Application Security Analyst II - AI
Core
Application Security Analyst supporting and enhancing the application security program by integrating security into software development lifecycles and collaborating with development teams.
Role type
Mid-level IC application security analyst
Builds
Secure software applications and development processes for a banking institution
Domain
Banking / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Application security vulnerability identification, threat modeling, secure coding techniques, OWASP Top 10 knowledge, server-side and client-side security understanding, security policy development, security training facilitation, process improvement metrics
Preferred skills
CSSLP certification, Security+ certification, application security maturity models (OWASP, SAMM, BSIMM), API and microservices security controls, Waterfall and Agile development experience
Technologies
OWASP, SAMM, BSIMM
Responsibilities
Identify application security vulnerabilities and remediate weaknesses with development teams; Lead risk assessments and contribute to threat modeling; Research and evaluate security tools and technologies; Make recommendations to enhance security policies and procedures; Facilitate security training for application development staff; Participate on software development project teams as a security advisor; Gather metrics to formulate process improvement initiatives
Seniority
Mid-level, hands-on IC