Application Security Analyst
$75k - $110kSound Physicians
About Sound Founded in 2001 and headquartered in Nashville, TN, Sound Physicians is a nationally respected, physician-led medical group practicing in 400+ hospitals across 45 states. Our team of 4,000+ clinicians and 1,000+ business professionals across the country is united by one mission: to build exceptional clinical partnerships that unlock quality, affordable, dignified care for everyone - no matter who they are or where they live . With physician-led clinical teams and more than two decades of operational expertise, we've refined what it takes to consistently deliver exceptional care in hospital medicine, emergency medicine, critical care, anesthesia, and telemedicine. Why join us?
Sound Physicians offers a competitive benefits package inclusive of the items below, and more:
This job description reflects the present requirements of the position. As duties and responsibilities change and develop, the job description will be reviewed and subject to amendment. #SoundBC Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
- A remote-first culture that values flexibility and collaboration
- Opportunities to grow your career while making a real impact
- A team that champions inclusivity, innovation, and excellence
Sound Physicians offers a competitive benefits package inclusive of the items below, and more:
- Medical insurance, Dental insurance, and Vision insurance
- Health care and dependent care flexible spending account
- 401(k) retirement savings plan with a company match
- Paid time off (PTO) begins accruing immediately upon start date at a rate of 15 days per year, in accordance with Sound's PTO policy
- Ten company-paid holidays per year
- Participation in the after-hours security incident response and on-call rotation is part of the role.
- Integrate security controls and automated checks into CI/CD pipelines, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), secret scanning, container security scanning, and Infrastructure-as-Code (IaC) validation.
- Partner with developers and platform engineers to identify, prioritize, and remediate application, API, container, and cloud security risks early in the development lifecycle.
- Perform application security assessments, architecture reviews, and threat modeling exercises for new and existing applications.
- Support vulnerability management by validating findings, reducing false positives, tracking remediation, and helping define risk-based service-level expectations.
- Conduct secure code reviews and provide guidance on secure coding practices aligned with OWASP Top 10, CWE, and industry standards.
- Perform security reviews for application architecture, deployment patterns, third-party components, and cloud configurations.
- Develop and maintain secure pipeline standards, reusable guardrails, and policy-as-code checks that improve consistency without creating unnecessary delivery friction.
- Collaborate with engineering, infrastructure, and security operations teams on incident response, root cause analysis, and hardening activities related to software delivery platforms.
- Create and maintain documentation, standards, playbooks, and training materials related to application security, secure development, and DevSecOps practices.
- Track vulnerability trends, security metrics, and recurring issues to improve security maturity across build, release, and runtime workflows.
- Stay current on emerging threats, attack techniques, vulnerabilities, and security technologies relevant to application and cloud security.
- Collaborative: Demonstrates the ability to work well with others to accomplish a goal and get the work done; takes opinions of others into consideration; includes others in the decision-making process.
- Eager to Learn: Proactively seeks out information, embraces learning new things and enjoys the learning process.
- Intellectually curious: Demonstrates a genuine interest in learning new things and wants to know the reason "why" behind the way things are done.
- Committed: Demonstrates dedication to the job, project, organization, customer/clients and co-workers.
- Resourceful: Proactive willingness to utilize available information and tools to figure things out.
- Strong understanding of application security concepts, secure coding practices, and common attack vectors.
- Strong understanding of application security concepts, secure coding practices, and common attack vectors.
- Knowledge of security testing methodologies including SAST, DAST, SCA, penetration testing, secret scanning, and IaC security assessments.
- Familiarity with cloud platforms such as Azure and AWS.
- Familiarity with CI/CD platforms such as Azure DevOps, GitHub Actions, GitLab CI, or Jenkins.
- Knowledge of OWASP Top 10, OWASP API Security Top 10, MITRE ATT&CK, and NIST Cybersecurity Framework.
- Experience with application security platforms such as Veracode, Checkmarx, Fortify, SonarQube, Snyk, Mend, Burp Suite, Rapid7 InsightAppSec, or similar tools.
- Familiarity with scripting and automation using Python, Powershell, Bash, or similar languages.
- Experience securing containerized applications and platforms (Docker, Kubernetes, OpenShift, AKS, EKS, or GKE), including container image scanning, runtime security monitoring, admission controls, and Kubernetes security best practices.
- Knowledge of container technologies, source control workflows, and modern software delivery practices.
- Familiarity with common static and dynamic application security tools.
- Ability to analyze security findings, assess risk, and communicate remediation recommendations effectively to technical and non-technical stakeholders.
- Familiarity with AI-assisted development processes and appropriate security controls.
- Strong written and verbal communication skills.
- Ability to translate technical issues into clear guidance and action plans
- Knowledge of cloud-native security controls.
- Familiarity with Kubernetes, Terraform, and similar Infrastructure-as-Code tools.
- Familiarity with secrets management, PKI, certificate management, and cryptographic controls.
- Knowledge of compliance frameworks such as NIST CSF, NIST 800-53, HIPAA, PCI DSS, SOC 2, ISO 27001, and HITRUST.
- Bachelor's degree in Computer Science, Information Security, or related field, with industry-recognized certifications such as CSSLP (Certified Secure Software Lifecycle Professional), GWAPT (GIAC Web Application Penetration Tester), OSWE (Offensive Security Web Expert), CEH (Certified Ethical Hacker)
- 4+ years of experience in application security, DevOps, cloud security, security engineering, or a related cybersecurity role.
- Knowledge of scripting and programming languages such as Python, PowerShell, Java, JavaScript, C#, or Go is highly desirable and considered a plus.
- Experience supporting regulated environments such as healthcare, financial services, or other compliance-driven industries.
- This position offers an annual salary range of $75,000 to $110,000. Exact salary will depend on the candidate's experience, education and geographic location.
This job description reflects the present requirements of the position. As duties and responsibilities change and develop, the job description will be reviewed and subject to amendment. #SoundBC Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Application Security Analyst in United States vacancy
- Job DescriptionSenior Application Security AnalystADP is hiring a Application Security Analyst. In this position, you'll be responsible for assessing the security of ADP applications by performing dynamic and static application security assessments.Lead comprehensive security...SuggestedRemote work
- This role focuses on identifying, analyzing, and mitigating application security vulnerabilities throughout the SDLC. It supports a broader “Shift Left” cybersecurity strategy, ensuring security is integrated early in development and reinforced through DevSecOps practices...SuggestedShift work
- ...Application Security Analyst (AI Training) About the Role Your security instincts were built in the trenches - reviewing code, hunting vulnerabilities, and making judgment calls that protect real systems. Now put that expertise to work on one of the most exciting...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Application Security Analyst Your ability to spot what actually breaks in production — not just what looks risky on paper — is exactly what the next generation of AI needs. At Alignerr, we partner with the world's leading AI research labs to build smarter, safer AI...SuggestedHourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...Job Description Job Description Title: Application Security Analyst Duration: 12 Months Location: Plano, TX Pay Rate: $65/hr on W2 (H4 , USC, GC, TN) Hybrid: 3 day onsite, 2 day remote Interview process: 1st round virtual & 2nd round onsite JOB...SuggestedRemote workShift work
$75k - $95k
...Application Security Analyst This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an Application Security Analyst based in the United States. This is a hands-on application security role...Work at officeRemote workFlexible hours$98.84k - $148.26k
...Exchange) is to radically improve how Washington residents secure health insurance through innovative and practical... ...resources to achieve their full potential. SUMMARY The Senior Application Security Analyst plays a key role in protecting WAHBE’s data and applications...Contract workWork at officeImmediate startRemote workMonday to FridayShift work$63.3k - $84.4k
...rather than hands-on implementation, supporting secure architecture practices, overseeing the security posture of applications (including cloud and AI solutions), and... ...career. SUMMARY: The Application Security Analyst is responsible for ensuring the security of homegrown...Temporary workWork at officeRemote workWork from homeShift work$88.27k - $102.64k
...Application Security Analyst Vernon, BC or Remote Kal Tire is seeking an Application Security Analyst to join our Cybersecurity team. In this role, you'll help protect our applications, systems, and data by identifying security risks, supporting secure software...Permanent employmentFull timePart timeRemote work- ...Technology Consultant 1 Career Role Technology Analyst - US Work Location Richardson, TX... ...149624BR Technical Skills 1 Technology|Application Security|Application Risk Profiling, Threat Modeling Technical...Full timeTemporary workRelocation
$75k - $95k
...Application Security Analyst We are seeking an Application Security Analyst to build security into how we ship software, and to help our small but growing Information Security team with day-to-day work. This is a hands-on role. You will secure code, fix pipelines,...Work at officeRemote workFlexible hours$67.98k - $108.77k
...Job Description Job Description Join a Great Place to Work certified company - our Information Security Team is seeking an Application Security Analyst ! Are you passionate about securing applications and helping development teams build software that is resilient...Temporary workWork at officeLocal area3 days per week- ...To enhance software security, the full-time remote Application Security Analyst will perform application security assessments, integrate security testing into CI/CD pipelines, and collaborate with engineering teams to secure AI/ML components. Key responsibilities: Perform...Full timeRemote work
- ...USC/GC The client is seeking an Application Security Analyst to • Conduct manual application security assessments using dynamic and static methodologies • Understanding of a broad range of application security issues, mitigation strategies, and common application...Work experience placement
- ...Overview: Primary Skill: Application Security (AppSec) / Cyber Security Must Have: Basic Knowledge of Application Security Vulnerabilities Key Responsibilities Track application security findings and variances that are approaching 30-day and other...
- ...Backed by a publicly traded parent company and undergoing a digital modernization effort. A highly skilled Information Security team focused on application security, DevSecOps, threat detection, and vulnerability remediation. A tech-forward organization prioritizing...Full time
- ...Description Job Description Be Part Of A High-Performing Team Join a technology and security-focused team responsible for improving the quality, governance, and usability of application security and vulnerability data across a complex enterprise environment. This team...Contract work
- Remote Must-Have Skills / Prior Experience Hands-on experience with API security testing and vulnerability management. Strong knowledge of DAST tools (e.g., Burp Suite, OWASP ZAP). Experience with container security (Docker, Kubernetes, image scanning tools such as...Remote workWorldwide
- Toyota Deutschland GmbH in Plano, Texas, is seeking an Application Security Analyst to ensure the security of software applications, web services, and APIs. You will collaborate with development teams to identify vulnerabilities, recommend solutions, and integrate security...
$67.98k - $108.77k
Myconsumers in Lake Forest, IL, is seeking an Application Security Analyst to join its Information Security Team. This hybrid role requires the candidate to work three days a week at the Lake Forest office. The analyst will be responsible for performing application security...Work at office3 days per week- ...customer experience in an innovative, collaborative environment. Application Sponsorship To save time applying, Toyota does not offer... ...a highly motivated person to fill a role as an Application Security Analyst. Your responsibilities will be to ensure the security of...Relocation packageEarly shift
- Join to apply for the Application Security Analyst role at Paycom Join to apply for the Application Security Analyst role at Paycom Description The Application Security Analyst I position exists to protect the security posture of the Paycom application through tasks such...Full time
- Join to apply for the Application Security Analyst role at Charles Schwab . At Schwab, you’re empowered to make an impact on your career. Here, innovative thought meets creative problem solving, helping us “challenge the status quo” and transform the finance industry...Full timeInternshipWork at officeShift work
$67.98k - $108.77k
...N Field Drive Lake Forest, IL 60045, USA Join a Great Place to Work certified company - our Information Security Team is seeking an Application Security Analyst ! Are you passionate about securing applications and helping development teams build software that is resilient...Temporary workWork at officeLocal area3 days per week- Overview Milestone Technologies is seeking a Security Systems Applications Specialist responsible for building and implementing security systems applications to ensure successful project completion and optimization for the client. Responsibilities Supporting programming...Work at officeRelocation
- ...SAP Application Security And GRC Analyst (Sr.) CGI is seeking a Senior SAP GRC and Application Security Analyst to join an SAP S/4HANA Greenfield implementation project for a large government contract. As a senior-level SAP GRC and Application Security Consultant,...Contract workWork at office2 days per week
- Consumers Credit Union is looking for an Application Security Analyst to join its Information Security Team in Lake Forest, IL. This role involves securing applications and helping development teams to identify vulnerabilities and implement best practices. You will work...
- The Information Security Application and Compliance Analyst is responsible for designing, evaluating, and establishing AI security framework, standards, tool sets and governance controls to support secure AI application development and use. This role anchors the firm’s...Work experience placementWork at officeWork from home
$115k - $200k
...solo. Our Radio Products Team is seeking a hybrid Software Security Analyst. You would be a member of the Cyber Security Team working... ...may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject...Work experience placementWork at officeWorldwide- IT Applications Security Engineer/Analyst Contract 360 IT Professionals is a California base Minority Business Enterprise specializing in the field of IT Consulting and Staffing. Since our Inception we have been providing industry leading IT solutions for Staffing and...Contract workLocal areaImmediate start
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security Analyst. Be the first to apply!
Related searches
- entry level application support analyst United States
- application security analyst United States
- engineering change analyst United States
- software configuration analyst United States
- engineering business analyst United States
- rpg programmer analyst United States
- clinical applications analyst United States
- cash application analyst United States
- engineering analyst United States
- entry level programmer analyst United States


