1

Application Security Analyst Jobs (NOW HIRING)

Security Analyst Location: Columbia, SC 29210 Duration: 12 Months Position Description: Previous ... Software development Reverse Engineering Application Security burp suite information security ...

The individual will analyze system and application security and provide security recommendations for optimum protection of computer systems and information resources. This individual assists in ...

Make security analysis reports for security vulnerabilities and recommends feasible and appropriate ... Understanding of various Application Security Threat Models and their applicability to existing and ...

Security Analyst

San Francisco, CA ยท On-site

$45 - $50/hr

We are looking for a Security Analyst to join a growing security operations team. This contract ... Relevant certifications such as CompTIA Security+ are valued, and exposure to application security ...

Application Security Engineer

Albany, NY ยท On-site

$58.25 - $78/hr

Application Security Engineer Job Type: Contract Location: Albany, NY area preferred Work ... Integrate AI-driven code analysis platforms into CI/CD pipelines to identify vulnerabilities and ...

Application Security Engineer

$60.25 - $80.25/hr

Monitor and analyze security events, alerts, and logs generated by the web application firewall systems. Investigate and respond to potential security incidents, working closely with the Security ...

Application Security Engineer

Nashville, TN ยท On-site

$56.75 - $75.75/hr

Conduct application security testing using static application security testing (SAST), dynamic application security testing (DAST), software composition analysis (SCA), API security testing, and ...

Application Security Engineer

Dallas, TX ยท On-site

$58.25 - $78/hr

They will demonstrate strong analytical skills, including the ability to interpret large volumes of ... Candidates should also have experience working with a range of application security tools ...

The Security Analyst is a member of the security team and performs technical activities for delivering effective host, network, data and application security services. This position will have primary ...

Application Security Engineer

Phoenix, AZ

$58.25 - $78/hr

... DAST, SCA) or manual analysis. * Manage application security workflows, including task ... prioritization, ticket tracking, and coordination with development and DevOps teams. * Maintain and ...

Showing results 41-60

Application Security Analyst information

See salary details

$35K

$83.6K

$139K

How much do application security analyst jobs pay per year?

As of Aug 22, 2026, the average yearly pay for application security analyst in the United States is $83,617.00, according to ZipRecruiter salary data. Most workers in this role earn between $64,500.00 and $94,000.00 per year, depending on experience, location, and employer.

What is an application security analyst?

Application Security Analysts are professionals responsible for identifying and mitigating security vulnerabilities in software applications. They assess applications for risks by performing code reviews, vulnerability assessments, and penetration testing. Their role includes working with development teams to ensure security best practices are followed throughout the software development lifecycle. Application Security Analysts also help develop security policies, provide training, and respond to security incidents related to applications.

What are some common challenges faced by application security analysts when collaborating with development teams?

Application Security Analysts often encounter challenges in aligning security best practices with fast-paced development cycles. Ensuring that security recommendations are integrated early without delaying product releases requires strong communication and a collaborative approach with developers. Analysts must balance advocating for robust security measures while understanding development constraints, and often need to translate technical vulnerabilities into clear, actionable guidance for non-security professionals. Building trust and fostering a culture of shared responsibility for security helps overcome these challenges.

What are the key skills and qualifications needed to thrive as an application security analyst, and why are they important?

To thrive as an Application Security Analyst, you need a strong understanding of secure coding practices, vulnerability assessment, and information security principles, often supported by a degree in computer science or related certifications like CISSP or CEH. Familiarity with tools such as static and dynamic application security testing (SAST/DAST), penetration testing suites, and security information and event management (SIEM) systems is essential. Analytical thinking, attention to detail, and effective communication are critical soft skills for identifying risks and collaborating with development teams. These competencies are vital to proactively identifying vulnerabilities, minimizing risks, and ensuring robust application security in evolving technology environments.

What is the difference between Application Security Analyst vs Security Engineer?

AspectApplication Security AnalystSecurity Engineer
CertificationsCompTIA Security+, CISSP, CEHCISSP, CEH, Security+
Work EnvironmentFocus on application vulnerabilities, code reviews, and security assessmentsDesigns and implements security infrastructure, manages security tools
Industry UsageCommon in software development and IT teamsFound in cybersecurity teams across various industries
Primary FocusIdentifying and mitigating application security risksBuilding and maintaining security systems and protocols

While both roles involve cybersecurity, Application Security Analysts primarily focus on securing software applications through assessments and vulnerability management. Security Engineers work on developing and maintaining security infrastructure, ensuring overall organizational security. Both roles are essential in a comprehensive cybersecurity strategy but differ in scope and daily responsibilities.

What cities are hiring for Application Security Analyst jobs?

Cities with the most Application Security Analyst job openings:

Who are the top companies hiring for Application Security Analyst jobs?

The top employers for Application Security Analyst jobs are:

What states have the most Application Security Analyst jobs?

States with the most job openings for Application Security Analyst jobs include:

Infographic showing various Application Security Analyst job openings in the United States as of August 2026, with employment types broken down into 76% Full Time, 19% Part Time, and 5% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $83,617 per year, or $40.2 per hour.

Senior Application Security Engineering Lead

SciTec

Boulder, CO โ€ข On-site

$61 - $81.50/hr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 3 days ago


Job description

SciTec, a wholly owned subsidiary of Firefly Aerospace, is a dynamic non-traditional defense contractor that delivers advanced technologies in support of U.S. National Security and Defense. For more than forty-five years, we have supported Department of Defense customers by developing innovative remote sensing algorithms, tools, and techniques to deliver world-class data exploitation capabilities supporting missile defense; intelligence, surveillance, & reconnaissance; space domain awareness; and aircraft survivability missions.
Important Notice: SciTec exclusively works on U.S. government contracts that require U.S. citizenship for all employees. Applicants that do not meet this requirement will not be considered.
SciTec has an immediate opportunity for a talented engineer to support our programs delivering Next-Generation Missile Warning software. This is a unique opportunity to join a business delivering core capabilities for National defense. You will work within a fast-paced team delivering end-to-end software processing of Overhead Persistent InfraRed (OPIR) sensor data for Missile Warning, Missile Defense, Battlespace Awareness, and Technical Intelligence.
We are seeking an Application Security Engineer Lead to help secure mission-critical software systems by identifying, analyzing, and mitigating application-level vulnerabilities. This role focuses on hands-on security analysis, tooling integration, and working directly with software engineers to embed security into the development lifecycle.
The ideal candidate combines strong technical security skills with the ability to collaborate effectively with developers in a DevSecOps environment.
Responsibilities
  • Perform application security analysis using both automated and manual techniques, including:
    • Static code analysis (SAST)
    • Software composition analysis (SCA)
    • Fuzzing
    • Manual code and design reviews
  • Lead an application security team in support of multiple programs
  • Identify, analyze, and help remediate application vulnerabilities
  • Support software engineers in integrating security considerations into system and application designs
  • Integrate and maintain application security tooling within CI/CD and DevSecOps pipelines
  • Design, implement, and improve continuous integration security analysis tooling
  • Tune and maintain security tools to reduce false positives and improve signal quality
  • Assist development teams in understanding findings and implementing effective fixes
  • Support threat modeling and secure design reviews
  • Stay current with emerging vulnerabilities, attack techniques, and mitigation strategies
  • Document findings, recommendations, and best practices
  • Perform other duties as assigned

Requirements
  • Bachelor's degree plus 8+ years of professional experience in cybersecurity or software development, or equivalent experience
  • 2+ years of experience focused on application/software security
  • Experience analyzing source code for security flaws
  • Familiarity with secure software development practices
  • Strong analytical and problem-solving skills
  • Detail-oriented with strong written and verbal communication abilities
  • Ability to qualify for and maintain a DoD Secret security clearance
  • Ability to meet DoD 8140.01 Cyberspace Workforce Management requirements within six months of hire
  • Ability to effectively collaborate with government customer team members and other engineers

Candidates who have any of the following skills will be preferred:
  • Active DoD Secret clearance or higher
  • Experience identifying, exploiting, and remediating application vulnerabilities
    • Credit for published CVEs is a strong plus
  • Proficiency in one or more programming languages such as C++, Python, JavaScript, Rust
  • Experience configuring and operating static analysis tools (e.g., Coverity, Klocwork, SonarQube)
  • Experience configuring and operating software composition analysis tools (e.g., Snyk, Sonatype, Anchore, JFrog Xray)
  • Experience with fuzzing frameworks (AFL, AFL++, honggfuzz, or similar)
  • Experience with debugging, runtime instrumentation, or reverse engineering, including tools such as strace, eBPF, Ghidra or IDA Pro
  • Familiarity with threat modeling methodologies and frameworks such as MITRE ATT&CK
  • Experience working in DevSecOps or Agile development environments

*Resumes, Cover Letters, and Applications which are generated by AI will not be considered for employment.
Colorado Residents: In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Benefits
SciTec offers a highly competitive salary and benefits package, including:
  • 4% Safe Harbor 401(k) match
  • 100% company paid HSA Medical insurance, with a choice of 2 buy-up options
  • 80% company paid Dental insurance
  • 100% company paid Vision insurance
  • 100% company paid Life insurance
  • 100% company paid Long-term Disability insurance
  • 100% company paid Hospital Indemnity insurance
  • Voluntary Accident and Critical Illness insurance
  • Short-term Disability insurance
  • Annual Profit-Sharing Plan
  • Discretionary Performance Bonus
  • Paid Parental Leave
  • Generous Paid Time Off, including Holiday, Vacation, and Sick Pay
  • Flexible Work Hours

The pay range for this position is $155,000 - $185,000 / year. SciTec considers several factors when extending an offer of employment, including but not limited to the role and associated responsibilities, a candidate's work experience, education/training, and key skills. This is not a guarantee of compensation.
SciTec is proud to be an Equal Opportunity employer. VET/Disabled.

SciTec logo

About SciTec

Sourced by ZipRecruiter

Industry

Guided missile and space vehicle manufacturing

Company size

51 - 200 Employees

Headquarters location

Princeton, NJ, US

Year founded

1979