Jobs · Analyst

Application Security Analyst

Cyber Focus AI · United States · 4 days ago
RemoteRemoteAnalystFull-time

About Sound

Sound Physicians was founded in 2001 and is headquartered in Nashville, TN. It is a physician-led medical group with over 4,000 clinicians and 1,000 business professionals across 45 states. The mission is to build exceptional clinical partnerships that provide quality, affordable, and dignified care.

About The Role

The Application Security Analyst helps embed security into the software delivery lifecycle by partnering with development, platform, cloud, and security teams to build secure-by-default processes. This role focuses on reducing risk through automation, continuous testing, secure configuration, and practical guidance that enables teams to ship software quickly and safely.

Essential Duties And Responsibilities

  • Partner with developers and platform engineers to identify, prioritize, and remediate application, API, container, and cloud security risks early in the development lifecycle.
  • Perform application security assessments, architecture reviews, and threat modeling exercises for new and existing applications.
  • Support vulnerability management by validating findings, reducing false positives, tracking remediation, and helping define risk-based service-level expectations.
  • Conduct secure code reviews and provide guidance on secure coding practices aligned with OWASP Top 10, CWE, and industry standards.
  • Develop and maintain secure pipeline standards, reusable guardrails, and policy-as-code checks that improve consistency without creating unnecessary delivery friction.
  • Collaborate with engineering, infrastructure, and security operations teams on incident response, root cause analysis, and hardening activities related to software delivery platforms.
  • Create and maintain documentation, standards, playbooks, and training materials related to application security, secure development, and DevSecOps practices.
  • Track vulnerability trends, security metrics, and recurring issues to improve security maturity across build, release, and runtime workflows.
  • Stay current on emerging threats, attack techniques, vulnerabilities, and security technologies relevant to application and cloud security.

Values

  • Collaborative: Demonstrates the ability to work well with others to accomplish a goal and get the work done; takes opinions of others into consideration; includes others in the decision-making process.
  • Eager to Learn: Proactively seeks out information, embraces learning new things and enjoys the learning process.
  • Intellectually Curious: Demonstrates a genuine interest in learning new things and wants to know the reason "why" behind the way things are done.

Similar jobs