Sr. Security Analyst

4 weeks ago


Hyderabad, Telangana, India Warner Bros Full time
Job Description

Welcome to Warner Bros. Discovery the stuff dreams are made of.

Who We Are

When we say, the stuff dreams are made of, we're not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD's vast portfolio of iconic content and beloved brands, are thestorytellersbringing our characters to life, thecreatorsbringing them to your living rooms and thedreamerscreating what's next

From brilliant creatives, to technology trailblazers, across the globe, WBD offers career defining opportunities, thoughtfully curated benefits, and the tools to explore and grow into your best selves. Here you are supported, here you are celebrated, here you can thrive.

As a Senior Security Analyst, you will be an important member of the Warner Bros. Discovery Global Information and Content Security (GICS) team. This is a key role that will support Bug Bounty program and Attack Surface Management program, as part of the team within Application Security.

This role will triage vulnerability reports submitted to our Bug Bounty program and Attack Surface Management program. This role will work closely with other functions in the Application Security team (Engineering, Testing, and Vulnerability Management) to improve the overall security posture of Warner Bros. Discovery.

Job Responsibilities

- Support GICS Bug Bounty and Attack Surface Management programs.
- Triage vulnerability reports submitted to our Bug Bounty program this includes tracking and responding to submissions, reproducing and chaining vulnerabilities, coordinating with teams to triage and resolve issues, and providing feedback to security researchers.
- Assess vulnerability impact, risk, and escalate possible security incidents.
- Managing and maintaining enterprise attack surface management capabilities
- Provide actionable remediation feedback for findings and/or long-term risk mitigation guidance
- Provide clear communication on the issue to application owners and verify the efficacy of vulnerability remediations.
- Share learnings from the bug bounty program with adjacent security teams within the company as needed.
- Leverage learnings from the program to identify vulnerabilities in software applications and software designing processes to reduce security risks.
- Develop tooling to help automate vulnerability discovery and scanning for issues at scale.
- Advise application owners on violations of defined application security standards on targets tested for vulnerabilities
- Partner with developers to drive improvement in application security as a result of security assessment engagements
-

Qualifications & Experiences

- Hybrid work environment. Must be based in the WBD's office, minimum three days/week
- A bachelor's degree in computer science, Cybersecurity, or other related fields, from an accredited university or an equivalent professional experience may suffice in lieu of a bachelor's degree
- 4+ years of experience in application security testing, code review, bug bounty hunting, or red teaming/capture the flag experience
- Experience conducting root cause analysis of vulnerabilities and determining feasible technical solutions
- Professional experience with web application security, network security, authN/authZ protocols, cryptography, automation, and other software security
- Experience in scripting in Python or other languages to build automation tools
- Must be a team player with excellent written and verbal communication skills
-

Preferred Qualifications

- Exposure to popular Application and API security standards including OWASP ASVS, OWASP Top 10, and OWASP Mobile Top 10.
- Prior experience managing or hunting on Bug Bounty programs.
- CEH, OSCP or equivalent certification.
- Experience working as part of a global team.
-

How We Get Things Done

This last bit is probably the most important Here at WBD, our guiding principles are the core values by which we operate and are central to how we get things done. You can find them at www.wbd.com/guiding-principles/ along with some insights from the team on what they mean and how they show up in their day to day. We hope they resonate with you and look forward to discussing them during your interview.

Championing Inclusion at WBD

Warner Bros. Discovery embraces the opportunity to build a workforce that reflects the diversity of our society and the world around us. Being an equal opportunity employer means that we take seriously our responsibility to consider qualified candidates on the basis of merit, regardless of sex, gender identity, ethnicity, age, sexual orientation, religion or belief, marital status, pregnancy, parenthood, disability or any other category protected by law.

If you're a qualified candidate with a disability and you require adjustments or accommodations during the job application and/or recruitment process, please visit our accessibility page for instructions to submit your request.

  • Hyderabad, Telangana, India Syneos Health Full time

    Job DescriptionWe are seeking a Sr Info Security Risk Analyst I to join our Governance, Risk, and Assurance (GRA) function. In this hybrid role, you'll be a key player in managing information security risks by evaluating security exceptions, conducting risk assessments, and collaborating with cross-functional teams to ensure compliance and mitigate...

  • Sr. Data Modeler

    1 day ago


    Hyderabad, Telangana, India Cliff IT Solutions Inc. Full time

    Company DescriptionCliff IT Solutions is a provider of Identity Management and Security governance solutions for onsite and cloud applications, helping organizations enforce security, reduce risk, and maximize profitability. We deliver end-to-end integration of industry-leading identity access management products and cloud-based applications. Cliff IT...


  • Hyderabad, Telangana, India beBeeDataSecurity Full time ₹ 16,00,000 - ₹ 24,00,000

    Secure Data Solutions SpecialistWe are seeking skilled IT professionals to join our dynamic team in a healthcare domain. As a data security analyst, you will play a crucial role in promoting key information security practices and ensuring data protection measures throughout the information lifecycle.Promote awareness of key information security...


  • Hyderabad, Telangana, India Etenico Technologies Full time

    As a SOC L3 Analyst, you will be responsible for leading the investigation and response to complex security incidents, engineering advanced detection content, and optimizing security tools and processes. With a strong focus on Splunk, content engineering, Endpoint Detection and Response (EDR), and Security Orchestration, Automation, and Response (SOAR), you...


  • Hyderabad, Telangana, India Etenico Technologies Full time

    As a SOC L3 Analyst, you will be responsible for leading the investigation and response to complex security incidents, engineering advanced detection content, and optimizing security tools and processes. With a strong focus on Splunk, content engineering, Endpoint Detection and Response (EDR), and Security Orchestration, Automation, and Response (SOAR), you...


  • Hyderabad, Telangana, India GE Vernova Full time

    Job DescriptionJob Description SummaryWe are looking for an Sr Product Security Analyst, with a focus in vulnerability management and incident response capability. In this role you will work in a team to identify, risk rate, communicate and track product vulnerabilities and be a part of the product incident response team.Job DescriptionRoles and...

  • Sr IT QA Analyst

    2 days ago


    Hyderabad, Telangana, India Assurant Full time US$ 90,000 - US$ 1,20,000 per year

    Sr Information Technology Quality Assurance Analyst, Assurant-GCC, IndiaAs a Sr Information Technology Quality Assurance Analyst, you will play a key role in ensuring the delivery of high-quality enterprise solutions. Your responsibilities include analyzing user stories, crafting and executing test cases, and documenting defects across applications,...


  • Hyderabad, Telangana, India Assurant Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Sr Financial Reporting Analyst, GCC-Assurant The Sr Finance Reporting Analyst is responsible for improving the efficiency, accuracy, and accessibility of financial reporting within the Business Finance team.  This role focuses on building sustainable, automated reporting solutions to replace manual processes and enable faster insights for business...


  • Hyderabad, Telangana, India ParadigmIT Cybersecurity Full time

    Role: Vulnerability Assessment and Penetration Testing (VAPT) AnalystExperience: 3 to 6 YearsWork Timing's: 9.30 PM to 6.30 PM ISTCurrent & Preferred location: HyderabadWork Mode: Full time (5 days week)Job description:We are seeking a proactive and technically strong VAPT Analyst with 3–5 years of experience in penetration testing across applications,...


  • Hyderabad, Telangana, India Cigna Healthcare Full time US$ 90,000 - US$ 1,20,000 per year

    Cyber Security Lead Analyst - HIH - EvernorthPosition Summary:Cigna Information Protection is looking for a Lead Analyst, Incident Response (IR).  The Incident Response Lead Analyst is responsible for handling and coordinating lower severity cybersecurity incidents as part of a 24x7 operation. The IR Lead Analyst acts as a supporting role to the major...