Application Security Analyst
About The Position
Responsible for designing, implementing, and maintaining secure CI/CD pipelines while ensuring robust application security across development and deployment environments.
Key Responsibilities
- Design, implement, and maintain secure CI/CD pipelines.
- Integrate security tools (SAST, DAST, SCA, etc.) into development workflows.
- Collaborate with development and operations teams to identify and remediate vulnerabilities.
- Automate security testing and compliance checks within the DevSecOps framework.
- Monitor and respond to security incidents in cloud and containerized environments.
- Develop, document, and enforce security policies, standards, and procedures.
- Stay up to date with emerging security threats, technologies, and best practices in DevSecOps.
Qualifications
- Education: Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
- Minimum 6 years overall experience, including:
- 3+ years in DevOps, Security Engineering, or related roles.
- 2–3 years of hands-on application security experience.
- Strong understanding of CI/CD tools (e.g., Jenkins, Harness).
- Development experience with languages such as Java, Python, .NET.
- Proficiency with security tools (e.g., Veracode, GitHub Advanced Security, Orca).
- Skilled in scripting languages (e.g., Python, Bash).
- Familiarity with containerization and orchestration technologies (Docker, Kubernetes).
- Knowledge of cloud platforms (AWS, Azure, GCP) and their security features.
- Solid understanding of secure coding practices and application security principles.
Requirements
Q