1

Web Application Security Analyst Jobs in Ohio (NOW HIRING)

Senior Cybersecurity Engineer

Columbus, OH · On-site

$110K - $151K/yr

... strong experience in web application firewalls, cloud security, security operations, and ... Run automated penetration testing and attack path analysis (NodeZero); validate findings and drive ...

Senior Cybersecurity Engineer

Columbus, OH · On-site

$110K - $151K/yr

... strong experience in web application firewalls, cloud security, security operations, and ... Run automated penetration testing and attack path analysis (NodeZero); validate findings and drive ...

Design and support perimeter security solutions including Web Application Firewalls (WAF), Azure ... Provide analytical and problem-solving expertise to evaluate opportunities, and decisions and ...

Design and support perimeter security solutions including Web Application Firewalls (WAF), Azure ... Provide analytical and problem-solving expertise to evaluate opportunities, and decisions and ...

Design and support perimeter security solutions including Web Application Firewalls (WAF), Azure ... Provide analytical and problem-solving expertise to evaluate opportunities, and decisions and ...

... strong experience in web application firewalls, cloud security, security operations, and ... Run automated penetration testing and attack path analysis (NodeZero); validate findings and drive ...

... application operations experience. * Experience in the Intelligence Community. * Analytical skills ... Required Security Clearance * Active Top Secret/SCI with CI Polygraph Pay & Benefit Highlights ...

OH

$56.75 - $75.75/hr

The Opportunity As a Application Security Engineer at Kami, you won't just be identifying risks and ... Embed automated security scanning tools, analysis processes, and proactive guardrails cleanly ...

Design and support perimeter security solutions including Web Application Firewalls (WAF), Azure ... Provide analytical and problem-solving expertise to evaluate opportunities, and decisions and ...

Design and support perimeter security solutions including Web Application Firewalls (WAF), Azure ... Provide analytical and problem-solving expertise to evaluate opportunities, and decisions and ...

Showing results 21-40

Web Application Security Analyst information

What does a web application security analyst do?

A Web Application Security Analyst is responsible for identifying, analyzing, and mitigating security risks in web applications. Their main duties include performing security assessments, penetration testing, code reviews, and monitoring for vulnerabilities. They work closely with development teams to ensure applications are built securely from the ground up and stay compliant with security standards. Additionally, they keep up to date with the latest security threats and recommend best practices for safeguarding sensitive data.

What are the key skills and qualifications needed to thrive as a web application security analyst?

To thrive as a Web Application Security Analyst, you need expertise in web security concepts, vulnerability assessment, and secure coding practices, often backed by a degree in computer science or cybersecurity and relevant certifications like CEH or OSCP. Familiarity with tools such as Burp Suite, OWASP ZAP, and security information and event management (SIEM) systems is typically required. Analytical thinking, attention to detail, and strong communication skills help analysts identify threats and convey risks to technical and non-technical stakeholders. These skills ensure robust protection of web applications, reducing the risk of breaches and safeguarding sensitive data.

What are some common challenges faced by web application security analysts when working with development teams?

Web Application Security Analysts often face challenges in balancing security requirements with development speed and business goals. They must effectively communicate security risks and recommendations to developers who may not have a security background, which requires strong interpersonal skills and the ability to translate technical findings into actionable steps. Additionally, analysts may need to prioritize vulnerabilities based on risk and resource constraints, ensuring critical issues are addressed without hindering project timelines. Building strong, collaborative relationships with development teams is crucial to successfully integrating security into the software development lifecycle.

What is the difference between Web Application Security Analyst vs Penetration Tester?

AspectWeb Application Security AnalystPenetration Tester
CertificationsCompTIA Security+, CEH, OSCP (preferred)CEH, OSCP, GPEN
Work EnvironmentSecurity teams within organizations, focusing on ongoing security assessmentsConsulting firms or internal teams conducting simulated attacks
Industry UsageCommon in tech, finance, healthcare sectorsUsed across various industries for security testing
Primary FocusMonitoring, analyzing, and improving web application securityIdentifying vulnerabilities through simulated attacks

Both roles involve cybersecurity skills and certifications like CEH or OSCP. However, Web Application Security Analysts focus on maintaining and improving security within organizations, while Penetration Testers simulate attacks to identify vulnerabilities. The roles often overlap but differ in scope and approach.

Infographic showing various Web Application Security Analyst job openings in Ohio as of August 2026, with employment types broken down into 63% Full Time, 12% Part Time, and 25% Contract. Highlights an 83% In-person, and 17% Remote job distribution.

Application Security & DevSecOps Architect

Dublin, OH • On-site

Superior Dental Care, Inc.
Insurance Services • 11 - 50 employees

$100 - $125/hr

Other

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 4 days ago


Key responsibilities

  • Lead the design and implementation of secure application architecture and DevSecOps practices across the enterprise.

  • Embed security throughout the software development lifecycle (SDLC) to reduce risk and improve resiliency.

  • Serve as the primary technical authority for application security, vulnerability management, and DevSecOps pipeline security.


Job description

Application Security & DevSecOps Architect

Job Category: IT Architecture

Requisition Number: ARCHI001289

Job Type: Full‑Time

Work Environment: Hybrid

Location: Dublin, OH 43017, USA

This is a hybrid‑remote role based out of the Dublin, OH office, with employees expected to work onsite on designated in‑office days each week.

Job Summary

The Application Security & DevSecOps Architect will lead the design and implementation of secure application architecture and DevSecOps practices across the enterprise, embed security throughout the software development lifecycle (SDLC) to reduce risk, improve resiliency, and enable scalable, secure software delivery. The role serves as the primary technical authority for application security, vulnerability management, and DevSecOps pipeline security.

Preferred Technical Skills
  • Hands‑on experience with application security tooling:
    • SAST (Snyk, Wiz, Checkmarx, Veracode, Semgrep, SonarQube)
    • DAST (Qualys, Burp Suite, OWASP ZAP, Invicti)
    • SCA, IaC scanning, container security tools
  • Strong knowledge of:
    • OWASP Top 10, CWE Top 25
    • Threat modeling (STRIDE, PASTA, or equivalent)
    • API security and authentication (OAuth2, OIDC, SAML)
  • Experience with:
    • CI/CD platforms (Azure DevOps, GitHub Actions, Jenkins, GitLab)
    • Cloud security (AWS, Azure)
    • Containers and orchestration (Docker, Kubernetes)
  • Working knowledge of secure architecture patterns and Zero Trust principles
Qualifications
  • Bachelor's degree in Computer Science or related field or equivalent combination of training/education and experience.
  • 3 years proven ability to transfer technology to end user applications/environments.
  • Experience in cutting‑edge web collaboration design patterns and best practices.
Professional Certification(s)
  • NA
Technical Skills and Knowledge
  • Expert in one or more technologies (Microsoft, OpenSource, Database (relational, graph, Map, document, etc.).
  • Basic knowledge in infrastructure and networks with focus on security.
  • Basic understanding of various project methodology disciplines with basic knowledge of information and systems architectures, highly proficient in website architectures.
  • Basic understanding of various data base platforms and data warehousing.
Benefits
  • We will provide the equipment you need for this role, including a laptop, monitors, keyboard, mouse and headset.
  • Whether you are working remote or in the office, employees have access to on‑site fitness centers at many locations, or a gym membership reimbursement when there is no Medical Mutual facility available. Enjoy the use of weights, cardio machines, locker rooms, classes and more.
  • On‑site cafeteria, serving hot breakfast and lunch, at the Brooklyn, OH headquarters.
  • Discounts at many places in and around town, just for being a Medical Mutual team member.
  • The opportunity to earn cash rewards for shopping with our customers.
Excellent Benefits and Compensation
  • Employee bonus program.
  • 401(k) with company match up to 4% and an additional company contribution.
  • Health Savings Account with a company matching contribution.
  • Excellent medical, dental, vision, life and disability insurance — insurance is what we do best, and we make affordable coverage for our team a priority.
  • Access to an Employee Assistance Program, which includes professional counseling, personal and professional coaching, self‑help resources and assistance with work/life benefits.
  • Company holidays and up to 16 PTO days during the first year of employment with options to carry over unused PTO time.
  • After 120 days of service, parental leave for eligible employees who become parents through maternity, paternity or adoption.
An Investment in You
  • Career development programs and classes.
  • Mentoring and coaching to help you advance in your career.
  • Tuition reimbursement up to $5,250 per year, the IRS maximum.
  • Diverse, inclusive and welcoming culture with Business Resource Groups.

We maintain a drug‑free workplace and perform pre‑employment substance abuse and nicotine testing.

#LI-CS1 #LI-HYBRID

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

#J-18808-Ljbffr