Application Security Data Analyst 3652226

Axiom Path

Town of Charlotte (NY)

Hybrid

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Axiom Path is seeking an experienced application security and data professional to improve security data governance and vulnerability management across a complex enterprise. The role focuses on reducing false positives, protecting sensitive information, and aligning security with the SDLC.

You will analyze vulnerability data, investigate sensitive-secrets findings, and collaborate with stakeholders to translate technical risks into business language while navigating code repositories and PRs in

Qualifications

  • Foundational experience in cybersecurity, application security, vulnerability management, or related fields.
  • Understanding of source-control management: repositories, check-in/out, pushes, pulls, PRs.
  • Knowledge of secrets (credentials, API keys, tokens) in software environments.
  • Familiarity with SDLC and secure SDLC concepts.
  • Understanding of common application-security vulnerabilities and risk translation.
  • Knowledge of data governance and PHI concepts.
  • Foundational cybersecurity principles: confidentiality, integrity, availability.
  • Ability to explain SaaS and DaaS concepts.
  • Ability to relate applications, repositories, changes, and findings.
  • Clear communication of technical concepts to varied audiences.

Responsibilities

  • Analyze application security and vulnerability data to distinguish legitimate security risks from false-positive findings.
  • Support efforts to investigate findings involving exposed secrets, credentials, tokens, passwords, SaaS applications, and other application security vulnerabilities.
  • Navigate source-control repositories and review information associated with code changes, repositories, commits, pushes, pulls, and pull requests.
  • Partner with technical and security stakeholders to understand vulnerabilities and communicate findings in clear business and technical language.
  • Apply secure SDLC concepts when evaluating application and software-development risks.
  • Support data-governance activities involving sensitive information, including PHI and other protected data.
  • Help categorize, explain, and prioritize security risks using foundational cybersecurity principles.
  • Contribute to improving the accuracy and effectiveness of vulnerability-management processes.

Skills

Cybersecurity
Application security
Vulnerability management
Software development
Data analysis
Source control management

Tools

Git

Job description

Be Part Of A High-Performing Team

Join a technology and security-focused team responsible for improving the quality, governance, and usability of application security and vulnerability data across a complex enterprise environment. This team is managing a significant volume of security findings and is focused on separating actionable risk from false positives, strengthening security practices throughout the software development lifecycle, and improving how sensitive information and application vulnerabilities are identified and managed.

What's In Store For You
  • Contract opportunity.
  • Hybrid work environment with Charlotte, NC strongly preferred.
  • Opportunity to work at the intersection of data analysis, application security, software development, and data governance.
  • Exposure to enterprise vulnerability management, source control practices, secure development processes, and sensitive-data protection.
How You Will Make An Impact
  • Analyze application security and vulnerability data to help distinguish legitimate security risks from false-positive findings.
  • Support efforts to investigate findings involving exposed secrets, credentials, tokens, passwords, SaaS applications, and other application security vulnerabilities.
  • Navigate source-control repositories and review information associated with code changes, repositories, commits, pushes, pulls, and pull requests.
  • Partner with technical and security stakeholders to understand vulnerabilities and communicate findings in clear business and technical language.
  • Apply secure SDLC concepts when evaluating application and software-development risks.
  • Support data-governance activities involving sensitive information, including PHI and other protected data.
  • Help categorize, explain, and prioritize security risks using foundational cybersecurity principles.
  • Contribute to improving the accuracy and effectiveness of vulnerability-management processes.
Are you an experienced application security and data professional ready to make an impact?
  • Bring foundational experience in cybersecurity, application security, vulnerability management, software development, data analysis, or a closely related technical discipline.
  • Clearly understand source control management, including repositories, code check-in/check-out concepts, pushes, pulls, and pull requests.
  • Understand what secrets are within software environments, including credentials, passwords, API keys, access tokens, and similar sensitive values.
  • Demonstrate knowledge of the Software Development Life Cycle (SDLC) and how security is incorporated through a secure SDLC.
  • Understand common application-security vulnerabilities and how technical findings translate into organizational risk.
  • Bring working knowledge of data governance, sensitive-data handling, and concepts such as PHI.
  • Understand foundational cybersecurity principles, including confidentiality, integrity, availability, and basic risk concepts.
  • Be able to distinguish and explain concepts such as SaaS and DaaS.
  • Possess enough software-development knowledge to understand how applications, repositories, code changes, and security findings relate to one another.
  • Communicate technical and security concepts clearly to audiences with varying levels of technical expertise.
  • Be comfortable being evaluated on practical understanding rather than memorized terminology or years of experience alone.

#dice

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Specialist
Application Security Specialist

Motion Recruitment • Greensboro (NC)

Hybrid
USD 100,000 - 130,000
Application Security Analyst
Application Security Analyst

Myconsumers • Lake Forest (IL)

Hybrid
USD 67,000 - 109,000
Medical insurance
Dental insurance
Vision insurance
+2
Application Security Analyst
Application Security Analyst

AccruePartners • Fort Mill (SC)

Hybrid
USD 70,000 - 90,000
Ongoing investment in professional development
Exposure to modern security platforms
Collaborative team environment
Application Security Analyst
Application Security Analyst

Stellantis • Auburn (AL)

On-site
USD 90,000 - 120,000
Principal Application Security Engineer
Principal Application Security Engineer

Motion Recruitment • Charlotte (NC)

Hybrid
USD 140,000 - 190,000
Application Security Engineer-68257
Application Security Engineer-68257

Worky • Dallas (TX)

On-site
USD 120,000 - 180,000
Application Security Analyst
Application Security Analyst

IVID TEK INC • Plano (TX)

Hybrid
USD 130,000
Application Security Engineer
Application Security Engineer

Hampton North • United States

Remote
USD 110,000 - 150,000
Senior ServiceNow Vulnerability Response Developer & Security Data Analyst 3658133
Senior ServiceNow Vulnerability Response Developer & Security Data Analyst 3658133

Axiom Path • Charlotte (NC)

Hybrid
USD 120,000 - 180,000
Senior Lead Application Security Engineer (AppSec SME)
Senior Lead Application Security Engineer (AppSec SME)

Motion Recruitment • Charlotte (NC)

Hybrid
USD 140,000 - 190,000