1

Application Security Analyst Jobs in Indiana (NOW HIRING)

Info Security Analyst Job id: 786570 Duration: [6/12 months] Interview: Either Web Cam or In Person ... Tasks will include assisting with the configuration of data, application, network, and IAAM logs ...

Sr. Security Engineer

Indianapolis, IN

$108K - $149K/yr

... risk analysis and develop mitigation strategies o Manage the lifecycle of application ... security breaches and respond to incidents o Investigate security breaches and lead incident ...

Web Application Security Analysis and Intrusion Testing * Vulnerability Management WHAT DO WE OFFER? * Join our team and culture GMV by entering into technological and innovative projects within ...

next page

Showing results 1-20

Application Security Analyst information

See Indiana salary details

$33.3K

$79.6K

$132.3K

How much do application security analyst jobs pay per year?

As of Jun 22, 2026, the average yearly pay for application security analyst in Indiana is $79,567.00, according to ZipRecruiter salary data. Most workers in this role earn between $61,400.00 and $89,400.00 per year, depending on experience, location, and employer.

Can you make $500,000 a year in cyber security?

Application Security Analysts typically earn between $80,000 and $150,000 annually, depending on experience, certifications, and location. Reaching a $500,000 salary usually requires senior roles, management positions, or specialized expertise in high-demand areas like threat hunting or security architecture, often combined with leadership responsibilities or consulting work.

What are Application Security Analysts?

Application Security Analysts are professionals responsible for identifying and mitigating security vulnerabilities in software applications. They assess applications for risks by performing code reviews, vulnerability assessments, and penetration testing. Their role includes working with development teams to ensure security best practices are followed throughout the software development lifecycle. Application Security Analysts also help develop security policies, provide training, and respond to security incidents related to applications.

Is SOC an entry level job?

A Security Operations Center (SOC) analyst role is typically considered an entry-level or early-career position in cybersecurity, often requiring foundational knowledge of security principles, network protocols, and security tools. However, some SOC roles may require prior experience or certifications like CompTIA Security+ or Cisco CCNA, depending on the organization's complexity and expectations.

What does an application security analyst do?

An application security analyst evaluates and improves the security of software applications by identifying vulnerabilities, conducting security assessments, and implementing safeguards. They often use tools like vulnerability scanners and may hold certifications such as Certified Ethical Hacker (CEH) or Certified Application Security Engineer (CASE). Their work helps prevent cyber threats and ensures compliance with security standards.

What are some common challenges faced by Application Security Analysts when collaborating with development teams?

Application Security Analysts often encounter challenges in aligning security best practices with fast-paced development cycles. Ensuring that security recommendations are integrated early without delaying product releases requires strong communication and a collaborative approach with developers. Analysts must balance advocating for robust security measures while understanding development constraints, and often need to translate technical vulnerabilities into clear, actionable guidance for non-security professionals. Building trust and fostering a culture of shared responsibility for security helps overcome these challenges.

Is 40 too old for cyber security?

Application Security Analysts can succeed at any age, as the field values skills, experience, and continuous learning. Many professionals transition into cybersecurity later in their careers, often bringing valuable insights and expertise. Age is generally not a barrier to entering or advancing in cybersecurity roles, especially with relevant certifications and up-to-date technical knowledge.

What are the key skills and qualifications needed to thrive as an Application Security Analyst, and why are they important?

To thrive as an Application Security Analyst, you need a strong understanding of secure coding practices, vulnerability assessment, and information security principles, often supported by a degree in computer science or related certifications like CISSP or CEH. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing suites, and security information and event management (SIEM) systems is essential. Analytical thinking, attention to detail, and effective communication are critical soft skills for identifying risks and collaborating with development teams. These competencies are vital to proactively identifying vulnerabilities, minimizing risks, and ensuring robust application security in evolving technology environments.

What is the difference between Application Security Analyst vs Security Engineer?

AspectApplication Security AnalystSecurity Engineer
CertificationsCompTIA Security+, CISSP, CEHCISSP, CEH, Security+
Work EnvironmentFocus on application vulnerabilities, code reviews, and security assessmentsDesigns and implements security infrastructure, manages security tools
Industry UsageCommon in software development and IT teamsFound in cybersecurity teams across various industries
Primary FocusIdentifying and mitigating application security risksBuilding and maintaining security systems and protocols

While both roles involve cybersecurity, Application Security Analysts primarily focus on securing software applications through assessments and vulnerability management. Security Engineers work on developing and maintaining security infrastructure, ensuring overall organizational security. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What cities in Indiana are hiring for Application Security Analyst jobs? Cities in Indiana with the most Application Security Analyst job openings:
Infographic showing various Application Security Analyst job openings in Indiana as of June 2026, with employment types broken down into 36% Full Time, and 64% Contract. Highlights an 59% In-person, and 41% Hybrid job distribution, with an average salary of $79,567 per year, or $38.3 per hour.
Application Security Analyst

Application Security Analyst

Merchants Bank of Indiana

Carmel, IN • On-site

Other

Medical, Dental, Vision, Retirement, PTO

Posted 11 days ago


Job description

Description

We are seeking an Application Security Analyst to join our team in a junior position focused on helping secure the business applications that support the organization. This role will support application and AI registers, perform application risk assessments, assist with user access reviews, validate security controls, and provide application configuration guidance. The Application Security Specialist will also participate in third-party and vendor security reviews, partner with application owners on remediation efforts, and contribute to lightweight threat modeling activities. The ideal candidate is analytical, collaborative, and interested in building practical, threat focused security solutions that reduce risk across the application environment.


Our Information Security Analyst will be able to do the following confidently and independently...

  • Maintain and support application and AI registers to help ensure an accurate inventory of in-scope business applications.
  • Lead the application risk assessment program to identify security risks, document findings, and support risk-based decision making.
  • Validate application security controls and document control effectiveness, gaps, and recommended improvements.
  • Govern the user access review (UARs) process for business applications and help validate appropriate access based on job responsibilities.
  • Provide application configuration guidance to support secure deployment and ongoing management of business applications.
  • Participate in third-party and vendor security reviews for applications, platforms, and related services.
  • Partner with application owners and other stakeholders to track and support remediation of identified security issues.
  • Contribute to lightweight threat modeling activities to identify likely threats, common weaknesses, and practical mitigation options.
  • Support the broader information security program by documenting processes, maintaining records, and assisting with related security initiatives as assigned.
  • Serve as a liaison between Information Security and development teams to support DevSecOps. 
  • Provide support across information security functions, including risk management, governance, security operations, and related initiatives, as required.

Requirements


 What we are looking for...

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Management Information Systems, or a related field preferred; equivalent practical experience may also be considered.
  • 0-3 years of experience in information security, technology risk, IT administration, application support, or a related field, with an interest in application security.
  • Understanding of application security concepts such as access management, secure configuration, control validation, vulnerability identification, and remediation tracking.
  • Familiarity with application risk assessments, user access reviews, third-party security reviews, or security control testing is preferred.
  • Understanding of web applications, SaaS platforms, APIs, identity and access management, and common security risks affecting business applications.
  • Strong analytical, organizational, and documentation skills, with the ability to communicate clearly and work collaboratively with application owners and business stakeholders.
  • Ability to manage multiple tasks, follow defined processes, and contribute to practical, risk-based security improvements in a fast-paced environment.
  • Experience supporting a financial services organization or other regulated environment is preferred but not required.
  • Entry-level security or technology certifications such as Security+, ISC2 CC, or similar credentials are a plus.

Our Benefits: Health, Vision, Dental, 401K, ESOP, 100% Tuition Assistance, 4 weeks paid time off, plus a few more. 

About Merchants 

Ranked as a top performing U.S. public bank by S&P Global Market Intelligence, Merchants Bancorp is a diversified bank holding company headquartered in Carmel, Indiana operating multiple segments, including Multi-family Mortgage Banking that offers multi-family housing and healthcare facility financing and servicing; Mortgage Warehousing that offers mortgage warehouse financing; and Banking that offers retail and correspondent residential mortgage banking, agricultural lending, and traditional community banking. Merchants Bancorp, with $18.8 billion in assets and $11.9 billion in deposits as of December 31, 2024, conducts its business primarily through its direct and indirect subsidiaries, Merchants Bank of Indiana, Merchants Capital Corp., Merchants Capital Investments, LLC, Merchants Capital Servicing, LLC, Merchants Asset Management, LLC, and Merchants Mortgage, a division of Merchants Bank of Indiana.
 

Merchants Bank and Merchants Capital have recently been honored with the 2025 USA Today Top Workplaces recognition, ranking 22nd nationally within the 500-999 employee category. This is the second year that Merchants has been recognized with this award. These accolades build on our strong history of workplace recognition, including being named a Best Place to Work in Indiana for seven consecutive years (2016-2022). For more information read the entire article here.