Full-Time

Lead – Saas Security Posture Management

Confirmed live in the last 24 hours

Prudential Financial

Prudential Financial

10,001+ employees

Provides insurance, investment, and retirement solutions

Fintech
Financial Services

Compensation Overview

$125k - $186.1kAnnually

+ Bonus

Senior, Expert

Newark, NJ, USA

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS

You match the following Prudential Financial's candidate preferences

Employers are more likely to interview you if you match these preferences:

Degree
Experience
Requirements
  • Bachelor of Computer Science or Software Engineering or experience in related fields
  • Experience with agile development methodologies and Test-Driven Development (TDD)
  • Knowledge of business concepts, tools and processes that are needed for making sound decisions in the context of the company's business
  • Ability to learn new skills and knowledge on an on-going basis through self-initiative and tackling challenges
  • Ability to coach others with some guidance and effectively leverage diverse ideas, experiences, thoughts, and perspectives to the benefit of the organization
  • Strong communication skills, with the ability to effectively communicate complex security concepts to technical and non-technical stakeholders
  • Excellent problem solving, communication, and collaboration skills
  • Ability to think creatively, innovate and challenge status quo processes or procedures
  • Advanced experience in several of the following: Experience using industry-standard vulnerability scanning and security tools (Qualys, Tenable, Wiz, NMAP, Cloud Native – AWS, Azure)
  • Experience with standard frameworks, such as OWASP, MITRE ATT&CK, and NIST
  • In-Depth knowledge of threat intelligence frameworks & methodology that will help aid the response process
  • Familiarity with defensive and monitoring technologies such intrusion prevention/detection systems (IPS/IDS), Web Application Firewalls (WAFs), security information and event management systems (SIEMs), firewalls, endpoint protection (EPP) and endpoint detection/response (EDR) tools, as well as user and entity behavior analytics (UEBA)
  • Experience with Vulnerability management lifecycle best practices and tools used for SaaS and cloud monitoring (Wiz, AppOmni, Cloud Native – AWS, Azure)
  • Proven experience in SaaS security, vulnerability management, or related roles
  • Proven experience leading security initiatives in SaaS environments, including designing and implementing security controls
  • Strong understanding of network security, encryption, identity and access management, and incident response
Responsibilities
  • Lead the SaaS and CSPM vulnerability and compliance security strategy, including the design and implementation of attack surface reduction and security configurations across all SaaS Platforms
  • Perform regular vulnerability and configuration assessments on SaaS applications to assess the effectiveness and support hardening efforts
  • Track, prioritize, and remediate vulnerability and compliance issues identified in the platform, ensuring timely remediation
  • Implement automated policies for continuous monitoring and preventive controls
  • Manage and oversee the SSPM vulnerability management program and partnering with other ISO organizations as the subject matter expert, including prioritization of systems and controls needed to address attack surface reduction
  • Automate and define workflows for lifecycle management of SSPM findings, working in partnership with the ASM orchestration team
  • Collaborate with the Attack Surface Management team, SaaS Security team and Third Party Governance to identify and address security risks associated with SaaS platforms and ensure that they are properly mitigated
  • Develop and maintain SaaS security policies, procedures, and best practices in alignment with industry standards and regulatory requirements and compliance
  • Support and assist security incident response efforts related to SaaS environments, working closely with the Incident Response team to support any investigations
  • Conduct regular risk assessments and support evaluation of the effectiveness of security controls and identify areas for improvement
  • Ensure SaaS platforms adhere to security compliance standards such as SOC 2, ISO 27001, GDPR, HIPAA, and others as required
  • Conduct regular compliance audits and assessments, working with auditors and internal teams to resolve gaps
  • Maintain documentation and artifacts for compliance reporting and certifications
  • Stay up-to-date with the latest security trends, threats, and technologies, and recommend innovative solutions to enhance the security posture of the organization
  • Advocate for and implement security best practices throughout the SaaS development lifecycle
  • Collaborate with external partners, vendors, and auditors to ensure compliance with security standards and regulations
  • Responsible for continuous monitoring of attack surface and ensuring remediation governance via escalation to business and risk advisors
  • Partner with support organizations to establish security standards, design requirements and build the roadmap to implement SaaS security controls to ensure the secure deployment of resources
  • Work to Operationalize new processes for SSPM continuous monitoring
  • Provide mentorship, training, and guidance for team members, working with and guiding more junior team members
  • Support managers and Prudential leadership on new initiatives and opportunities to grow our security practices
  • Ensures proper communication of the program’s results, opportunities, and deficiencies, as needed, to Prudential upper management
  • Leverage Security Operations and tool/process specific knowledge to resolve complex technical/process/people problems the team faces
  • Responsible for review and approval of remediation deferment requests, escalation where appropriate

Prudential Financial provides a variety of financial services, including insurance, investment management, and retirement planning. Their products help individuals and institutions achieve financial security and growth. Prudential offers life insurance, annuities, mutual funds, pension services, and asset management. The company generates revenue through premiums, fees, and investment income. What sets Prudential apart from its competitors is its focus on building long-term relationships with clients and offering comprehensive financial planning. The goal of Prudential is to ensure that clients are well-prepared for their financial futures.

Company Size

10,001+

Company Stage

IPO

Total Funding

N/A

Headquarters

Newark, New Jersey

Founded

1975

Simplify Jobs

Simplify's Take

What believers are saying

  • Prudential's investment in FIDx aligns with the digital transformation trend in financial services.
  • The appointment of Susan Somersille Johnson may boost global marketing and brand strategy.
  • Involvement in N.J. CEO Council enhances corporate social responsibility and community engagement.

What critics are saying

  • Increased competition in Asia may challenge Prudential's market penetration and profitability.
  • Over-reliance on technology platforms like FIDx could expose Prudential to operational risks.
  • Commitment to job creation and procurement spending may strain resources and impact finances.

What makes Prudential Financial unique

  • Prudential Financial offers a comprehensive range of financial services globally.
  • The company focuses on long-term relationships and comprehensive financial planning.
  • Prudential leverages digital transformation to enhance its service offerings.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Unlimited Paid Time Off

401(k) Company Match

Company Equity

Wellness Program

Work/Life Resources

Education Benefit

Employee Stock Purchase Plan

Company News

Insurance Asia News
Jun 6th, 2024
Prudential Financial to acquire 10% stake in Qianhai Re

The key resource for accurate, insightful and reliable coverage of Asia’s insurance and reinsurance market.

Finsmes
Nov 18th, 2022
Fidx Raises Growth Funding

FIDx, a Berwyn, PA-based provider of an integrated technology platform that connects financial professionals to leading insurance companies, raised an undisclosed amount in growth funding. The round was led by Prudential Financial, and Global Atlantic, with participation from Envestnet

Andela
Jul 1st, 2021
Announcing Andela's $100M Series D Round of Funding - Andela

We started Andela to chip away at a simple, though seemingly insurmountable, problem. The world needs millions more developers than we currently have.

ROI-NJ
Dec 1st, 2020
7 from N.J. among Working Mother’s ‘Top Companies for Executive Women,’ including 2 in Top 10

Working Mother has announced it latest “Top Companies for Executive Women,” and seven New Jersey businesses made the list, including two in the Top 10. The magazine called this year’s list its “2020+” list, as it changed the timing from prior years. The list, which had accepted applications in March of one year and was […]

InvestmentNews
Nov 19th, 2020
401(k) defaults linked with lower CARES Act withdrawals

An academic paper this week found that early withdrawal requests increased most among savers who build their own portfolios — not those with 401(k) defaults.