CityRochester
StateMN
RemoteYES
DepartmentInformation Security
Why Mayo Clinic
Mayo Clinic is top-ranked in more specialties than any other care provider according to U.S. News & World Report. As we work together to put the needs of the patient first, we are also dedicated to our employees, investing in competitive compensation and
comprehensive benefit plans – to take care of you and your family, now and in the future. And with continuing education and advancement opportunities at every turn, you can build a long, successful career with Mayo Clinic.
Benefits Highlights- Medical: Multiple plan options.
- Dental: Delta Dental or reimbursement account for flexible coverage.
- Vision: Affordable plan with national network.
- Pre-Tax Savings: HSA and FSAs for eligible expenses.
- Retirement: Competitive retirement package to secure your future.
ResponsibilitiesThe Senior Information Security Analyst – Application Protection will support secure software development lifecycle initiatives and operations. Examples of such activities include the following
- Partner with Information Technology teams to ensure secure coding practices and compliance with organizational policies and standards throughout the development lifecycle.
- Conduct and manage vulnerability scans of applications; perform data analysis and reporting to support ongoing risk reduction.
- Implement and maintain integrations between internal and external tools to automate workflows, enhance reporting, and strengthen development security processes.
- Coordinate exception management workflows related to vulnerability and application protection policies to ensure effective remediation and accountability.
- Contribute to the design and implementation of a robust, repeatable, and measurable secure development lifecycle process in collaboration with IT and Security stakeholders.
- Support Application Security Posture Management (ASPM) through data analysis and reporting to improve application security visibility.
- Support the creation and continuous improvement of governance, metrics, and documentation that promote secure development best practices.
Mayo Clinic will not sponsor or transfer visas for this position including F1 OPT STEM.
QualificationsMaster's degree in applicable field and 4 years' experience, or Bachelor’s degree in applicable field and 5 years’ experience.
Pertinent fields of study and experience includes (but is not limited to) the following: information security, operational analysis,
process change, electronic systems implementation, leadership, systems analysis and project management with broad-based
key enterprise initiatives.Must have one of the following certifications (or equivalent) at time of hire. In lieu of
certification at time of hire, candidate must pass the exam within three years and complete the certification process
once years of service requirements of the certifying body have been met.
• CISSP
• CISM
• HCISPP
• GSEC
• OSCP
Exemption StatusExempt
Compensation Detail$113,776.00 - $164,985.60 / year
Benefits EligibleYes
ScheduleFull Time
Hours/Pay Period80
Schedule DetailsMonday - Friday, 8am - 5pm
Weekend ScheduleAs needed
International AssignmentNo
Site Description
Just as our reputation has spread beyond our Minnesota roots, so have our locations. Today, our employees are located at our three major campuses in Phoenix/Scottsdale, Arizona, Jacksonville, Florida, Rochester, Minnesota, and at Mayo Clinic Health System campuses throughout Midwestern communities, and at our international locations. Each Mayo Clinic location is a special place where our employees thrive in both their work and personal lives.
Learn more about what each unique Mayo Clinic campus has to offer, and where your best fit is.Equal Opportunity
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, protected veteran status or disability status. Learn more about the
"EOE is the Law". Mayo Clinic participates in
E-Verify and may provide the Social Security Administration and, if necessary, the Department of Homeland Security with information from each new employee's Form I-9 to confirm work authorization.
RecruiterTed Keefe