13098 At Moody's, we unite the brightest minds to turn today's risks into tomorrow's opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are-with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody's is transforming how the world sees risk. As a global leader in ratings and integrated risk assessment, we're advancing AI to move from insight to action-enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock opportunity, helping our clients navigate uncertainty with clarity, speed, and confidence.If you are excited about this opportunity but do not meet every single requirement, please apply! You still may be a great fit for this role or other open roles. We are seeking candidates who model our values: invest in every relationship, lead with curiosity, champion diverse perspectives, turn inputs into actions, and uphold trust through integrity. Employer: Moody's Shared Services, Inc.Title: Sr Cybersecurity EngineerLocation: 7 World Trade Center, 250 Greenwich Street, New York, NY 10007 (Principal place of business - telecommuting permitted)Duties: Perform dynamic/static testing using various tools, provide recommendations and guidance on mitigations, and validate issue remediation. Maintain detailed evidence documentation throughout process. Communicate software vulnerabilities and mitigation options to stakeholders that balance business agility with security. Partner with developer teams to meet security objectives through training and integrating vendors or building solutions for software development processes. Establish polices and standards to guide builders to meet security requirements. Collaborate with colleagues from Cybersecurity Architecture & Assurance, Security Operations, and IT Development in the testing and remediation process, including resolution of issues stemming from risk assessments and third-party penetration testing. Support dynamic/static testing using various tools, provide recommendations and guidance on mitigations, and validate issue remediation. Maintain detailed evidence documentation throughout processes to support compliance obligations. Hold meetings and communicate software vulnerabilities and mitigation options to stakeholders that balance business agility with security. Work with developer teams to meet security objectives through training and integrating vendor solutions or building secure solutions into software development processes. Develop strategies to identify, assess, and mitigate security risks across the organization. Collaborate with IT and engineering teams to integrate security best practices into the development and deployment processes. Telecommuting Permitted (100% telecommuting position. Will consider applicants resident in the continental U.S.).Requirements: Requires a Master's degree or foreign equivalent in Cybersecurity, Information Technology, Computer Information Systems, or a closely related technical field plus at least two (2) years of experience as an Analyst, Engineer, or in a related position performing information security risk management and architecture review. Must have experience with the following: designing, developing, and deploying security technology and controls, including identifying and selecting vendors that meet security and business requirements; performing forensic analysis and resolving incidents related to cyber-attacks, including reviewing information security resources and performing root cause analysis; applying knowledge and support of various cyber security tools, platforms and processes; assisting in defining technical requirements and process enhancements based on an evolving threat landscape; and working with BurpSuite, OWASP ZAP, Fiddler, Veracode, Snyk, HP Fortify, Dependency Checker, .Net (ASP.Net /C#), JavaScript, AngularJS, and SQL Server/P