Application Security Analyst

CloudShape
Washington, DC, US
Full-time

Job Description

Job Description

Application Security Analyst

Location : Remote

Citizenship required : Yes

Clearance Type : Secret

Telecommute : Yes

Travel Required : No

Positions Available :

At Cloudshape our employees have incredible opportunities to work in helping organizations securely transform their IT Infrastructure to meet the changing business cultures.

We help government agencies transform their IT infrastructure using a solutions-driven approach that focuses on business outcomes rather than activities and tasks.

This results in reduced capital requirements; lower and predictable operating costs; better alignment with business objectives; and reduced risk.

Our people make us who we are. We believe that to be a good partner for our clients we must have a solid team dynamic. We place emphasis on personal growth, learning new skills and we offer a remote work policy.

Cloudshape is experiencing rapid growth within our IT & Engineering Portfolio. We are currently seeking a talented A pplication Security Analyst to join our growing team.

This person will be responsible for assisting various technical teams in maintaining the security of web applications and application servers within the customer’s portfolio.

To be considered for this position, US Citizenship and an active secret security clearance is required.

Basic Qualifications :

  • Relevant experience is required for these positions. These positions can be filled at multiple levels.
  • For a Jr. Level Application Security Analyst, Four (4) years of relevant experience is required.
  • For a Mid Level Application Security Analyst, Eight (8) years of relevant experience is required.
  • For a Sr. Level Application Security Analyst, Twelve (12) years of relevant experience is required.
  • Strong understanding of web application security principles, common vulnerabilities, and best practices (e.g., OWASP Top Ten).
  • Familiarity with security testing tools and techniques, including web vulnerability scanners, penetration testing, and code review.
  • Solid knowledge of various operating systems, including both Windows and Linux, and their security features.
  • Understanding of network protocols, firewall configurations, and network security concepts.
  • Strong communication skills to collaborate with development teams, articulate security findings, and provide recommendations for remediation.
  • Strong analytical skills to identify and assess security risks and develop strategies for mitigation.
  • US Citizen with an active secret security clearance.

Preferred Qualifications :

  • Knowledge of security frameworks and standards like NIST Cybersecurity Framework.
  • Proficiency in using a range of security tools including Nessus and Qualys.
  • Familiarity with cloud security principles and experience securing web applications hosted in cloud environments like AWS, Azure, or Google Cloud.
  • Experience in conducting web application security assessments, vulnerability scanning, and penetration testing.
  • Understanding of incident response processes and the ability to participate in security incident investigations.
  • Basic certifications in web application security or general security, such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH).

What a new Cloudshape team member can expect starting out :

During the first 30 days of employment onboarding activities to include training requirements, program overviews, system familiarization, and department-specific training will establish a solid foundation for the new Cloudshape team member.

Introductions to management and team leads will provide insight into the team dynamics while identifying key areas where the new Cloudshape team member can provide value to the program.

Day 30 through 90 will consist of further integrating the new Cloudshape team member into daily activities with a team lead to guide them.

Tasks will be assigned in accordance with the appropriate pace needed to ensure process and system assimilation.

Day 90 and onward will consist of mission-guided projects and opportunities for the new Cloudshape team member to collaborate in a cross-functional team environment.

From leading day-to-day activities in the operations department, this person will have the ability to invest in their future while delivering maximum value to our customer.

Cloudshape is committed to employee growth through learning, training, advancement, and rewards. We offer a full range of benefits that includes :

  • Flexible Work Schedule
  • Paid Time Off
  • Medical, Dental and Vision Insurance
  • Cloudshape will contribute to 401K plans without any employee contributions.
  • Profit Sharing
  • Life Insurance and AD&D Insurance
  • Short-Term and Long-Term Disability Insurance
  • Training Assistance
  • Employee Referral Program

The health and safety of our employees and their families is a top priority. The company encourages employees to remain up-to-date on their COVID-19 vaccinations.

U.S. Cloudshape employees may be required, in the future, to be vaccinated or have an approved disability / medical or religious accommodation, pursuant to future court decisions and / or government action on the currently stayed federal contractor vaccine mandate under Executive Order 14042 https : / / www.

saferfederalworkforce.gov / contractors / .

Cloudshape is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity / Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class.

U.S. Citizenship is required for most positions.

Powered by JazzHR

vjDGAEiZQF

28 days ago
Related jobs
Promoted
VirtualVocations
Washington, District of Columbia

A company is looking for an Application Security Analyst. ...

Promoted
GCyber
Washington, District of Columbia

Apply your expertise in application security to perform application security testing on portfolio of cloud applications (e. GCyber is hiring a Senior Application Security Analyst, for high profile government contract. As a Senior Application Security Analyst, you will,  . Work with the Cus...

Promoted
CloudShape
Washington, District of Columbia

Basic certifications in web application security or general security, such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH). This person will be responsible for assisting various technical teams in maintaining the security of web ap...

GCyber
Washington, District of Columbia

Work with the Customer to develop a secure code policy that ensures the health, security, and compliance of the application portfolio and for leading the establishment of a plan for automated code analysis that incorporates security code scanning throughout the development lifecycle Apply your exper...

CloudShape
Washington, District of Columbia

Basic certifications in web application security or general security, such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH). Application Security Analyst Location:  Remote Citizenship required:  Yes Clearance Type:  S...

Promoted
Chenega MIOS SBU
Washington, District of Columbia

Complete ATF mandatory training on computer security awareness and occupant emergency evacuation, etc. Prior knowledge of Semantica Pro, i2 Analyst Notebook (link/trend analysis), National Crime Information Center (NCIC), TECS, CLEAR or Accurint, firearms traces, and firearms. ...

Promoted
Aeyon
Washington, District of Columbia

Provides expertise to relevant budget and resource management principles and practices for developmental and operational programs.Knowledge, skills, and abilities in the Planning, Programming Budgeting and Execution phases of the DoD budget.Capable of utilizing, adapting and developing budget and re...

Promoted
LMI
Washington, District of Columbia

LMI is seeking a Program Management Analyst to support our Department of Homeland Security (DHS) customer. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualification...

Promoted
ManTech
Washington, District of Columbia

Contribute to the development of sections of systems engineering documentation, such as Systems Engineering Plans, initial capability documents, requirements specifications, and interface control documents. Relevant industry standard certifications such as INCOSE Certified Systems Engineering Profes...

Promoted
VirtualVocations
Washington, District of Columbia

A company is looking for a Senior Trade Compliance Analyst responsible for overseeing export operational activities. ...