Application Security Analyst
Location
United States
Posted
7 days ago
Salary
$63.3K - $101.1K / year
Seniority
Mid Level
Job Description
Application Security Analyst
DHL eCommerce
Role Description The Application Security Analyst is responsible for ensuring the security of homegrown and 3rd party applications. The role emphasizes analytical and advisory responsibilities rather than hands-on implementation, supporting secure architecture practices, overseeing the security posture of applications (including cloud and AI solutions), and providing transparency to IT management through status reporting and risk insights. - Assess and advise on security architecture and configuration of systems, applications, and infrastructure. - Collaborate with the DevSecOps team on state-of-the-art procedures. - Independently assess the results of security test reports like static code analysis, dynamic application analysis, and penetration testing. - Support development teams with the mitigation of findings. - Work within a fast-paced, agile environment collaborating with business and technology teams across the Americas region to implement and support next generation security solutions. Qualifications - Knowledge of OWASP Top 10 and ASVS frameworks including best practice implementations. - Experience with cloud security and AI security standards (e.g. ISO 27017, CSA CCM, NIST AI RMF, ISO 42001) and best practices. - Ability to interpret different coding languages including Python, Java, ReAct, and JavaScript as well as further widespread languages. - Excellent organizational and analytical skills. - Ability to analyze data, draw conclusions, interpret results, and make recommendations with respect to various IT systems. - Ability to communicate effectively with all levels of management. - Ability to work effectively in a global environment, including awareness of and sensitivity to cultural differences. - Ability to produce high quality work under pressure or tight deadlines. - Good written, oral, and interpersonal communication skills. - Strong Microsoft Office skills (Word, Excel, PowerPoint). - Strong attention to detail. - Ability to multi-task. Requirements - Bachelor’s degree in information technology, or related field of study preferred. - 3+ years of experience required in application security, DevSecOps, or security architecture. - Experience with best practices and tools in API security, container security, modern identity frameworks, and supply chain security. - Knowledge of most common SAST, DAST, and penetration testing tools and procedures. - Experience with CVSS, risk management, and GRC tools. - Experience and knowledge of Microsoft Office (Word, Excel, PowerPoint). - Process automation experience preferred. - Experience working with a global organization and/or interacting with colleagues in foreign jurisdictions. - Security certifications such as CISSP, CISA, CEH, OSCP, or CCSP are preferred. Benefits - Competitive Pay - Bonus Programs - Retirement Savings - 401k with company match - Medical, Dental, Vision, Well-being programs - FSA/HSA availability - Tuition Reimbursement - Paid Time Off including vacation and sick time - Company Paid Holidays and Floating Holidays - Paid Parental Leave - Employee Discount Program - Employee Assistance & Work Life Program - Short Term and Long-Term Disability - Life Insurance
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Control Assessor
ImagineeerFounded on a set of values that prioritizes imagination, thought, and a socratic approach to creating the future.
• Support security control assessment activities • Gather and organize assessment evidence • Document security control implementation • Conduct security testing and evaluations • Assist with vulnerability scans and analysis • Create of assessment reports and briefings • Maintain assessment documentation and tracking sheets • Lead security control interviews • Prepare assessment deliverables • Applying NIST security controls and frameworks • Support continuous monitoring activities • Assist with security documentation review • Contribute to Plans of Action and Milestones (POA&Ms) development • Participate in team meetings and technical discussions
• Manage and maintain servers (On-prem/ Azure), Active Directory (Entra ID), user accounts, and monitoring systems • Maintain networks, hardware, and storage systems to ensure stable and efficient operations • Provide high-level technical support to end users and resolve infrastructure related issues • Maintain firewalls, endpoint protection, and access control; enforce security policies to ensure system integrity • Manage backup processes, disaster recovery (DR), and routine MS-SQL Server maintenance • Professional management of external IT and security vendors when required.
• Manage and maintain servers (On-prem/ Azure), Active Directory (Entra ID), user accounts, and monitoring systems • Maintain networks, hardware, and storage systems to ensure stable and efficient operations • Provide high-level technical support to end users and resolve infrastructure related issues • Maintain firewalls, endpoint protection, and access control; enforce security policies to ensure system integrity • Manage backup processes, disaster recovery (DR), and routine MS-SQL Server maintenance • Professional management of external IT and security vendors when required.
Senior Network Engineer – Route/Switch, Security
Velocity, A Managed Solutions CompanyTechnology solutions and service provider of voice, data, and network connectivity for multi-location enterprises.
• Provide expertise in network-based technologies primarily focused on routing, switching, and network security — supporting enterprise LAN/WAN infrastructure in hospitality, off campus housing, and enterprise environments • Design, implement, and manage next-generation firewall (NGFW) solutions, with primary focus on Fortinet FortiGate platforms • Develop, audit, and maintain firewall rule sets, ACL policies, and security zone architectures across managed customer environments • Perform ACL analysis and policy review to identify redundant, shadowed, or non-compliant rules and recommend remediation • Act as a mentor and leader of engineering and operations teams • Serve as an escalation contact for technical engineering teams • Perform design work that incorporates industry best practices for managed networks • Function as a technical lead for projects requiring network technologies • Ensure that security improvements are successfully implemented and monitored • Coordinate proper installation, configuration, and testing of network components • Assist in developing and maintaining hardware life cycle management methodologies • Create and maintain documentation to support the implementation and management of network technologies • Contribute to Velocity’s technology roadmap development • Collaborate with architecture function to ensure that designs are in line with the needs of the current and future requirements from our customers, network platforms, and security compliance • Engage and manage external vendors as appropriate to enhance the team’s capabilities • Other duties and responsibilities, as assigned



