Senior Associate Security Analyst (Application Security Team)
Truist · Atlanta, GA · Today
Information TechnologyFull-time
About the role
We are seeking a Senior Associate Security Analyst to join our Application Security team and help improve the security of enterprise applications throughout the Software Development Lifecycle (SDLC). This is an excellent opportunity for an early-career security professional who is passionate about cybersecurity, secure software development, and vulnerability management. The role will provide hands-on experience working with developers, DevOps engineers, and security professionals to identify, assess, and remediate security vulnerabilities across a variety of technologies and platforms.
Essential Duties and Responsibilities
- Analyze and triage vulnerabilities identified through application security scanning tools.
- Assist development teams with understanding security findings and remediation recommendations.
- Support vulnerability remediation efforts and track remediation progress.
- Participate in application security control testing and validation activities.
- Collect and document evidence required for security assessments and audits.
- Generate and maintain security metrics, reports, and dashboards.
- Collaborate with development and DevOps teams to promote secure coding practices.
- Support integration of security controls and tools within CI/CD pipelines.
- Assist in developing and maintaining security standards, procedures, and documentation.
- Stay current on emerging application security threats, vulnerabilities, and industry best practices.
Technical Skills
- Exposure to application security testing tools and methodologies, including: Static Application Security Testing (SAST), Software Composition Analysis (SCA), Secrets Detection, and Infrastructure as Code (IaC) Security.
- Basic knowledge of vulnerability management and risk assessment.
- Experience with scripting or programming languages such as Python, Java, .NET, or similar.
- Familiarity with Git-based development workflows and CI/CD pipelines.
- Exposure to vulnerability scanning platforms such as GitLab SAST, J-Frog Xray, or similar tools.
- Knowledge of cloud platforms is a plus.
Required Qualifications
- Bachelor’s degree in Information Technology, Computer Science, or related field.
- At least 2 years of experience in business systems analysis, system support, or related roles within enterprise technology environments.
- Strong understanding of business process analysis, requirements gathering, and documentation.
- Knowledge of enterprise systems, software development lifecycle, and support processes.
- Relevant certifications such as CBAP, CCBA, or equivalent are preferred.
Preferred Qualifications
- Understanding of security controls, risk management, and compliance requirements.
- Strong analytical, communication, documentation, and problem-solving skills.
- Industry certifications such as CompTIA Security+, AWS Cloud Practitioner, Azure Fundamentals, or similar certifications are a plus.
- Experience working in an Agile development environment is preferred.
- Demonstrated eagerness to learn new technologies and grow within the application security field.
Benefits
- Medical, dental, vision, life insurance, disability, accidental death and dismemberment, tax-preferred savings accounts, and a 401k plan.
- No less than 10 days of vacation (prorated based on date of hire and by full-time or part-time status) during the first year of employment, along with 10 sick days (also prorated), and paid holidays.
- Eligibility for Truist’s defined benefit pension plan, restricted stock units, and/or a deferred compensation plan depending on position and division.