Skip to content

Open nowPosted 9 days ago

Offensive Application Security Analyst

countryfinancial36 open roles

Pay
$94,400 – $129,800 a year
Where
Bloomington, IL
Work mode
Hybrid
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowOffensive Application Security Analystcountryfinancial · Bloomington, IL
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on countryfinancial's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. countryfinancial postings stay open a median of 2 days.

Share of postings closed within
  1. 1.9%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.2%30 days
This job: posted 9 days ago

countryfinancial median: 2 days open

The posting

Experience more with a career at COUNTRY Financial!

We’re excited you’re interested in a career at COUNTRY as we strive toward our vision - to enrich lives in the communities we serve. Our footprint spans coast to coast. But more important than where we operate, is the people who do the work. Apply today to help our organization grow and make a difference for our clients.

About the role

The Offensive Application Security Analyst helps improve the security of COUNTRY Financial's applications and technology platforms through a blend of application security assessment and adversary emulation activities. This role spends approximately 50% of time supporting the Application Security program and 50% supporting Threat Intelligence & Emulation initiatives.

The individual will perform application security testing, assist with secure development practices, support penetration testing activities, participate in threat emulation exercises, and help validate the effectiveness of enterprise security controls. This role serves as a technical contributor who works closely with developers, infrastructure teams, incident responders, and other security professionals to identify and reduce cybersecurity risk. The position supports both secure software development and offensive security objectives Primary Responsibilities Application Security (50%) • Perform application security assessments against web, API, mobile, and cloud applications. • Analyze and triage findings from SAST, DAST, dependency scanning, and other security testing platforms. • Assist development teams with vulnerability remediation guidance and secure coding recommendations. • Participate in threat modeling and architecture review activities. • Help improve application security automation and security testing within CI/CD pipelines. • Support dependency management and software supply chain security initiatives. • Collaborate with technology teams to improve secure development lifecycle practices. • Demonstrate an understanding of Git and Git-based development workflows, including branching, pull requests, code reviews, and secure code management practices Threat Emulation (50%) • Execute red team, purple team, and adversary emulation activities under established rules of engagement. • Assist with internal penetration testing exercises and third-party penetration testing coordination. • Conduct security control validation and threat-informed testing using MITRE ATT&CK methodologies. • Research adversary tactics, techniques, and procedures and help translate intelligence into testing scenarios. • Perform offensive security assessments against enterprise infrastructure, cloud environments, and applications. • Document findings and provide actionable recommendations to improve detection and prevention capabilities. • Partner with defensive security teams to validate response and monitoring effectiveness.

How does this role make an impact?

- Participates in projects and assessments on risk. - Analyzes and defines security policies and standards. - Monitors, alerts and responds to security events. - Performs computer forensic and investigative activities; and penetration and vulnerability testing. - Defines and administers identity & access roles and workflows.

Do you have what we're looking for?

Required Skills

Technical Knowledge

  • Secure software development principles and common application vulnerabilities.
  • Web application security concepts including OWASP Top 10.
  • Security testing methodologies including SAST, DAST, and penetration testing.
  • Basic understanding of red team and purple team methodologies.
  • Scripting and automation experience using PowerShell, Python, Bash, or similar languages.
  • Knowledge of cloud security concepts and modern application architectures.
  • Familiarity with MITRE ATT&CK Framework concepts.
  • Typically requires 3+ years of relevant experience or a combination of related experience, education and training.

Professional Skills

  • Strong analytical and problem-solving abilities.
  • Effective written and verbal communication.
  • Ability to explain technical findings to both technical and non-technical audiences.
  • Strong collaboration and teamwork skills.
  • Self-motivated with a desire to continuously learn and develop offensive and application security expertise.

#LI-CORP

#LI-Hybrid

Base Pay Range:

$94,400-$129,800

The base pay range represents the typical range of potential salary offers for candidates hired. Factors used to determine your actual salary include your specific skills, qualifications and experience.

Incentive Pay:

In addition to base salary, this position is eligible for a Short-Term Incentive plan.

Why work with us?

Our employees and representatives serve nearly one million households with our diverse range of personal and business insurance products as well as retirement and investment services. We build relationships and work together to create a stronger, more secure future for our clients and our communities. We’re a big company, yet small enough you can make an impact and won’t get lost in the shuffle. You’ll have the opportunity to learn and grow throughout your career, either within this role or by exploring other areas of our business.

You’ll be able to take advantage of our benefits package, which includes insurance benefits (medical, dental, vision, disability, and life), 401(k) with company match.

COUNTRY Financial is committed to providing equal opportunity in all areas of employment, and in providing employees with a work environment free of discrimination and harassment. Employment decisions are made without regard to race, color, religion, age, gender, sexual orientation, veteran status, national origin, disability, or any other status protected by applicable laws or regulations.

Come join our team at COUNTRY today!

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against countryfinancial's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on countryfinancial's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    countryfinancial's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.