Public Storage • Burbank (CA)

Hybrid
USD 230,000 - 240,000
Accounts Payable Clerk
Accounts Payable Clerk

Public Storage • Frisco (TX)

On-site
USD 36,000 - 48,000
In-office with some remote days
Equal opportunity employer
Senior Application Security Engineer
Senior Application Security Engineer

Public Storage • Frisco (TX)

Hybrid
USD 120,000 - 170,000
Network Engineer
Network Engineer

Public Storage • Frisco (TX)

Hybrid
USD 90,000 - 130,000
Hybrid work arrangement
Career growth opportunities
Senior Counsel, Litigation & Operations
Senior Counsel, Litigation & Operations

Public Storage • Frisco (TX)

Hybrid
USD 170,000 - 260,000
Senior Financial Analyst
Senior Financial Analyst

Public Storage • Frisco (TX)

Hybrid
USD 90,000 - 130,000
Fire Systems Program Manager
Fire Systems Program Manager

Public Storage • Frisco (TX)

Hybrid
USD 120,000 - 160,000
Regional Loss Prevention Manager
Regional Loss Prevention Manager

Public Storage • Houston (TX)

On-site
USD 90,000 - 120,000
Senior Cloud Engineer
Senior Cloud Engineer

Public Storage • Plano (TX)

Hybrid
USD 100,000 - 130,000