The Associate Web Application Security Specialist role within Corporate Functions supports the Application Security team in strengthening the security of the VF Global enterprise. Based in Greensboro, NC and working onsite, this position focuses on Attack Surface Management by identifying threats and vulnerabilities tied to external assets, evaluating overall security posture, and helping reduce external risk exposure.
In this role, you will help maintain an accurate view of VF’s attack surface, collaborate across stakeholder groups to drive effective risk reduction, and act as a subject matter expert for application development and infrastructure teams. You will also contribute to process development, assess cyber defense policies and configurations for weaknesses, and support the adoption of security solutions and technologies where they improve outcomes.
What you’ll do
- Oversee the Attack Surface Management program from a technical perspective.
- Identify and catalog assets, including new and existing ones, to keep an up-to-date inventory of VF’s attack surface.
- Coordinate with stakeholders to build a comprehensive understanding of the attack surface and enable effective risk reduction.
- Serve as a subject matter expert for application development and infrastructure teams.
- Analyze cyber defense policies and configurations to evaluate weaknesses and vulnerabilities.
- Participate in creating processes designed to reduce risk successfully within VF.
- Research and advocate for new security solutions and technologies.
- Support security practices through projects and implementations to maintain high standards across VF.
- Establish communications with associates across a global landscape regarding threats, vulnerabilities, processes, and security risks.
- Escalate high or critical risks, threats, or vulnerabilities through appropriate channels for resolution.
- Advocate and evangelize the importance of Application Security within VF and socialize key messages through internal channels.
Skills and qualifications
- Project management skills.
- Excellent communication skills and problem-solving ability.
- Demonstrated ability to work independently and with others.
- Ability to manage details and compliance with standards and expectations.
- Demonstrated technical writing skills.
- Follows defined IT standards and processes (including IT Governance, SM&G, Architecture) and provides input for improvements to process owners as needed.
- Ability to maintain a balance between business and operational risk.
- Follows defined project management standards and processes.
- Knowledge of operating systems, ports, and services.
- Knowledge of the OWASP Top 10.
Compensation and location
- Location: Greensboro, NC (onsite)
- Salary: USD 72,000 - 90,000 per year
- Hiring range: $72,000.00 USD - $90,000.00 USD annually
- Minimum experience: 1 years
Benefits
- Eligible for additional compensation awards, which may include an annual incentive plan, sales incentive, or commission potential.
- Medical plan rates reviewed on www.MyVFbenefits.com.
- Detailed information on benefits provided during the hiring process.
In addition, the position is eligible for additional compensation awards. Specific details regarding eligibility will be shared during recruiting and interview.
You can also review a general overview of each benefit program, including this year’s medical plan rates at www.MyVFbenefits.com, with detailed information provided during the hiring process.