AWS Application Security Engineer — DevSecOps Expert

System One

Birmingham (AL)

On-site

USD 120,000 - 180,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

System One is seeking an experienced AWS Application Security Analyst to join our security team in Birmingham, AL, with onsite work expectations across multiple U.S. locations.

You will secure applications throughout the software development lifecycle in a financial services environment. You will perform manual and automated security reviews, threat modeling, and remediation within CI/CD pipelines using SAST, DAST, and SCA tools and AWS cloud security practices.

Qualifications

  • 5+ years of experience in application security and secure software development practices.
  • Experience using SAST, DAST, and SCA tools to identify application vulnerabilities.
  • Experience conducting manual code reviews, threat modeling, and application security risk assessments.
  • Working knowledge of AWS security and securing applications deployed in cloud environments.
  • Experience with DevSecOps practices and integrating security testing into CI/CD pipelines.
  • Experience with GitHub, Jenkins, or comparable CI/CD platforms.
  • Understanding of container security and associated application security risks.
  • Programming or code review experience with Java, Python, JavaScript, C#, or similar languages.
  • Strong understanding of network protocols, encryption, authentication, and common application security vulnerabilities.
  • Ability to clearly communicate security findings and remediation recommendations to developers and other technical stakeholders.
  • Experience in financial services or another highly regulated environment is preferred.

Responsibilities

  • Perform manual and automated application and code security reviews to identify vulnerabilities and security risks.
  • Conduct threat modeling and security risk assessments for new and existing applications.
  • Work with development teams to identify appropriate remediation approaches for application security findings.
  • Utilize SAST, DAST, and Software Composition Analysis (SCA) tools as part of application security testing.
  • Support the integration of security controls and testing into CI/CD pipelines.
  • Evaluate application security considerations across AWS and containerized environments.
  • Apply knowledge of network protocols, encryption, secure coding practices, and common application vulnerabilities.
  • Partner with development and security teams to strengthen DevSecOps practices throughout the software development lifecycle.
  • Develop FAQs, guidance, and reusable security best practices for development and technology communities.

Skills

Application security
SAST
DAST
SCA tools
Threat modeling
CI/CD
AWS security
DevSecOps
Code review
GitHub
Jenkins
Container security
Java
Python
JavaScript
C#

Education

Bachelor's degree in Computer Science or related field

Tools

Jenkins
GitHub
Cloud security tooling

Job description

System One is seeking an experienced AWS Application Security Analyst to join our security team in Birmingham, AL, with onsite work expectations across multiple U.S. locations.

You will secure applications throughout the software development lifecycle in a financial services environment. You will perform manual and automated security reviews, threat modeling, and remediation within CI/CD pipelines using SAST, DAST, and SCA tools and AWS cloud security practices.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

AWS Application Security Engineer – DevSecOps & SDLC
AWS Application Security Engineer – DevSecOps & SDLC

System One • Columbia (SC)

Hybrid
USD 120,000 - 180,000
Health & welfare benefits
401(k) plan
AWS App Security Engineer - SDLC & DevSecOps
AWS App Security Engineer - SDLC & DevSecOps

System One • Birmingham (AL)

Hybrid
USD 110,000 - 160,000
AWS AppSec Engineer – SDLC & DevSecOps
AWS AppSec Engineer – SDLC & DevSecOps

System One • Lafayette (LA)

Hybrid
USD 110,000 - 140,000
AWS Application Security Analyst
AWS Application Security Analyst

System One • Birmingham (AL)

On-site
USD 120,000 - 180,000
AWS Application Security Analyst - Birmingham, AL
AWS Application Security Analyst - Birmingham, AL

System One • Birmingham (AL)

Hybrid
USD 110,000 - 160,000
AWS AppSec Analyst — Hybrid Role in FinServ
AWS AppSec Analyst — Hybrid Role in FinServ

System One • Lafayette (LA)

On-site
USD 110,000 - 150,000
AWS Application Security Analyst - Lafayette, LA
AWS Application Security Analyst - Lafayette, LA

System One • Lafayette (LA)

Hybrid
USD 110,000 - 140,000
AWS Application Security Analyst - Columbia, SC
AWS Application Security Analyst - Columbia, SC

System One • Columbia (SC)

Hybrid
USD 120,000 - 180,000
Health & welfare benefits
401(k) plan
AWS Application Security Analyst
AWS Application Security Analyst

System One • Lafayette (LA)

On-site
USD 110,000 - 150,000
AWS Application Security Engineer: App Security & Automation
AWS Application Security Engineer: App Security & Automation

Cybersecurity Jobs • Seattle (WA)

On-site
USD 159,000 - 202,000
Sign-on payments
Restricted stock units (RSUs)
Health insurance
+7