Application Security Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

FCA · 4 weeks ago

Application Security Analyst

FCA is seeking an Application Security Analyst who will work with application development teams to analyze application code vulnerabilities and run security scans. The role involves implementing security controls in the software development lifecycle and providing guidance to application teams to mitigate security issues.

Information TechnologyTelecommunications
check
H1B Sponsor Likelynote

Responsibilities

Hands-on experience working with DevSecOps pipeline using CICD automation tools like Jenkins, TeamCity, GitLab, GitHub Action, Checkmarx, GitHub Advance Security, BurpSuite, and open-source tools
Implement Application Cyber Security Controls/Policies and standards developed by Application Security Program
Lead deployment of WAF for existing and new applications
Ability to demo security vulnerability to application teams
Drive application security issues to a resolution
Provide a clear guidance to application teams during vulnerability mitigation effort
Conduct application security assessment using standard Stellantis application security tools
Collect and report status on application security assessments including milestones, deliverables, timing, tasks, risk areas, and status
Categorize and recommend assessment strategies for existing and new application development
Coach development and supplier teams on application security
Develop user training material and conduct training sessions

Qualification

Application Security AnalysisSASTDASTIASTWAF DeploymentDevSecOps PipelineProgramming LanguagesSecurity FrameworksCloud PlatformsTraining DevelopmentTechnical WritingProblem-SolvingCommunication SkillsTeam Collaboration

Required

Bachelor's degree in computer science, Technology or other related field
Strong understanding of application architectures, development methodologies, and programming languages
Problem-solving skills and the ability to work both independently and as part of a team
Technical writing and communication skills to articulate security risks and findings to both technical and non-technical audiences
Background experience with application development - compiled code, mobile applications, website design, web services
Hands on experience running SAST, DAST, IAST, SCA and Mobile scans
Knowledge of security and compliance frameworks like NIST and ISO
Understanding and experience in NIST SSDF or other secure software development frameworks
Experienced and knowledgeable in deployment of WAF tools such as Akamai, Cloudflare, Azure Front Door, and AWS WAF etc
Knowledge of the OWASP Top 10 and mitigation strategies for each
Knowledge on techniques of web attacks, DDoS attacks and BOT attacks and management/mitigation controls for them
Experienced with cloud platforms (AWS, Azure, GCP) and container frameworks
Knowledge of programming, scripting, and query languages such as Java, SQL, HTML, JavaScript
At least 5 years of application security analysis, testing and DevSecOps experience

Preferred

Hands on experience reviewing application security secure code preferred in Java, C#, Python etc. popular programming languages
Prefer that candidates will have experience in scripting languages
Preferable is candidate has GIAC GWEB, ISC2 CSSLP, EC-Council CASE or other comparable professional certificates

Benefits

Comprehensive Health & Well-being Coverage
Generous Paid Time Off
Competitive Retirement Savings Plans
Income Protection & Insurance Options
Company Vehicle Lease Program
Family Building Benefit
Support for Your Growth and Giving Back
Tuition reimbursement
Student loan refinancing programs
18 paid volunteer hours each year to make a difference in your community

Company

FCA

twittertwitter
company-logo
FCA is one of the largest technology integrators in the field of fiber optic systems for building optical teletransmission networks.

H1B Sponsorship

FCA has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (328)
2024 (220)
2023 (246)
2022 (346)
2021 (182)
2020 (213)

Funding

Current Stage
Growth Stage
Company data provided by crunchbase