CareerZen Logo
Company logo

Application Security Analyst

W3Global Inc

Contract

Plano, TX

Job description

Our client is a collaborative, respectful, and innovation-driven organization known for creating an environment where team members are encouraged to dream, do, and grow. As a globally admired leader in mobility solutions, our client focuses on delivering high-quality, forward-thinking products and services designed to enhance lives.

Position Overview

Our client is seeking a skilled and proactive Application Security Analyst to embed security best practices into its DevOps ecosystem. This role partners closely with development and operations teams to ensure secure, compliant, and resilient software delivery pipelines-while supporting a strong shift-left security culture.

Key Responsibilities

  • Design, implement, and maintain secure CI/CD pipelines.

  • Integrate security tools (SAST, DAST, SCA, etc.) into development workflows.

  • Collaborate with development and operations teams to identify and remediate vulnerabilities.

  • Automate security testing, governance, and compliance checks.

  • Monitor, analyze, and respond to security incidents in cloud and containerized environments.

  • Develop, document, and enforce security policies, standards, and procedures.

  • Stay informed on emerging security threats, DevSecOps practices, and industry trends.

Qualifications - What You Bring (Must-Haves)

  • Bachelor's degree in Computer Science, Cybersecurity, or a related field.

  • 3+ years of experience in DevOps, Security Engineering, or similar roles (including 2-3 years of direct security experience; ~6 years total experience).

  • Strong understanding of CI/CD tools such as Jenkins or Harness.

  • Development experience in Java, Python, .NET, or similar languages.

  • Hands-on experience with security platforms such as Veracode, GitHub Advanced Security (GHAS), or Orca.

  • Proficiency in scripting (Python, Bash, etc.).

  • Familiarity with containerization and orchestration technologies (Docker, Kubernetes).

  • Knowledge of major cloud platforms (AWS, Azure, GCP) and their security features.

  • Strong understanding of secure coding practices and application security principles.

  • Knowledge of Infrastructure as Code (IaC) tools such as Terraform or Ansible.





#INDW3