Security Analyst – Risk, Applications & Infrastructure
- Heredia
- Product Development
- Permanent
- Hybrid
- Full Time
This vacancy has now expired. Please see similar roles below...
Experian Employer Services, Verifications, and Housing (EVH) is seeking a motivated professional to join its product information security team as a Security Analyst focused on managing risks and vulnerabilities for both applications and infrastructure within a cloud-first environment. The Security Analyst will play a critical role in safeguarding the integrity, resilience, and compliance of Experian’s IT systems, ensuring alignment with regulatory and security frameworks.
This role will integrate security practices across product, infrastructure and application layers, assessing vulnerabilities and implementing best practices to mitigate risks. Additionally, this position will support security audits and compliance efforts by evaluating systems against established control frameworks, identifying deficiencies, and driving remediation efforts.
You will collaborate closely with our partner teams as well as product, applications, and platform teams to implement security controls, audit compliance, and enhance security governance. The ideal candidate has experience in security controls, IT audits, risk management, vulnerability management, and cloud security, with the ability to work collaboratively across multiple teams.
Key Responsibilities
- Risk Management & Governance:
- Identify, assess, and mitigate security risks related to IT applications and infrastructure.
- Develop and implement risk management frameworks to ensure continuous monitoring and improvement of security postures.
- Work with stakeholders to define and implement security policies and guidelines aligned with risk tolerance.
- Facilitate risk assessments and security reviews across business units and IT environments.
- Compliance & Audit Functions:
- Evaluate IT applications and infrastructure against security control frameworks (e.g., NIST, ISO 27001, CIS, SOC 2).
- Conduct internal security audits to assess compliance with corporate security policies and regulatory requirements.
- Identify gaps in security controls, document findings, and support remediation planning.
- Maintain documentation and evidence for security audits and regulatory assessments.
- Vulnerability Management:
- Collaborate with teams to analyze, categorize, and prioritize vulnerabilities based on severity, potential impact, and likelihood of exploitation.
- Track vulnerability remediation efforts and ensure timely patching and risk mitigation.
- Conduct regular security assessments of applications, APIs, cloud infrastructure.
- Security Operations & Monitoring:
- Monitor security tools and analyze logs for signs of suspicious activity, vulnerabilities, or policy violations.
- Assist with security incident response, forensic analysis, and remediation plans.
- Engage with internal and external stakeholders, including Experian’s Cyber Fusion team, to enhance security posture.
- Security Best Practices & Governance:
- Act as a Security Champion, training and mentoring teams on security best practices, secure coding, and compliance.
- Assist in tracking and improving security control effectiveness across business units.
- Promote a culture of security awareness through training and engagement programs.
- Security Technology & Automation:
- Support the integration of security tools into CI/CD pipelines to enable automated security testing.
- Utilize security tooling (SAST/SCA/DAST/CSPM/DSPM) to evaluate and improve security posture.
- Enhance API security practices and application security testing methodologies.
- Collaboration & Reporting:
- Work cross-functionally to drive security improvements.
- Generate reports for management on vulnerability status, security incidents, and audit findings.
- Ensure alignment of security initiatives with business objectives and risk tolerance.
Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society. We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for. Also, for the last five years we've been named in the 100 "World's Most Innovative Companies" by Forbes Magazine. With a focus on our employees, we have been certified for the third time as Great Place To Work (GPTW). Experian Consumer Information Services is redefining the way our clients do business within the customer credit lifecycle. Fueled by the best data and technology we help businesses make smarter decisions, identify consumers, make decisions on loans, market to prospects and collect.
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field (or equivalent experience).
- Industry certifications such as CISSP, CISM, CEH, CCSP, or CISA are a plus.
- Understanding of cloud platforms (AWS, Azure) and cloud security best practices.
- Experience with vulnerability scanning and assessment tools for applications and infrastructure.
- Familiarity with security frameworks and compliance standards (NIST, ISO 27001, SOC 2, CIS Benchmarks).
- Proficiency in security testing, penetration testing, and vulnerability analysis.
- Knowledge of security monitoring tools, intrusion detection systems, and SIEM solutions.
- Ability to assess security risks, prioritize vulnerabilities, and recommend remediations.
- Experience conducting security audits and control evaluations.
- Strong problem-solving skills and ability to work collaboratively in cross-functional teams.
- Effective written and verbal communication skills for both technical and non-technical audiences.
This is a permanent remote home-based role in Costa Rica. No relocation available.
Our benefits include: Medical, life and dental insurance, Asociacion Solidarista, International Share Save Plan, Flex Work/Work from home, Paid time off, Annual Performance Bonus, Education Reimbursement, Family Bonding, Bereavement Leave, Referral Program, and more.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is a critical part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
#LI-ML2 #LI-Remote
Explore Experian's award winning 'people first' culture.
Being part of Experian is exciting. Every day brings new challenges, new opportunities, new ways for us to do what we do best: using our innovative technologies and data to work in new and surprising ways. All brought together in a single thought: Discover the Unexpected.
Learn moreRecommended Jobs
Salary
Location
United States
Experience Level
Executive
Employment
Permanent
Location
United States
Role Type
Home
Salary Range
See below
Schedule
Full Time
Department
Sales & Business Development
Brand
Experian
Remote working available
Yes
Executive Salary Range
$225,000 - $325,000
Description
The Vice President of Revenue Operations owns the end-to-end commercial operations and systems infrastructure that underpins revenue execution for our Employer Services business unit. Reporting to the
Reference
5740d181-8e94-4cd8-8378-188747401f1b
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Região: Zona Oeste/SPVenha fazer parte do time mais veloz desse Brasilzão com PagueVeloz by Serasa ExperianEstamos em busca de pessoas que respiram vendas externas (PAP), negociação, vivem o comércio
Reference
825e9976-43d1-43cc-8fb0-4a565d56036e
Expiry Date
01/01/0001
Salary
Location
Bogotá, Colombia
Experience Level
Not Applicable
Employment
Permanent
Location
Bogota
Role Type
Hybrid
Schedule
Full Time
Department
Human Resources
Brand
Experian
Remote working available
No
Description
Descripción general del área:El equipo de People Operations en SPLATAM es responsable de la ejecución eficiente de los procesos transaccionales y administrativos del ciclo de vida del colaborador, gar
Reference
96da007c-f5c7-4d1c-ad67-a924fd2f9478
Expiry Date
01/01/0001
Salary
Location
Heredia, Costa Rica
Experience Level
Not Applicable
Employment
Permanent
Location
Heredia
Role Type
Hybrid
Schedule
Full Time
Department
Project Management
Brand
Experian
Remote working available
No
Description
At Experian, we are committed to powering opportunities through data, innovation, and continuous improvement. We are looking for a Program Manager to help build the next generation of our Operational
Reference
f6f7b936-e6d9-47d8-b9f9-a99f75a5b090
Expiry Date
01/01/0001
Salary
Location
Düsseldorf, Germany
Experience Level
Not Applicable
Employment
Permanent
Location
Dusseldorf
Role Type
Hybrid
Schedule
Full Time
Department
Product Management
Brand
Experian
Remote working available
No
Description
Diese Rolle unterstützt den deutschen Lieferantenmanagement‑Prozess in den Bereichen Onboarding, Integration und laufender Betrieb. Sie spielt eine zentrale Rolle bei der Pflege des best data assets i
Reference
88c6bc6f-b86a-43b1-993e-5eade9a213cc
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Sales & Business Development
Brand
Serasa Experian
Remote working available
No
Description
Sobre a área:O time de Inteligência Comercial tem como missão transformar dados em direcionamento para vendas. Atuamos para gerar insights estratégicos e acionáveis, identificar oportunidades e alavan
Reference
3b244a11-7024-4748-a902-66122f84d042
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Hybrid
Schedule
Full Time
Department
Marketing and Communications
Brand
Serasa Experian
Remote working available
No
Description
Na Serasa Experian, acreditamos no poder dos dados e da tecnologia para transformar a vida financeira das pessoas e impulsionar negócios. O time de CRM Lifecycle é responsável pela gestão de toda a e
Reference
e2f9f2a6-934e-4de0-985f-2dc897b1b1e0
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Sales & Business Development
Brand
PagueVeloz
Remote working available
No
Description
Região: Belo Horizonte/MGVenha fazer parte do time mais veloz desse Brasilzão com PagueVeloz by Serasa ExperianVocê já domina a rotina comercial e quer dar o próximo passo, construindo sua história em
Reference
df06739b-ba8f-4a4e-9c69-b8fc902c0eee
Expiry Date
01/01/0001
Salary
Location
São Paulo, Brazil
Experience Level
Not Applicable
Employment
Permanent
Location
Sao Paulo
Role Type
Home
Schedule
Full Time
Department
Administration & Office Support
Brand
Serasa Experian
Remote working available
Yes
Description
Descrição do trabalho Sobre a vagaO(a) Analista de Processos II atuará no desenvolvimento de atividades de média complexidade, com alta flexibilidade de atuação e visão transversal do negócio. Terá im
Reference
5b1fff4c-eef0-4b15-8a12-883ce93bb22f
Expiry Date
01/01/0001
Salary
Location
Nottingham, England
Experience Level
Not Applicable
Employment
Permanent
Location
Nottingham
Role Type
Hybrid
Schedule
Part Time
Department
Customer Service
Brand
Experian
Remote working available
No
Description
We're on the lookout for Customer Experience specialist to join our vibrant and friendly team at our Nottingham-based Customer Experience Centre. You will be part of a great team where your voice trul
Reference
a51125e1-33a5-4831-a4df-f1e0a7f2080a
Expiry Date
01/01/0001
Salary
Location
Düsseldorf, Germany
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Dusseldorf
Role Type
Hybrid
Schedule
Part Time
Department
Finance
Brand
Experian
Remote working available
No
Description
As a Working Student (m/f/d) in Finance, you will support our Finance Business Partners in their day-to-day activities, with a particular focus on reporting and forecasting processes, data quality ini
Reference
bbeab541-3536-4026-92cb-a94bb886e168
Expiry Date
01/01/0001
Salary
Location
Mumbai, India
Experience Level
Not Applicable
Employment
Permanent
Location
Mumbai
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
No
Description
Job description We are looking for a Data Modeler to help us unlock our vast amounts of data with modelling and advanced analytics, allowing us to make smarter decisions and deliver even better produc
Reference
c7d4efca-360c-482e-83e7-3267dca4a6d6
Expiry Date
01/01/0001
Salary
Location
Cyberjaya, Malaysia
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Cyberjaya
Role Type
Hybrid
Schedule
Full Time
Department
Information Technology & Systems
Brand
Experian
Remote working available
No
Description
We are looking for an experienced Cloud Engineer to support and evolve a secure, scalable cloud environment powering mission-critical financial services applications across Australia and New Zealand.
Reference
9be21ac1-450f-43aa-a05a-bb72d564f376
Expiry Date
01/01/0001
Salary
Location
Sofia, Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
No
Description
Our Experian Software Solution's Analytics Services Team supports advanced analytic and generative AI products for decisioning, analytics, fraud, and identity globally.As a Machine Learning Engineer,
Reference
6d8d2823-955f-41c5-8960-2ddfe29e80c6
Expiry Date
01/01/0001
Salary
Location
Sofia, Bulgaria
Experience Level
Not Applicable
Employment
Permanent
Location
Sofia
Role Type
Hybrid
Schedule
Full Time
Department
Analytics
Brand
Experian
Remote working available
No
Description
We are seeking a highly analytical and experienced Senior Data Scientist to support the maintenance, monitoring, optimization, and continuous improvement of production analytics models and data proces
Reference
41dac17b-70ba-41ef-8bf3-f41efc73d061
Expiry Date
01/01/0001
Salary
Location
Cyberjaya, Malaysia
Experience Level
Mid-Senior Level
Employment
Permanent
Location
Cyberjaya
Role Type
Hybrid
Schedule
Full Time
Department
Human Resources
Brand
Experian
Remote working available
No
Description
This role provides leadership for the end‑to‑end delivery, governance, and continuous evolution of Global People Services (GPS) across designated regions. As the enterprise steward of scalable, high‑i
Reference
35b62b99-71b6-46bb-85a3-50e63ef3c1d0
Expiry Date
01/01/0001