Application Security Analyst

🕒 July 16

🇺🇸 United States – Remote

💵 $75k - $110k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🔐 Security Analyst

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 13%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Sound Physicians

Sound Physicians

5001 - 10000 employees

Founded 2001

🏥 Healthcare

🤝 B2B

Healthcare • B2B

Sound Physicians is a physician-led healthcare services company that partners with hospitals and health systems to deliver specialty clinical programs including emergency medicine, hospital medicine, critical care (including tele-ICU), anesthesia, and accountable care for long-term and assisted living settings. The company combines clinical leadership, operational optimization, and revenue-cycle support to improve patient outcomes, stabilize hospital operations, and maximize financial performance through tailored, on-site and virtual care models.

📋 Description

• Integrate security controls and automated checks into CI/CD pipelines, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Software Composition Analysis (SCA), secret scanning, container security scanning, and Infrastructure-as-Code (IaC) validation • Partner with developers and platform engineers to identify, prioritize, and remediate application, API, container, and cloud security risks early in the development lifecycle • Perform application security assessments, architecture reviews, and threat modeling exercises for new and existing applications • Conduct secure code reviews and provide guidance on secure coding practices aligned with OWASP Top 10, CWE, and industry standards • Support vulnerability management by validating findings, reducing false positives, tracking remediation, and helping define risk-based service-level expectations • Create and maintain documentation, standards, playbooks, and training materials related to application security, secure development, and DevSecOps practices

🎯 Requirements

• Bachelor’s degree in Computer Science, Information Security, or related field • 4+ years of experience in application security, DevOps, cloud security, security engineering, or a related cybersecurity role • Knowledge of scripting and programming languages such as Python, PowerShell, Java, JavaScript, C#, or Go is highly desirable and considered a plus • Strong understanding of application security concepts, secure coding practices, and common attack vectors • Familiarity with cloud platforms such as Azure and AWS • Familiarity with CI/CD platforms such as Azure DevOps, GitHub Actions, GitLab CI, or Jenkins • Knowledge of OWASP Top 10, OWASP API Security Top 10, MITRE ATT&CK, and NIST Cybersecurity Framework • Familiarity with common static and dynamic application security tools • Experience with application security platforms such as Veracode, Checkmarx, Fortify, SonarQube, Snyk, Mend, Burp Suite, Rapid7 InsightAppSec, or similar tools • Experience securing containerized applications and platforms (Docker, Kubernetes, OpenShift, AKS, EKS, or GKE), including container image scanning, runtime security monitoring, admission controls, and Kubernetes security best practices • Ability to analyze security findings, assess risk, and communicate remediation recommendations effectively to technical and non-technical stakeholders • Familiarity with AI-assisted development processes and appropriate security controls • Strong written and verbal communication skills

🏖️ Benefits

• Medical insurance • Dental insurance • Vision insurance • Health care and dependent care flexible spending account • 401(k) retirement savings plan with a company match • Paid time off (PTO) begins accruing immediately upon start date at a rate of 15 days per year, in accordance with Sound's PTO policy • Ten company-paid holidays per year

Apply Now

Similar Jobs

🕒 July 10

A.T. Still University's Arizona School of Health Sciences

51 - 200

📚 Education

🏥 Healthcare

🤝 Non-profit

Endpoint Security Analyst specializing in endpoint security, vulnerability management, and application security. Planning and implementing security measures for A.T. Still University as a fully remote role.

🕒 July 10

ScriptPro

501 - 1000

🏥 Healthcare

💼 Consulting

🏭 Manufacturing

Cyber Security Analyst supporting security and compliance initiatives at ScriptPro. Managing cybersecurity projects and ensuring compliance within a highly regulated pharmaceutical technology environment.

🕒 July 8

Entrust

1001 - 5000

💼 Consulting

🏥 Healthcare

📦 Logistics

Senior Security Compliance Analyst at Entrust, leading compliance efforts for PCI DSS and U.S. Federal programs. Collaborating with cross-functional teams to maintain audit readiness and security posture.

🕒 July 8

OutSystems

1001 - 5000

💼 Consulting

🏥 Healthcare

📣 Marketing

Senior Security Analyst at OutSystems focusing on incident response, threat intelligence, and threat hunting. Leading investigations and enhancing security operations in a global 24/7 SOC environment.

🕒 July 3

LTS

1001 - 5000

🏥 Healthcare

💼 Consulting

📦 Logistics

Cyber Security Analyst supporting the Department of Veterans Affairs health portfolio and managing cybersecurity efforts across multiple projects. Ensuring system security certification and coordination of security activities.