Sign up
Sign up
Defined by inclusivity rather than exclusivity, Tapestry embraces the exploration of individuality and invests in helping you grow personally and professionally. Every individual in our global house has the opportunity to make an impact, learn and be part of our growing and unique story.
At Tapestry, we have the freedom to express ourselves and run with our best ideas across Coach, Kate Spade New York, and Stuart Weitzman. We share a profound belief in both our individual and collective potential, and know that with hard work and dedication, anything is possible.
Primary Purpose: The Analyst, Information Security will play an integral part in supporting the Vulnerability Management Program, Firewall Auditing Program and supporting other Information Security initiatives across the global enterprise. The ideal candidate will possess a strong technical and security background with strong understanding of Operating Systems & Networks; mainly identifying, managing and reducing vulnerabilities impacting the infrastructure. The individual must be hands-on, work under minimal supervision and have the ability to work in a fast-paced small-team environment.
Support the global Vulnerability Management Program:
Conduct vulnerability scans and assessments at the network, operating system, database, and application levels. Be able to create custom profiles in the vulnerability scanning tools and run scans on-demand basis or be able to schedule them.
Vulnerability Identification (including awareness of current vulnerabilities and patches)
Perform vulnerability scanning and analysis to eliminate false positives and to aggregate findings by specific best practice criteria
Review reports with responsible parties and work with them to develop remediation plan
Coordinate directly with all necessary individuals/groups to ensure timely closure on findings
Manage internal tools and external parties conducting assessments
In-depth experience supporting enterprise vulnerability management across IaaS, PaaS, and/or SaaS
Oversee, evaluate and mature the intelligence of data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within the on-prem or cloud. Ensure vulnerabilities are identified as early as possible and mitigated.
Engineer, test, and deploy custom solutions for reducing vulnerabilities through automation across endpoints
Expert knowledge of system, application, and database hardening techniques and practices
Recommend and support remediation/resolution activities associated with any discovered vulnerability in accordance with Tapestry standards
Firewall Auditing Program job duties:
Implement capabilities that detect/report on changes to network infrastructure.
Perform periodic reviews of internal and perimeter defenses (Firewalls, Web Proxies, SSL Decryption Solutions) ensuring features are efficiently and properly configured and device configurations meet Corporate Policy and security best practices.
Proactively identify issues and recommend configuration settings, security features or third party solutions to mitigate or improve security deficiencies in the IT infrastructure.
Work with the firewall and network engineer teams to resolve security related configuration issues.
Work with the project teams to assist in the test and evaluation of new security solutions.
Work closely with the Forensics & Incident Response team to investigate security incidents
Develop security metrics and regularly develop meaningful reports for management review
Ensure there are no repeat IS security related findings from regulatory and 3rd party exams
Maintain and advance industry expertise by reviewing new technologies; and participating in continuing education and training (for example, relevant industry certifications, forums).
Support security assessments, audits, compliance initiatives, and remediation activities
Required qualifications:
Preferred qualifications:
Our Competencies for All Employees
Our Competencies for All People Managers
Tapestry, Inc. is an equal opportunity and affirmative action employer and we pride ourselves on hiring and developing the best people. All employment decisions (including recruitment, hiring, promotion, compensation, transfer, training, discipline and termination) are based on the applicant’s or employee’s qualifications as they relate to the requirements of the position under consideration. These decisions are made without regard to age, sex, sexual orientation, gender identity, genetic characteristics, race, color, creed, religion, ethnicity, national origin, alienage, citizenship, disability, marital status, military status, pregnancy, or any other legally-recognized protected basis prohibited by applicable law. #LI-KS1 Visit Tapestry, Inc. at http://www.tapestry.com/
Defined by inclusivity rather than exclusivity, Tapestry embraces the exploration of individuality and invests in helping you grow personally and professionally. Every individual in our global house has the opportunity to make an impact, learn and be part of our growing and unique story.
At Tapestry, we have the freedom to express ourselves and run with our best ideas across Coach, Kate Spade New York, and Stuart Weitzman. We share a profound belief in both our individual and collective potential, and know that with hard work and dedication, anything is possible.
Primary Purpose: The Analyst, Information Security will play an integral part in supporting the Vulnerability Management Program, Firewall Auditing Program and supporting other Information Security initiatives across the global enterprise. The ideal candidate will possess a strong technical and security background with strong understanding of Operating Systems & Networks; mainly identifying, managing and reducing vulnerabilities impacting the infrastructure. The individual must be hands-on, work under minimal supervision and have the ability to work in a fast-paced small-team environment.