Kemper Corporation

Application Security Analyst

Kemper Corporation • $93K — $155K *
US-Anywhere
+ 4 other locationsRemote
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of hands-on application security testing and vulnerability validation experience.
  • Strong knowledge of OWASP Top 10 risks and common web/application attack techniques.
  • Familiarity with security testing tools: SAST, DAST, SCA, and API testing.
  • Understanding of modern software architectures, including REST/GraphQL APIs and cloud services.
  • Excellent ability to engage developers for actionable remediation guidance.
  • Experience with secure SDLC, threat modeling, and application-risk prioritization.
  • Ability to connect technical exploitability with business impact.

Responsibilities

  • Integrate security into software development and release processes.
  • Conduct and validate various security testing methodologies.
  • Review security designs and architectures of diverse applications.
  • Collaborate with developers on design-level remediation guidance.
  • Enhance CI/CD security controls and developer enablement standards.
  • Prioritize application vulnerabilities using risk and business context.
  • Analyze defect patterns for continuous control improvements.

Benefits

  • Comprehensive medical, dental, and vision insurance.
  • Paid time off (PTO) for work-life balance.
  • Retirement savings plan with 401K options.
Full Job Description
Location(s)
Remote-AL, Remote-FL, Remote-GA, Remote-IL

Details

Kemper Insurance is hiring an Application Security Analyst. The Application Security Analyst is one who embeds security into the software development lifecycle and performs technically credible application-security assessment across modern applications, APIs, cloud-native services, and software supply chains. The role partners directly with developers and architects to prevent, identify, validate, and remediate exploitable application risk.

Key Responsibilities

  • Integrate security requirements and threat modeling into architecture, design, development, testing, release, and exception processes.


  • Perform and validate SAST, DAST, SCA, API, mobile, and manual security testing; distinguish exploitable weaknesses from tool noise.


  • Conduct security design and architecture reviews for web, API, cloud-native, containerized, and distributed applications.


  • Partner with developers to provide code-level or design-level remediation guidance and verify closure.


  • Build or improve CI/CD security controls, scanning integrations, secure coding standards, and developer enablement.


  • Use risk, exploitability, asset criticality, and business context to prioritize application vulnerabilities and security debt.


  • Analyze recurring defect patterns and drive preventive control improvements across engineering teams.


Qualifications

  • Hands-on experience with application security testing, secure code review, and vulnerability validation.
  • Strong knowledge of OWASP Top 10/API risks, authentication/authorization patterns, session management, cryptography fundamentals, input validation, and common web/application attack techniques.
  • Working knowledge of SAST, DAST, SCA, API testing, secrets scanning, and CI/CD security tooling.
  • Understanding of modern software architectures, REST/GraphQL APIs, containers, cloud services, and software supply-chain dependencies.
  • Ability to engage developers at a technical level and provide actionable remediation guidance.
  • Applied secure SDLC, threat modeling, architecture review, risk-based exception, and application-risk prioritization experience.
  • Ability to translate exploitability into business impact and risk treatment decisions.
  • Understanding of security-control objectives for application development and deployment.
  • BS Computer Science, Software Engineering, Cybersecurity, Information Technology, or a related discipline, or equivalent relevant professional experience.


The range for this position is 93,500-155,500. When determining candidate offers, we consider experience, skills, education, certifications, and geographic location among other factors. This job is also eligible for our Kemper benefits package (Medical, Dental, Vision, PTO, 401K, etc.)

About Kemper Corporation

Kemper Corporation is an insurance holding company that provides property and casualty insurance, life and health insurance, and other financial products and services. The company was founded in 1990 and is headquartered in Chicago, Illinois. Kemper's property and casualty insurance products include personal and commercial auto insurance, homeowners insurance, and renters insurance. The company's life and health insurance products include individual life insurance, group life insurance, and health insurance. Kemper Corporation operates through its subsidiaries, which include Kemper Preferred, Kemper Specialty, and Kemper Life.
Learn more about Kemper Corporation
Size
10,300 employees
Market Cap
$3.2 billion
Industry
Net Income
$409.9 million
5 Year Trend
+17.4%
Revenue
$5.1 billion
NASDAQ

Similar Jobs

More Jobs at Kemper Corporation

More Information Technology Jobs

Find similar Application Security Analyst jobs: