AWS Application Security Analyst

System One

Knoxville (TN)

On-site

USD 120,000 - 170,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

System One seeks an AWS Application Security Analyst to fortify security across software development lifecycle in a large financial services environment. You will perform manual and automated reviews, threat modeling, and remediation in AWS/cloud contexts while partnering with developers and security teams.

The role requires hands-on use of SAST/DAST/SCA, CI/CD integration, and strong communication to stakeholders. Hybrid work is available at client sites in multiple states including TN.

Qualifications

  • 5+ years of application security and secure software development practices.
  • Experience with SAST, DAST, and SCA tools to identify vulnerabilities.
  • Experience conducting manual code reviews, threat modeling, and risk assessments.
  • Working knowledge of AWS security and cloud deployments.
  • Experience with DevSecOps practices and CI/CD pipelines.

Responsibilities

  • Perform manual and automated app and code security reviews to identify vulnerabilities.
  • Conduct threat modeling and security risk assessments for new and existing applications.
  • Collaborate with development teams to remediate security findings.
  • Utilize SAST, DAST, and SCA tools in security testing.
  • Support integration of security testing into CI/CD pipelines.
  • Evaluate security in AWS and containerized environments.
  • Apply secure coding practices and encryption knowledge.
  • Help advance DevSecOps across the SDLC.
  • Create FAQs and reusable security guidance for teams.

Skills

Cloud security
Threat modeling
SAST/DAST/SCA
DevSecOps
CI/CD security
AWS security
Programming languages
Communication

Education

Bachelor's degree in CS/IS or related

Tools

GitHub
Jenkins

Job description

AWS Application Security Analyst *

Job Category: Software Development/ Engineering
Job Type: Permanent Full Time
Location: Various, , United States
No. Openings: 1

Description:

Position Description
Seeking an experienced AWS Application Security Analyst to support application security initiatives within a large financial services environment. This role will partner with development and technology teams to identify, assess, and remediate security risks throughout the software development lifecycle.

The Application Security Analyst will perform manual and automated security reviews, conduct threat modeling and risk assessments, and help development teams implement secure coding and DevSecOps practices. The role requires hands on experience with application security testing tools, CI/CD pipelines, and cloud security, with a strong emphasis on AWS environments.

We partner with 15 of the top 20 banks globally, and our top 10 banking clients have worked with us for an average of 26 years!

This role is located at a client site in either Birmingham, AL, Knoxville, TN, Columbia, SC or Lafayette, LA. A hybrid working model is acceptable.

Your future duties and responsibilities
  • Perform manual and automated application and code security reviews to identify vulnerabilities and security risks.
  • Conduct threat modeling and security risk assessments for new and existing applications.
  • Work with development teams to identify appropriate remediation approaches for application security findings.
  • Utilize SAST, DAST, and Software Composition Analysis (SCA) tools as part of application security testing.
  • Support the integration of security controls and testing into CI/CD pipelines.
  • Evaluate application security considerations across AWS and containerized environments.
  • Apply knowledge of network protocols, encryption, secure coding practices, and common application vulnerabilities.
  • Partner with development and security teams to strengthen DevSecOps practices throughout the software development lifecycle.
  • Develop FAQs, guidance, and reusable security best practices for development and technology communities.
Required qualifications to be successful in this role
  • 5+ years of experience with application security and secure software development practices.
  • Experience using SAST, DAST, and SCA tools to identify application vulnerabilities.
  • Experience conducting manual code reviews, threat modeling, and application security risk assessments.
  • Working knowledge of AWS security and securing applications deployed in cloud environments.
  • Experience with DevSecOps practices and integrating security testing into CI/CD pipelines.
  • Experience with GitHub, Jenkins, or comparable CI/CD platforms.
  • Understanding of container security and associated application security risks.
  • Programming or code review experience with Java, Python, JavaScript, C#, or similar languages.
  • Strong understanding of network protocols, encryption, authentication, and common application security vulnerabilities.
  • Ability to clearly communicate security findings and remediation recommendations to developers and other technical stakeholders.
  • Experience in financial services or another highly regulated environment is preferred.
Desired Skillset

Relevant security or cloud certifications, such as AWS Certified Security - Specialty, CISSP, CSSLP, or GIAC application security certifications, may be beneficial.

Education

Bachelor's degree in Computer Science, Information Systems, or a related field.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AWS Application Security Engineer (DevSecOps)
AWS Application Security Engineer (DevSecOps)

System One • Knoxville (TN)

Hybrid
USD 120,000 - 170,000
Application Security Engineer, AWS Proactive Security
Application Security Engineer, AWS Proactive Security

Amazon Web Services (AWS) • Herndon (VA)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
+1
Application Security Architect & Engineer
Application Security Architect & Engineer

Mbi Llc • Richmond (VA)

On-site
USD 120,000 - 150,000
Senior AWS Python Developer
Senior AWS Python Developer

System One • Hoover (AL)

Hybrid
USD 110,000 - 150,000
Hybrid work model
Application Security Analyst
Application Security Analyst

Myconsumers • Lake Forest (IL)

Hybrid
USD 67,000 - 109,000
Medical insurance
Dental insurance
Vision insurance
+2
Security & Compliance Engineer II, AWS Security Assurance Services, LLC
Security & Compliance Engineer II, AWS Security Assurance Services, LLC

Amazon Web Services (AWS) • Arlington (VA)

On-site
USD 159,000 - 202,000
Application Security Engineer, AppSec ASSET
Application Security Engineer, AppSec ASSET

Amazon • Seattle (WA)

On-site
USD 159,000 - 202,000
Security Engineer, AWS AppSec
Security Engineer, AWS AppSec

Amazon Web Services (AWS) • Herndon (VA)

On-site
USD 136,000 - 184,000
Cybersecurity Analyst (AWS Cloud Security)
Cybersecurity Analyst (AWS Cloud Security)

Barton Malow Builders • Southfield (MI)

On-site
USD 80,000 - 110,000
Principal Security Solutions Architect , AWS Financial Services
Principal Security Solutions Architect , AWS Financial Services

Amazon Web Services (AWS) • Chicago (IL)

On-site
USD 183,000 - 247,000
Health insurance
401(k) matching
Paid time off