Business Analyst_Secure Coding & Application Security
Core
Business Analyst supporting Secure Coding, Application Security, and DevSecOps transformation initiatives.
Role type
Business Analyst (DevSecOps & Secure Coding)
Builds
Secure Code Scanning solutions (Snyk, Fortify, SAST platforms) integrated into SDLC and CI/CD pipelines
Domain
Cybersecurity / Application Security / DevSecOps
Required skills
requirement gathering, functional and non-functional requirements analysis, secure coding standards definition, risk classification modeling, governance process design, SDLC integration, CI/CD pipeline integration, UAT support, change management, rollout planning
Preferred skills
experience with SAST platforms, stakeholder engagement, training delivery
Technologies
Snyk, Fortify, SAST platforms
Responsibilities
Gather and document requirements for secure code scanning solutions; Define secure coding standards and risk classification models; Collaborate with Security, Development, and DevOps teams to integrate controls into SDLC/CI/CD; Document workflows, operating procedures, and developer onboarding requirements; Develop user stories, process maps, and implementation documentation; Support UAT, training, and change management; Prepare rollout and go-live plans with operational readiness and metrics