Senior Application Security Analyst
Posted 3ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Ensuring application security and reducing risks across Genesys Cloud infrastructure through validation and triage. Collaborating with product, engineering, and security teams to execute comprehensive security strategies.
Responsibilities:
- Ensuring security at scale requires more than identifying vulnerabilities, it requires disciplined validation, prioritization, and execution
- This senior-level role directly influences how risk is understood and reduced across Genesys Cloud by owning the validation and triage lifecycle and shaping how security findings translate into meaningful engineering action
- Your work will ensure that the highest-impact risks are surfaced, understood, and resolved efficiently across a complex, multi-tenant SaaS platform
- Operate with strong autonomy, partnering across product, engineering, security, and external researchers to validate vulnerabilities, eliminate noise, and drive remediation outcomes
- Influence triage standards, improve validation processes, and help scale security operations through better tooling, documentation, and AI-assisted workflows
Requirements:
- 5 or more years of experience in application security, penetration testing, vulnerability management, product security, DevSecOps, or related technical security roles
- Proven hands-on experience validating web application and API security findings beyond automated scanner outputs
- Strong understanding of web and API vulnerabilities including authorization flaws, authentication weaknesses, injection risks, sensitive data exposure, and business logic issues
- Ability to analyze HTTP requests and responses, work with JSON APIs, and test authenticated workflows
- Proficiency with tools such as Burp Suite, Postman, curl, browser developer tools, and scripting for validation and reproduction
- Demonstrated ability to distinguish real vulnerabilities from false positives, duplicates, theoretical findings, and acceptable risk patterns
- Strong experience writing clear, structured, and actionable security tickets with evidence and remediation guidance
- Ability to work independently, manage a queue of findings, and deliver consistent outcomes with minimal supervision
- Strong communication skills to clearly explain security risks and remediation guidance to engineering teams
- Ability to handle sensitive vulnerability, customer, and product information with high discretion
Benefits:
- Great benefits and perks like larger tech companies
- Independence to make a larger impact on the company and take ownership of their work


















