AWS Application Security Analyst - Columbia, SC

System One

Columbia (SC)

Hybrid

USD 120,000 - 180,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health & welfare benefits
401(k) plan

Job summary

System One is seeking an experienced AWS Application Security Analyst to support application security initiatives within a large financial services environment. The role partners with software development, cloud, DevOps, and cybersecurity teams to identify, assess, and remediate security risks throughout the SDLC.

This role requires hands-on experience with SAST, DAST, SCA, threat modeling, secure code review, DevSecOps, CI/CD security, AWS security, and container security, and the ability to

Qualifications

  • 5+ years of application security experience.
  • Hands-on with SAST, DAST, and SCA tools.
  • Manual code reviews and security assessments.
  • Threat modeling and security risk assessments.
  • AWS security in cloud environments.
  • DevSecOps with CI/CD pipelines.
  • Experience with GitHub/Jenkins or similar CI/CD platforms.
  • Container security knowledge.
  • Programming or code-review in Java, Python, JavaScript, or C#.
  • Strong knowledge of network protocols, encryption, and authentication.

Responsibilities

  • Perform manual and automated application and source-code security reviews to identify vulnerabilities and security risks.
  • Conduct threat modeling and application security risk assessments for new and existing applications.
  • Work with development teams to determine remediation approaches for security findings.
  • Utilize SAST, DAST, and SCA tools for application security testing.
  • Integrate application security controls and automated testing into CI/CD pipelines.
  • Evaluate security risks across AWS cloud and containerized environments.
  • Apply secure coding practices and knowledge of networks, encryption, and auth.
  • Collaborate with DevOps, cloud, and cybersecurity teams to strengthen DevSecOps in the SDLC.
  • Develop security guidance, FAQs, standards, and reusable best practices for development teams.
  • Communicate vulnerabilities and remediation recommendations clearly to technical stakeholders.

Skills

App security exp
SAST
DAST
SCA
Threat modeling
DevSecOps
CI/CD security
AWS security
Container security
Secure coding
Communication

Education

Bachelor's degree

Tools

GitHub
Jenkins
CI/CD tools

Job description

AWS Application Security Analyst

Job Type: Permanent Full-Time
Work Model: Hybrid
Locations: Birmingham, AL | Knoxville, TN | Columbia, SC | Lafayette, LA

Position Overview

We are seeking an experienced AWS Application Security Analyst to support application security initiatives within a large-scale financial services environment.

This role will partner closely with software development, cloud, DevOps, and cybersecurity teams to identify, assess, and remediate security risks throughout the Software Development Lifecycle (SDLC).

The ideal candidate will have strong hands‑on experience with application security testing, SAST, DAST, SCA, threat modeling, secure code review, DevSecOps, CI/CD security integration, AWS security, and container security.

Responsibilities
  • Perform manual and automated application and source-code security reviews to identify vulnerabilities and security risks.
  • Conduct threat modeling and application security risk assessments for new and existing applications.
  • Work with development teams to determine appropriate remediation approaches for security findings.
  • Utilize SAST, DAST, and Software Composition Analysis (SCA) tools for application security testing.
  • Integrate application security controls and automated security testing into CI/CD pipelines.
  • Evaluate application security risks across AWS cloud and containerized environments.
  • Apply knowledge of secure coding practices, network protocols, encryption, authentication, and common application vulnerabilities.
  • Partner with development, DevOps, cloud, and cybersecurity teams to strengthen DevSecOps practices throughout the SDLC.
  • Develop security guidance, FAQs, standards, and reusable application security best practices for development teams.
  • Clearly communicate vulnerabilities, security risks, and remediation recommendations to technical stakeholders.
Required Qualifications
  • 5+ years of application security experience and strong knowledge of secure software development practices.
  • Hands‑on experience with SAST, DAST, and SCA tools.
  • Experience performing manual code reviews and application security assessments.
  • Strong experience with threat modeling and security risk assessments.
  • Working knowledge of AWS security and securing applications deployed in AWS environments.
  • Experience with DevSecOps and integrating security testing into CI/CD pipelines.
  • Experience with GitHub, Jenkins, or similar CI/CD platforms.
  • Understanding of container security and associated application security risks.
  • Programming or code‑review experience with Java, Python, JavaScript, C#, or similar languages.
  • Strong understanding of:
    • Network protocols
    • Encryption
    • Authentication and authorization
    • Secure coding practices
    • Common application vulnerabilities
  • Strong communication skills with the ability to explain security findings and remediation recommendations to developers and technical teams.
Preferred Qualifications
  • Experience within financial services, banking, or another highly regulated environment.
  • Relevant security or cloud certifications such as:
    • AWS Certified Security – Specialty
    • CISSP
    • CSSLP
    • GIAC Application Security certifications
Education
  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or related field.

System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

#M-

#LI-

Ref: #404-IT Pittsburgh

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AWS Application Security Analyst - Birmingham, AL
AWS Application Security Analyst - Birmingham, AL

System One • Birmingham (AL)

Hybrid
USD 110,000 - 160,000
AWS Application Security Analyst - Lafayette, LA
AWS Application Security Analyst - Lafayette, LA

System One • Lafayette (LA)

Hybrid
USD 110,000 - 140,000
AWS Application Security Analyst
AWS Application Security Analyst

System One • Lafayette (LA)

On-site
USD 110,000 - 150,000
AWS Application Security Analyst
AWS Application Security Analyst

System One • Birmingham (AL)

On-site
USD 120,000 - 180,000
AWS Application Security Engineer – DevSecOps & SDLC
AWS Application Security Engineer – DevSecOps & SDLC

System One • Columbia (SC)

Hybrid
USD 120,000 - 180,000
Health & welfare benefits
401(k) plan
AWS Application Production Support Engineer
AWS Application Production Support Engineer

System One • Lafayette (LA)

On-site
USD 90,000 - 120,000
Health insurance
Dental
Vision
+1
AWS AppSec Engineer – SDLC & DevSecOps
AWS AppSec Engineer – SDLC & DevSecOps

System One • Lafayette (LA)

Hybrid
USD 110,000 - 140,000
AWS App Security Engineer - SDLC & DevSecOps
AWS App Security Engineer - SDLC & DevSecOps

System One • Birmingham (AL)

Hybrid
USD 110,000 - 160,000
Senior AWS IAM & Data Engineer
Senior AWS IAM & Data Engineer

System One • Lafayette (LA)

On-site
USD 120,000 - 160,000
Application Security Engineer
Application Security Engineer

Cybersecurity Jobs • Arlington (VA)

On-site
USD 159,000 - 202,000
Health insurance
401(k) matching
Paid time off
+3