Application Security Analyst
Listed on 2026-02-07
-
IT/Tech
Cybersecurity, Systems Analyst
Overview
CGI has an immediate need for a Application Security Analyst to join our team. This is an exciting opportunity to work in a fast-paced team environment supporting one of the largest customers. We take an innovative approach to supporting our client, working side-by-side in an agile environment using emerging technologies.
We partner with 15 of the top 20 banks globally, and our top 10 banking clients have worked with us for an average of 26 years!. This role is located at a client site in Reston, VA. A hybrid working model is acceptable.
ResponsibilitiesYour future duties and responsibilities
The Application Security Analyst is responsible for identifying, assessing, and helping remediate security risks across modern applications, including web, API, and backend services. This role focuses on hands-on security testing, manual code reviews, and clear communication of risk to both technical and non-technical stakeholders. The analyst works closely with engineering and product teams to improve application security posture while ensuring findings are practical, prioritized, and aligned with business objectives.
QualificationsRequired Qualifications To Be Successful In This Role
- 6+ years of professional experience in application security, penetration testing, or a closely related security role
- Strong hands-on experience conducting manual application security assessments, including secure code reviews and penetration testing
- Solid understanding of common application security vulnerabilities, exploitation methods, and mitigation techniques (e.g., OWASP Top 10)
- Proficiency with web security testing tools such as Burp Suite, OWASP ZAP, and other proxy, scanning, and fuzzing tools
- Experience performing manual source code reviews and identifying insecure coding practices across one or more programming languages
- Ability to assess vulnerability risk by considering exploitability, technical impact, and business context
- Skilled at documenting findings clearly, including evidence, root cause analysis, and actionable remediation guidance
- Comfortable explaining security risks and recommendations to both technical teams and business stakeholders
- Strong collaboration skills and the ability to work effectively with developers, architects, and product teams
- Background in software development or familiarity with modern application architectures is a strong plus
- Relevant security certifications (such as GWAPT, OSCP, CEH, or similar) are preferred but not required
Bachelor’s degree in Computer Science, Information Systems, or a related field.
DICEOther Information:
CGI is required by law in some jurisdictions to include a reasonable estimate of the compensation range for this role. The determination of this range includes various factors not limited to skill set, level, experience, relevant training, and licensure and certifications. To support the ability to reward for merit-based performance, CGI typically does not hire individuals at or near the top of the range for their role.
Compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range for this role in the U.S. is $88,200.00 – $.
CGI’s benefits are offered to eligible professionals on their first day of employment to include: . Competitive compensation . Comprehensive insurance options . Matching contributions through the 401(k) plan and the share purchase plan . Paid time off for vacation, holidays, and sick time . Paid parental leave .Learning opportunities and tuition assistance . Wellness and Well-being programs
Together, as owners, let’s turn meaningful insights into action. Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach your full potential because…
You are invited to be an owner from day 1 as we work together to bring our Dream to life. That’s why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our company’s strategy and direction.
Your work creates value. You’ll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).