Senior Application Security Analyst

Washington, DC

GCyber

GCyber, a leading government IT contractor, specializes in empowering U.S. Defense and Federal agencies with cutting-edge technology solutions. We provide top-tier Infrastructure and Operations, Security and Risk Management, and Portfolio &...

View all jobs at GCyber

Apply now Apply later

GCyber is hiring a Senior Application Security Analyst to support a high-profile Government customer in Washington, DC.

The role involves enforcing security best practices like the OWASP Top 10 to ensure secure development. You'll conduct static and dynamic application security testing on cloud applications to identify vulnerabilities. You'll also provide guidance to developers on improving code quality, managing secrets, and securing dependencies.

As the Senior Application Security Analyst, your responsibilities include:

  • Enforce security best practices (e.g., OWASP Top 10).
  • Apply your expertise in application security to perform application security testing on portfolio of cloud applications (e.g., static / dynamic)
  • Review developer findings and validate proposed fixes.
  • Provide security guidance to developers on code, secrets, and dependencies.
  • Ensure timely action on vulnerabilities identified in testing.
  • Support secure and compliant application development.
  • Perform ad-hoc risk assessments on applications.

Minimum Qualifications and Experience:  
  • Active TS/SCI clearance 
  • BA/BS Degree in Information Technology, Cybersecurity, or a related field (6 years additional experience may be substituted for a degree) 
  • 7+ years of experience including hands on knowledge and experience performing application security assessments.  
  • DoD 8570 IAT II Certification (Security+, CySA+, CCNA-Security, CND, GICSP, GSEC, SSCP)
  • Excellent verbal and written communication skills. 
  • Experience drafting and/or supporting the development of cybersecurity policies in Federal Government environments.  
  • Proactive and solutions-oriented, willing to take initiative to recommend and collaborate across functional teams execute improvements  

Our Benefits

GCyber is committed to the well-being and development of every employee. Our benefits are designed to support your personal and professional goals, from health and wellness programs to retirement savings and career development opportunities. Highlights include:

  • 26 Days of Paid Leave + Annual PTO Increase
  • An extra day of paid leave for every year of employment with GCyber
  • Paid Parental Leave
  • Additional Leave Allowances for Military Duty, Jury Duty, and Bereavement Leave
  • 401(k) Matching
  • 100% Company-funded Disability Insurance
  • 90% Company-Funded Health, Dental, and Vision Insurance, with contributions to insurance benefits for spouses, children, and family members
  • Training and Professional Development Plans
  • Commuter Benefits Plan
  • Parking and Transportation Allowance

Equal Opportunity Employer

GCyber is an Equal Opportunity Employer. This means you don't have to worry about whether your application process will be fair. We consider all applicants without regard to race, color, religion, age, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, veteran status, or disability.

Stay in Touch

For future job notifications please follow GCyber on LinkedIn. https://linkedin.com/company/gcyber

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Application security Clearance Cloud CND DAST DoD DoDD 8570 GICSP GSEC OWASP Risk assessment Security assessment SSCP TS/SCI Vulnerabilities

Perks/benefits: Career development Health care Insurance Parental leave Wellness

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.