Application Security Analyst

2755 Barclays Services Corpor

United States

On-site

USD 125,000 - 170,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Barclays is seeking an Application Security Analyst to support the delivery and enhancement of Application Security and DevSecOps capabilities. You will evaluate findings, validate risk, support remediation, and convert testing data into practical insights for engineering and security teams.

You will help embed security controls across the software development lifecycle and ensure compliance with cyber governance requirements, policies, and standards.

Qualifications

  • Running one or more of SAST, SCA or DAST scans; triaging and validating findings; investigating false positives; assessing severity and exploitability; and working with developers to track remediation.
  • Testing APIs and understanding weaknesses in authentication, authorization, input validation, data exposure, and business logic.
  • Applying secure coding knowledge in Java/Spring, .NET, Go, Python or JavaScript/TypeScript, and supporting security testing within CI/CD and cloud-native workflows.
  • Evaluating security data using spreadsheets, query or reporting tools to identify trends, prioritize risk, monitor remediation, and produce accurate operational metrics and dashboards

Responsibilities

  • Evaluate security findings, validate risk, support remediation, and convert testing data into practical insights for engineering and security stakeholders.
  • Embed security controls across the software development lifecycle and support compliance with cyber governance requirements, policies, and standards.
  • Communicate complex security findings to stakeholders and drive remediation actions.

Skills

SAST/SCA/DAST
API security
CI/CD security
Secure coding

Tools

Spreadsheets
Query/Reporting tools

Job description

Purpose of the role

To identify potential vulnerabilities within the banks IT systems using penetration testing tools and techniques to ensure security of computer systems, applications, servers, and networks.

Accountabilities

Development and execution of assessments, audits, and threat models to identify vulnerabilities within the banks systems, applications and servers using penetration tools and techniques, and communicate key findings and recommendations to stakeholders.

Collaboration with stakeholders and IT teams to identify emerging cyber-attack techniques, tools and technologies and to support the development of penetration testing methodologies.

Development and maintenance of comprehensive documents and reports for senior stakeholders on penetration test findings, and remediation guidance.

Collaboration with stakeholders to understand their security requirements and controls in business processes, application/services, to enhance overall security posture and assurance.

Identification of emerging vulnerabilities, exploit codes and cyber-attacks to develop testing methodologies and assurance activities.

Assistant Vice President Expectations

To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness. Collaborate closely with other functions/ business divisions.

Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function.

Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes

If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others.

OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/ or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes.

Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues.

Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda.

Take ownership for managing risk and strengthening controls in relation to the work done.

Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function.

Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy.

Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively.

Communicate complex information. 'Complex' information could include sensitive information or information that is difficult to communicate because of its content or its audience.

Influence or convince stakeholders to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right.

They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.

Application Security Analyst

Join us as an Application Security Analyst for Barclays, where you will support the delivery and continuous enhancement of Application Security and DevSecOps capabilities, bringing practical experience in one or more of the following areas: SAST, SCA, DAST, API security and AI-assisted security testing.

You will evaluate security findings, validate risk, support remediation, and convert testing data into practical insights for engineering and security stakeholders.

You will also help embed security controls across the software development lifecycle and support compliance with cyber governance requirements, policies, and standards.

Required Experience
  • Running one or more of SAST, SCA or DAST scans; triaging and validating findings; investigating false positives; assessing severity and exploitability; and working with developers to track remediation
  • Testing APIs and understanding common weaknesses in authentication, authorization, input validation, data exposure, and business logic
  • Applying secure coding knowledge in at least one development ecosystem, such as Java/Spring, .NET, Go, Python or JavaScript/TypeScript, and supporting security testing within CI/CD and cloud-native workflows
  • Evaluating security data using spreadsheets, query or reporting tools to identify trends, prioritize risk, monitor remediation, and produce accurate operational metrics and dashboards
Highly Valued Skills
  • Knowledge of cyber governance, security policies, controls and standards, including supporting conformance assessments, evidence collection, exception management and risk reporting
  • Understanding of secure SDLC practices, software supply chain security, dependency risk, secrets scanning, SBOMs, vulnerability management and developer-focused remediation
  • Exposure to AI-assisted security testing and AI application security risks, including prompt injection, insecure output handling, sensitive-data leakage, model or agent vulnerabilities, and validation of AI-generated findings
Additional Note

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking, digital and technology, as well as job-specific technical skills.

Location

This role is located in Whippany, NJ.

Salary

Minimum Salary: $ 125,000

Maximum Salary: $ 170,000

The minimum and maximum salary/rate information above include only base salary or base hourly rate. It does not include any other type of compensation or benefits that may be available.

Benefits

Barclays employees are eligible for a suite of competitive and generous employee benefits, including medical, dental and vision coverage, 401(k), life insurance, and other paid leave for qualifying circumstances.

This position is eligible for an incentive award.

Work Experience

Our Work Experience is the combination of everything that's unique about us: our culture, our core values, our company meetings, our commitment to sustainability, our recognition programs, but most importantly, it's our people.

Our employees are self-disciplined, hard working, curious, trustworthy, humble, and truthful. They make choices according to what is best for the team, they live for opportunities to collaborate and make a difference, and they make us the #1 Top Workplace in the area.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Analyst
Application Security Analyst

barclays • United States

On-site
USD 125,000 - 170,000
Application Security Analyst
Application Security Analyst

Barclays • Whippany (NJ)

On-site
USD 125,000 - 170,000
Incentive award
Application Security Specialist
Application Security Specialist

Barclays • Whippany (NJ)

On-site
USD 175,000 - 225,000
Medical, dental and vision coverage
401(k) & life insurance
Paid leave
+1
Application Security Specialist
Application Security Specialist

barclays • United States

On-site
USD 175,000 - 225,000
Senior Red Team Operator- VP
Senior Red Team Operator- VP

2755 Barclays Services Corpor • New Jersey

Hybrid
USD 175,000 - 225,000
Application Support Analyst
Application Support Analyst

2755 Barclays Services Corpor • United States

On-site
USD 80,000 - 120,000
2027 Technology Cyber & Security Summer Internship Program Whippany
2027 Technology Cyber & Security Summer Internship Program Whippany

Barclays • Whippany (NJ)

On-site
USD 105,000 - 110,000
Senior Red Team Analyst - VP
Senior Red Team Analyst - VP

Barclays • New Jersey

Hybrid
USD 175,000 - 225,000
Medical, dental, and vision coverage
401(k)
Incentive award
+1
Application Support Analyst
Application Support Analyst

Barclays • Northern (KY)

Hybrid
USD 80,000 - 120,000
Medical, dental & vision coverage
401(k) plan
Life insurance
+1
2027 Technology Developer Graduate Program Whippany
2027 Technology Developer Graduate Program Whippany

Barclays • Whippany (NJ)

On-site
USD 105,000 - 110,000