Security Analyst – Risk, Applications & Infrastructure
- Heredia
- Product Development
- Permanent
- Hybrid
- Full Time
Experian Employer Services, Verifications, and Housing (EVH) is seeking a motivated professional to join its product information security team as a Security Analyst focused on managing risks and vulnerabilities for both applications and infrastructure within a cloud-first environment. The Security Analyst will play a critical role in safeguarding the integrity, resilience, and compliance of Experian’s IT systems, ensuring alignment with regulatory and security frameworks.
This role will integrate security practices across product, infrastructure and application layers, assessing vulnerabilities and implementing best practices to mitigate risks. Additionally, this position will support security audits and compliance efforts by evaluating systems against established control frameworks, identifying deficiencies, and driving remediation efforts.
You will collaborate closely with our partner teams as well as product, applications, and platform teams to implement security controls, audit compliance, and enhance security governance. The ideal candidate has experience in security controls, IT audits, risk management, vulnerability management, and cloud security, with the ability to work collaboratively across multiple teams.
Key Responsibilities
- Risk Management & Governance:
- Identify, assess, and mitigate security risks related to IT applications and infrastructure.
- Develop and implement risk management frameworks to ensure continuous monitoring and improvement of security postures.
- Work with stakeholders to define and implement security policies and guidelines aligned with risk tolerance.
- Facilitate risk assessments and security reviews across business units and IT environments.
- Compliance & Audit Functions:
- Evaluate IT applications and infrastructure against security control frameworks (e.g., NIST, ISO 27001, CIS, SOC 2).
- Conduct internal security audits to assess compliance with corporate security policies and regulatory requirements.
- Identify gaps in security controls, document findings, and support remediation planning.
- Maintain documentation and evidence for security audits and regulatory assessments.
- Vulnerability Management:
- Collaborate with teams to analyze, categorize, and prioritize vulnerabilities based on severity, potential impact, and likelihood of exploitation.
- Track vulnerability remediation efforts and ensure timely patching and risk mitigation.
- Conduct regular security assessments of applications, APIs, cloud infrastructure.
- Security Operations & Monitoring:
- Monitor security tools and analyze logs for signs of suspicious activity, vulnerabilities, or policy violations.
- Assist with security incident response, forensic analysis, and remediation plans.
- Engage with internal and external stakeholders, including Experian’s Cyber Fusion team, to enhance security posture.
- Security Best Practices & Governance:
- Act as a Security Champion, training and mentoring teams on security best practices, secure coding, and compliance.
- Assist in tracking and improving security control effectiveness across business units.
- Promote a culture of security awareness through training and engagement programs.
- Security Technology & Automation:
- Support the integration of security tools into CI/CD pipelines to enable automated security testing.
- Utilize security tooling (SAST/SCA/DAST/CSPM/DSPM) to evaluate and improve security posture.
- Enhance API security practices and application security testing methodologies.
- Collaboration & Reporting:
- Work cross-functionally to drive security improvements.
- Generate reports for management on vulnerability status, security incidents, and audit findings.
- Ensure alignment of security initiatives with business objectives and risk tolerance.
Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for. Also, for the last five years we've been named in the 100 "World's Most Innovative Companies" by Forbes Magazine. With a focus on our employees, we have been certified for the third time as Great Place To Work (GPTW). Experian Consumer Information Services is redefining the way our clients do business within the customer credit lifecycle. Fueled by the best data and technology we help businesses make smarter decisions, identify consumers, make decisions on loans, market to prospects and collect.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent experience).
- Industry certifications such as CISSP, CISM, CEH, CCSP, or CISA are a plus.
- Understanding of cloud platforms (AWS, Azure) and cloud security best practices.
- Experience with vulnerability scanning and assessment tools for applications and infrastructure.
- Familiarity with security frameworks and compliance standards (NIST, ISO 27001, SOC 2, CIS Benchmarks).
- Proficiency in security testing, penetration testing, and vulnerability analysis.
- Knowledge of security monitoring tools, intrusion detection systems, and SIEM solutions.
- Ability to assess security risks, prioritize vulnerabilities, and recommend remediations.
- Experience conducting security audits and control evaluations.
- Strong problem-solving skills and ability to work collaboratively in cross-functional teams.
- Effective written and verbal communication skills for both technical and non-technical audiences.
This is a permanent remote home-based role in Costa Rica. No relocation available.
Our benefits include: Medical, life and dental insurance, Asociacion Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is a critical part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
#LI-ML2 #LI-Remote
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Information Technology & Systems
Brand
Serasa Experian
Remote working available
Yes
Description
Estamos em busca de uma pessoa Engenheira de Machine Learning para integrar a nossa equipe no Data Platform & MLOps. Nossa missão é desenvolver ferramentas e processos que impulsionem a inovação e ot
Reference
5736b9d8-2fe2-4f03-8c33-c687efa5491e
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
Yes
Description
SummaryYou will collaborate with Finance teams across all North American businesses, supporting both department-specific analyses and region-wide projects aimed at enhancing planning and reporting cap
Reference
5a3edf87-6aa8-46c4-bf0a-8443f16521c1
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Marketing and Communications
Brand
Serasa Experian
Remote working available
No
Description
Gerir e melhorar os canais de comunicação internaProduzir vídeos institucionais e materiais audiovisuaisOrientar as equipes de comunicaçãoMonitorar as iniciativas de comunicação internaPromover ações
Reference
2989c8b2-b9b9-4e0e-a599-dee4fdffa390
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Entry Level
Employment
Permanent
Location
Heredia
Role Type
Home
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
You will report to the Talent Management Director and join our D2C business. You will also have a technical rotation manager, who will be one of the following: Director of Analytics, Director of Servi
Reference
c706e986-06a1-4138-9543-10d001780aad
Expiry Date
01/01/0001
Salary
Location
Blumenau, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Blumenau
Role Type
Hybrid
Schedule
Full Time
Department
Product Development
Brand
Serasa Experian
Remote working available
No
Description
O dia-a-dia do Analista engloba não apenas o desenvolvimento de soluções de tecnologia mas também a busca por oportunidades de melhorias de performance da plataforma LNO e suas integrações, além do ap
Reference
739ddb4e-8c21-4ed9-ad8c-be37a10bd752
Expiry Date
01/01/0001
Salary
Location
Texas, United States
Experience Level
Not Applicable
Employment
Permanent
Location
Texas
Role Type
Home
Salary Range
$87,248 - $151,230
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
Yes
Description
Job descriptionExperian Cyber Fusion Centre (CFC) is looking for a Cyber Threat Intelligence (CTl) All-Source Analyst - Cybercrime Analysis as a part of the All-Source Analyst Team (ASAT), to contribu
Reference
6df2830f-7709-4137-88e9-3bd7541e4602
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
Yes
Description
SummaryThe Enterprise Master Data Management team is responsible for governing, coordinating and maintaining critical master data and other data related to customers, products, vendors, chart of accou
Reference
792d8334-dc33-4a7d-9483-ecf5268cf30c
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
Job descriptionCollaborate with teams to support operational analysis and deliver data insights.Contribute to key operations by establishing and reviewing KPIs, SLAs, thresholds, and escalation proced
Reference
552f0a64-9e6e-46f6-b501-1e5b5c673b8a
Expiry Date
01/01/0001
Salary
Location
London, England
Experience Level
Not Applicable
Employment
Permanent
Location
London
Role Type
Hybrid
Schedule
Full Time
Department
Marketing and Communications
Brand
Experian
Remote working available
No
Description
We're looking for a passionate and SEO Manager to join our dynamic marketing team. Reporting to the Head of Brand and Acquisition, you'll help ensure our brand stands out in search results, educating
Reference
9fd26cec-d0da-4140-9b80-46077067faaa
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Home
Schedule
Full Time
Department
Legal & Compliance
Brand
Experian
Remote working available
Yes
Description
Would you like to grow your career by working for a dynamic technology and data organization that is a technology organization developing products for the B2B and Consumer marketplaces? How about a co
Reference
60abc535-7850-46c3-81fa-3839a2c83b97
Expiry Date
01/01/0001
Salary
Location
London, England
Experience Level
Mid-Senior Level
Employment
Permanent
Location
London
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Experian
Remote working available
No
Description
We are looking for a dynamic and experienced Product Director - Fraud to lead our UK and Ireland fraud product management team. You will manage our fraud products and ensuring they meet the highest in
Reference
0e198bab-61b9-48ae-afc0-6358b3202ac3
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Data Management
Brand
Serasa Experian
Remote working available
No
Description
A Serasa está em busca de uma pessoa Engenheira de soluções para implementação da personalização do app e site baseada em IA. O objetivo é personalizar a jornada do usuário, oferecendo a próxima melho
Reference
5cd44fa9-3804-4385-832b-ee2fd9a3d532
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Finance
Brand
Experian
Remote working available
Yes
Description
SummaryAs a Billing Business Analyst - Integrations, you will provide support to the Global Finance Services (GFS) NA Billing group by defining requirements while also bringing in your vast knowledge
Reference
f7216684-8bf0-4989-be01-7c88c1f98a9b
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Serasa Experian
Remote working available
No
Description
Descrição do trabalhoO papel da pessoa Analista de Desenvolvimento de Negócios é fazer gestão de Parcerias estratégicas da Serasa, atuando com produtos de concessão e recuperação de crédito, principal
Reference
e8b692ae-2e2f-40e4-b6ed-d7080b47c368
Expiry Date
01/01/0001
Salary
Location
Sandton, South Africa
Experience Level
Mid-Senior Level
Employment
Permanent
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
Yes
Description
This position is responsible for managing a team of Data Analysts. The core duty would be to implement operational plans that meets the organization’s quality and service standards for all Data projec
Reference
c47e4cf6-3c91-4093-af85-367bbc442b53
Expiry Date
01/01/0001
Salary
Location
Southbank, Australia
Experience Level
Not Applicable
Employment
Permanent
Role Type
Hybrid
Schedule
Full Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
We are looking for a Technical Consultant to join Experian's Decision Analytics business. The Technical Consultant meaningfully contributes in implementing solutions that deliver business benefits for
Reference
d8d4071e-35a7-47f8-affa-77a58c352134
Expiry Date
01/01/0001