Application Developer Security Analyst

Beacon Hill

Indianapolis (IN)

On-site

USD 120,000 - 170,000

Full time

21 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Beacon Hill is seeking a DevSecOps / Application Security Engineer to help mature security practices across a growing development organization. The role focuses on integrating security into the software development lifecycle, implementing automated security testing within CI/CD pipelines, and establishing pragmatic security standards that support development teams.

The ideal candidate will have hands-on experience in Azure DevOps, secure SDLC practices, vulnerability management, and security

Qualifications

  • Experience implementing Secure SDLC practices and security in CI/CD.
  • Hands-on security experience with DevSecOps and application security.
  • Experience with Azure DevOps and automated pipeline development.
  • Ability to implement vulnerability management and remediation processes.
  • Knowledge of security controls, encryption, and authentication.

Responsibilities

  • Integrate security into the SDLC and CI/CD pipelines.
  • Develop and implement automated security testing and tooling.
  • Establish practical security standards, guardrails, and governance.
  • Drive shift-left security across development teams and pipelines.
  • Collaborate with developers, DevOps, and security teams to improve security posture.
  • Leverage security tools to enable secure and scalable development workflows.

Skills

DevSecOps
Application Security
Secure SDLC
CI/CD Security
Azure DevOps
Security Automation
Vulnerability Management
Secure Coding
Secrets Management
Encryption
Authentication
Secure Integrations

Tools

GitHub
GitHub Secret Protection
Snyk
Azure
AWS
Vulnerability Scanning Tools

Job description

  • Hands-on experience in DevSecOps, Application Security, or Security-focused DevOps Engineering
  • Experience implementing and supporting Secure Software Development Lifecycle (Secure SDLC) practices
  • Strong knowledge of CI/CD pipeline security and integrating security controls into development workflows
  • Experience with Azure DevOps and automated pipeline development
  • Experience building and implementing security automation, including vulnerability scanning and security testing
  • Knowledge of application security principles, including secure coding practices, secrets management, encryption, authentication, and secure integrations
  • Experience with vulnerability management and remediation processes
  • Understanding of modern software development practices and application architectures
  • Experience partnering with application developers, DevOps engineers, and security teams
  • Ability to establish security standards, guardrails, and governance processes that are practical and scalable
  • Experience implementing shift-left security strategies that move security validation earlier in the development lifecycle
  • Strong understanding of security scanning tools and integrating them into automated development pipelines
  • Excellent communication skills with the ability to influence engineering teams and drive security best practices
Desired Skills:
  • Experience with Application Security Engineering programs and maturing security practices within an organization
  • Background in software development with hands-on coding experience
  • Experience in Security Operations (SecOps)
  • Experience with GitHub, including GitHub Secret Protection
  • Experience with Snyk or similar application security and code scanning platforms
  • Knowledge of cloud security within Microsoft Azure environments
  • Experience in AWS environments with the ability to transition to Azure-based ecosystems
  • Experience automating remediation workflows and security exception management
  • Familiarity with security frameworks and industry best practices (OWASP, NIST, secure development standards)
  • Experience defining application security policies, standards, and governance models
  • Knowledge of APIs, certificates, identity and access management, and service account security
  • Experience leveraging AI-powered developer tools (Claude, OpenAI, Copilot, etc.) for code review, vulnerability detection, and secure development practices
  • Experience helping organizations build and mature application security programs from the ground up
  • Experience balancing security requirements with development velocity and operational efficiency
Description of Role/Responsibilities:

Our client is seeking a DevSecOps / Application Security Engineer to help build and mature application security practices across a growing development organization. This role will focus on integrating security into the software development lifecycle, implementing automated security testing within CI/CD pipelines, and establishing practical security standards that support, rather than hinder, development teams. The ideal candidate will bring a blend of application security, DevOps, and software development experience, with hands-on expertise in Azure DevOps, secure SDLC practices, vulnerability management, and security automation. This is an opportunity to play a key role in shaping a shift-left security strategy and building scalable security capabilities from the ground up.

Beacon Hill is an equal opportunity employer and individuals with disabilities and/or protected veterans are encouraged to apply.

California residents: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.

Completion of this form is voluntary and will not affect your opportunity for employment, or the terms or conditions of your employment. This form will be used for reporting purposes only and will be kept separate from all other records.

Benefits Information:

Beacon Hill offers a robust benefit package including, but not limited to, medical, dental, vision, and federal and state leave programs as required by applicable agency regulations to those that meet eligibility. Upon successfully being hired, details will be provided related to our benefit offerings.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

DevSecOps Engineer: Secure SDLC, Azure & Automation
DevSecOps Engineer: Secure SDLC, Azure & Automation

Beacon Hill • Indianapolis (IN)

On-site
USD 120,000 - 170,000
Staff Application Security Architect
Staff Application Security Architect

Rocket Homes Real Estate LLC • Seattle (WA)

On-site
USD 149,000 - 318,000
Application Security Engineer
Application Security Engineer

Ringside Talent Acquisition Partners • Columbus (OH)

Hybrid
USD 100,000 - 130,000
Competitive compensation
Hybrid work flexibility
Opportunities for advancement
Application Security Engineer
Application Security Engineer

Hampton North • United States

Remote
USD 110,000 - 150,000
Application Security Analyst
Application Security Analyst

AccruePartners • Fort Mill (SC)

Hybrid
USD 70,000 - 90,000
Ongoing investment in professional development
Exposure to modern security platforms
Collaborative team environment
Staff Application Security Engineer
Staff Application Security Engineer

Triwill Group • United States

On-site
USD 120,000 - 145,000
Fully remote work arrangement
Application Security Architect
Application Security Architect

Alarm.com • Tysons (VA)

On-site
USD 140,000 - 210,000
Application Security Engineer - Chandler, AZ
Application Security Engineer - Chandler, AZ

Motion Recruitment Partners LLC • Chandler (AZ)

On-site
USD 110,000 - 160,000
Medical Insurance
Dental Benefits
Vision Benefits
+2
Application Security Engineer-68257
Application Security Engineer-68257

Worky • Dallas (TX)

On-site
USD 120,000 - 180,000
Senior Application Security Engineer
Senior Application Security Engineer

AgileEngine • United States

Hybrid
USD 120,000 - 180,000
Flextime
Professional growth
Competitive compensation
+2