AWS Application Security Analyst

System One

Lafayette (LA)

On-site

USD 110,000 - 150,000

Full time

8 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

System One is seeking an experienced AWS Application Security Analyst to join our team in a hybrid role supporting a large financial services environment. The role partners with software development, cloud, DevOps, and cybersecurity teams to identify, assess, and remediate security risks across the SDLC.

You will perform manual and automated reviews, conduct threat modeling, and help embed secure coding, DevSecOps practices, and AWS security into CI/CD pipelines.

Qualifications

  • 5+ years of application security experience and secure SDLC knowledge.
  • Hands-on with SAST, DAST, and SCA tools.
  • Experience performing manual code reviews and security assessments.
  • Strong threat modeling and risk assessment skills.
  • Experience with AWS security and cloud deployments.
  • DevSecOps experience and CI/CD integration.
  • Familiarity with GitHub/Jenkins or similar CI/CD platforms.
  • Understanding of container security and related risks.
  • Proficiency in Java, Python, JavaScript, or C#.

Responsibilities

  • Perform manual and automated application and source-code security reviews to identify vulnerabilities and security risks.
  • Conduct threat modeling and application security risk assessments for new and existing applications.
  • Work with development teams to determine appropriate remediation approaches for security findings.
  • Utilize SAST, DAST, and SCA tools for application security testing.
  • Integrate application security controls and automated security testing into CI/CD pipelines.
  • Evaluate application security risks across AWS cloud and containerized environments.
  • Apply knowledge of secure coding practices, network protocols, encryption, authentication, and common application vulnerabilities.
  • Partner with development, DevOps, cloud, and cybersecurity teams to strengthen DevSecOps practices throughout the SDLC.
  • Develop security guidance, FAQs, standards, and reusable application security best practices for development teams.
  • Clearly communicate vulnerabilities, security risks, and remediation recommendations to technical stakeholders.

Skills

Application security
Threat modeling
Secure coding practices
Communication skills

Education

Bachelor's degree in Computer Science or related

Tools

SAST tools
DAST tools
SCA tools
CI/CD tools
GitHub/Jenkins
Container security tools

Job description

AWS Application Security Analyst

Job Type: Permanent Full-Time | Work Model: Hybrid | Locations: Birmingham, AL | Knoxville, TN | Columbia, SC | Lafayette, LA

Visa: USC, GC, EAD (No Sponsorship)

Position Overview

We are seeking an experienced AWS Application Security Analyst to support application security initiatives within a large-scale financial services environment. This role will partner closely with software development, cloud, DevOps, and cybersecurity teams to identify, assess, and remediate security risks throughout the Software Development Lifecycle (SDLC).

Responsibilities
  • Perform manual and automated application and source-code security reviews to identify vulnerabilities and security risks.
  • Conduct threat modeling and application security risk assessments for new and existing applications.
  • Work with development teams to determine appropriate remediation approaches for security findings.
  • Utilize SAST, DAST, and Software Composition Analysis (SCA) tools for application security testing.
  • Integrate application security controls and automated security testing into CI/CD pipelines.
  • Evaluate application security risks across AWS cloud and containerized environments.
  • Apply knowledge of secure coding practices, network protocols, encryption, authentication, and common application vulnerabilities.
  • Partner with development, DevOps, cloud, and cybersecurity teams to strengthen DevSecOps practices throughout the SDLC.
  • Develop security guidance, FAQs, standards, and reusable application security best practices for development teams.
  • Clearly communicate vulnerabilities, security risks, and remediation recommendations to technical stakeholders.
Required Qualifications
  • 5+ years of application security experience and strong knowledge of secure software development practices.
  • Hands-on experience with SAST, DAST, and SCA tools.
  • Experience performing manual code reviews and application security assessments.
  • Strong experience with threat modeling and security risk assessments.
  • Working knowledge of AWS security and securing applications deployed in AWS environments.
  • Experience with DevSecOps and integrating security testing into CI/CD pipelines.
  • Experience with GitHub, Jenkins, or similar CI/CD platforms.
  • Understanding of container security and associated application security risks.
  • Programming or code-review experience with Java, Python, JavaScript, C#, or similar languages.
  • Strong understanding of:
    • Network protocols
    • Encryption
    • Authentication and authorization
    • Secure coding practices
    • Common application vulnerabilities
  • Strong communication skills with the ability to explain security findings and remediation recommendations to developers and technical teams.
Preferred Qualifications
  • Experience within financial services, banking, or another highly regulated environment.
  • Relevant security or cloud certifications such as:
    • AWS Certified Security – Specialty
    • CISSP
    • CSSLP
    • GIAC Application Security certifications
Education

Bachelor's degree in **Computer Science, Information Systems, Cybersecurity, or a related

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AWS Application Security Analyst - Birmingham, AL
AWS Application Security Analyst - Birmingham, AL

System One • Birmingham (AL)

Hybrid
USD 110,000 - 160,000
AWS Application Security Analyst
AWS Application Security Analyst

System One • Columbia (SC)

On-site
USD 110,000 - 150,000
AWS Application Security Analyst
AWS Application Security Analyst

System One • Birmingham (AL)

On-site
USD 110,000 - 145,000
Health/dental/vision benefits
401(k) plan
Life insurance
AWS Application Security Analyst
AWS Application Security Analyst

System One • Knoxville (TN)

On-site
USD 110,000 - 160,000
AWS Application Security Analyst - Lafayette, LA
AWS Application Security Analyst - Lafayette, LA

System One • Lafayette (LA)

Hybrid
USD 110,000 - 140,000
AWS Application Security Engineer (SDLC & DevSecOps)
AWS Application Security Engineer (SDLC & DevSecOps)

System One • Columbia (SC)

Hybrid
USD 110,000 - 150,000
Application Security Architect & Engineer
Application Security Architect & Engineer

Mbi Llc • Richmond (VA)

On-site
USD 120,000 - 150,000
AWS Application Security Analyst: SDLC & DevSecOps Champion
AWS Application Security Analyst: SDLC & DevSecOps Champion

System One • Birmingham (AL)

Hybrid
USD 110,000 - 145,000
Health/dental/vision benefits
401(k) plan
Life insurance
Cloud Application Software Security Engineer
Cloud Application Software Security Engineer

Experis • St. Louis (MO)

Hybrid
USD 124,000 - 165,000
Remote work possible
Exposure to AWS GovCloud
Federal environment experience
+2
Security Engineer, CS Security
Security Engineer, CS Security

Amazon • Seattle (WA)

On-site
USD 90,000 - 150,000
Flexible work hours
Training and career growth opportunities
Work-life balance initiatives
+1