ICT Application Security Analyst
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, IT Consultant
Overview
The Application Security Analyst will be responsible for working with the application development team to analyze application code vulnerabilities and to run security scans, including but not limited to SAST, DAST, IAST, Mobile, and ad-hoc dynamic testing. The Analyst will also play a role in extending WAF deployment for a large number of applications and will contribute to a major cybersecurity transformation initiative of “Shift left and Secure Early” as well as implementing additional security controls in the SDLC.
The role entails analyzing security vulnerabilities and providing mitigation solutions by writing secure code, guiding application teams, and coordinating with cross-functional teams across the platform.
Key Responsibilities- Hands-on experience working with Dev Sec Ops pipelines using CI/CD automation tools such as Jenkins, Team City, Git Lab, Git Hub Actions, Checkmarx, Git Hub Advanced Security, Burp Suite, and other open-source tools.
- Implement Application Cyber Security Controls/Policies and standards developed by the Application Security Program.
- Lead deployment of WAF for existing and new applications.
- Ability to demonstrate security vulnerabilities to application teams.
- Drive application security issues to resolution.
- Provide clear guidance to application teams during vulnerability mitigation efforts.
- Conduct application security assessment using standard Stellantis application security tools.
- Collect and report status on application security assessments, including milestones, deliverables, timing, tasks, risk areas, and status.
- Categorize and recommend assessment strategies for existing and new application development.
- Coach development and supplier teams on application security.
- Develop user training materials and conduct training sessions.
- Bachelor's degree in computer science, technology, or other related field.
- At least 3 years of application security analysis, testing, and Dev Sec Ops experience.
- Understanding of application architectures, development methodologies, and programming languages.
- Problem-solving skills and the ability to work independently and as part of a team.
- Technical writing and communication skills to articulate security risks and findings to both technical and non-technical audiences.
- Hands-on experience reviewing application security in secure code, preferably in Java, C#, Python, and other common languages.
- Background experience with application development – compiled code, mobile applications, website design, web services.
- Hands-on experience running SAST, DAST, IAST, SCA, and Mobile scans.
- Knowledge of security and compliance frameworks such as NIST and ISO.
- Understanding and experience in NIST SSDF or other secure software development frameworks.
- Knowledge of WAF tools such as Akamai, Cloudflare, Azure Front Door, and AWS WAF.
- Knowledge of the OWASP Top 10 and mitigation strategies for each.
- Awareness of techniques of web attacks, DDoS attacks, and bot attacks and related mitigation controls.
- Experience with cloud platforms (AWS, Azure, GCP) and container frameworks.
- Knowledge of programming, scripting, and query languages such as Java, SQL, HTML, and JavaScript; scripting experience preferred.
- Professional certifications such as GIAC GWEB, ISC2 CSSLP, EC-Council CASE or other comparable credentials are a plus.
Our Benefits — Designed With You In Mind
- Comprehensive Health & Well-being Coverage from day one, including medical, dental, vision, and prescription drug coverage, with confidential Employee Assistance Program (EAP).
- Family Building Benefit covering fertility and infertility treatments, adoption services, and gestational surrogacy.
- Generous Paid Time Off including 17+ paid holidays, vacation, float & wellbeing days, sick time, and fully paid parental leave.
- Competitive Retirement Savings Plans with employer match and contributions.
- Income protection and insurance options including life insurance, group accident, and critical illness coverage.
- Company Vehicle Lease Program for eligible employees and immediate family, with insurance, maintenance, and unlimited miles, plus exclusive discounts.
- Support for growth and giving back: tuition reimbursement, student loan refinancing, and 18 paid volunteer hours per year.
At Stellantis, we assess candidates based on qualifications, merit, and business needs. We welcome applications from all people without regard to sex, age, ethnicity, nationality, religion, sexual orientation, disability, or any characteristic protected by law. We believe that diverse teams reflect our identity as a global company, enabling us to better address the evolving needs of our customers and care for our future.
EOE / Disability / Veteran
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).