DevSecOps/Application Security Analyst
Job in
Charlotte, Mecklenburg County, North Carolina, 28296, USA
Listed on 2026-09-25
Listing for:
TEKsystems
Full Time
position Listed on 2026-09-25
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations -
Security
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Job Description & How to Apply Below
Dev Sec Ops / Application Security Analyst Overview We are building a new Dev Sec Ops and Application Security program and seeking a Dev Sec Ops /Application Security Analyst to help establish security standards across the software development environment.
This role will work directly with security leadership to implement secure CI/CD pipelines, manage application security scanning, drive vulnerability remediation efforts, and partner closely with development teams to strengthen the organization's overall security posture.
This is an excellent opportunity for someone who enjoys building processes from the ground up and wants to have a direct impact on a growing security program.
The Dev Sec Ops /Application Security Analyst will serve as a day-to-day operator of the Dev Sec Ops program, responsible for application security findings management, Git Hub security administration, CI/CD security controls, pull request security reviews, repository onboarding, and developer engagement. The role partners closely with security engineering and development teams to keep findings actionable, exceptions tracked, security controls operational, and program metrics current.
This individual will also support the Security Champions program and contribute to secure coding initiatives.
Key Responsibilities Scan Triage & Findings Management (50%)Triage daily findings from SAST, DAST, SCA, secret detection, IaC, container security, and repository security tools.
Validate findings, classify severity, and manage false-positive disposition with documented rationale.
Review pull requests for security findings and collaborate with developers on remediation strategies.
Monitor CI/CD security gate results and escalate blocked builds when support or exceptions are required.
Track and maintain the security exception register.
Manage the security findings backlog, including:
Ticket creation
Prioritization
AssignmentSLA tracking
Remediation validation
Escalation of overdue items
Closure verification
Produce weekly findings summaries and maintain metrics including MTTR, vulnerability aging, backlog health, exception burn-down, false-positive rates, and security coverage.
Repository & Tool Operations (30%)Administer Git Hub Enterprise security capabilities, including:
Repository onboarding
Security baselines
Organization security settings
Branch protection policies
Code scanning
Secret scanning
Dependabot
Repository governance controls
Configure, maintain, and support Git Hub Actions workflows and security-integrated CI/CD pipelines.
Implement and maintain security gates for:
SASTDASTSCASecret scanning
Container security
IaC scanning
Maintain tool configurations, scanning policies, suppression rules, and platform integrations.
Develop and maintain operational documentation, onboarding procedures, runbooks, and knowledge articles.
Developer Engagement & Reporting (20%)Support the Security Champions program.
Assist with OWASP-aligned secure coding education initiatives.
Prepare operational and executive-level security reporting.
Participate in remediation working sessions with development teams.
Maintain remediation guidance, standards, and knowledge base content.
Required Skills Dev Sec Ops Application Security Information Security CI/CD Security Git Hub Enterprise Security Operations
Preferred Experience Git Hub Advanced Security
CodeQLDependabot
Secret Scanning Branch Protection Policies Repository Governance Container Security Infrastructure as Code (IaC) Security ScanningSAST, DAST, and SCA tools
Jira, Service Now, or Azure Dev Ops Scripting with Power Shell, Python, or Bash Experience working directly with software development teams on vulnerability remediation and secure coding practices.
Job Type & Location This is a Contract to Hire position based out of Charlotte, NC.Pay and Benefits The pay range for this position is $40.00 - $45.00/hr individual compensation offered for this position within this range will depend on many factors, including qualifications, skills, relevant experience, job knowledge, geographic location, internal equity, and other pertinent job-related factors.
Eligibility requirements apply to some benefits and may depend on your job
classification and length of employment. Benefits are subject to change and may be
subject to specific elections, plan, or program terms. If eligible, the benefits
available for this temporary role may include the following:
• Medical, dental & vision
• Critical Illness, Accident, and Hospital
• 401(k)…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×