AWS Application Security Analyst *

CGI

• $97K — $123K *
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of application security and secure software development experience
  • Proficient with SAST, DAST, and SCA tools for detecting vulnerabilities
  • Experience in manual code reviews, threat modeling, and risk assessments
  • Knowledge of AWS security practices for cloud-deployed applications
  • Familiarity with DevSecOps and CI/CD integration
  • Programming experience in languages such as Java, Python, and JavaScript
  • Strong understanding of network protocols and common security vulnerabilities

Responsibilities

  • Perform manual and automated application and code security reviews
  • Conduct threat modeling and security risk assessments for applications
  • Collaborate with development teams on remediation strategies for security findings
  • Utilize application security testing tools in various environments
  • Support integration of security into CI/CD pipelines
  • Evaluate security in AWS and containerized environments
  • Create security guidance and best practices for teams

Benefits

  • Competitive compensation
  • Comprehensive insurance options
  • 401(k) matching contributions and share purchase plan
  • Paid time off for vacation, holidays, and sick leave
  • Paid parental leave
  • Learning opportunities and tuition assistance
  • Wellness and well-being programs
Full Job Description
Find similar career opportunities

AWS Application Security Analyst *

Category: Software Development/ Engineering

Main location: United States, Louisiana, Lafayette

Position ID:J0926-0379

Employment Type: Full Time

Position Description:

CGI is seeking an experienced AWS Application Security Analyst to support application security initiatives within a large financial services environment. This role will partner with development and technology teams to identify, assess, and remediate security risks throughout the software development lifecycle.

The Application Security Analyst will perform manual and automated security reviews, conduct threat modeling and risk assessments, and help development teams implement secure coding and DevSecOps practices. The role requires hands on experience with application security testing tools, CI/CD pipelines, and cloud security, with a strong emphasis on AWS environments.

This role is located at a client site in either Birmingham, AL, Knoxville, TN, Columbia, SC or Lafayette, LA. A hybrid working model is acceptable.

Your future duties and responsibilities:

. Perform manual and automated application and code security reviews to identify vulnerabilities and security risks.
. Conduct threat modeling and security risk assessments for new and existing applications.
. Work with development teams to identify appropriate remediation approaches for application security findings.
. Utilize SAST, DAST, and Software Composition Analysis (SCA) tools as part of application security testing.
. Support the integration of security controls and testing into CI/CD pipelines.
. Evaluate application security considerations across AWS and containerized environments.
. Apply knowledge of network protocols, encryption, secure coding practices, and common application vulnerabilities.
. Partner with development and security teams to strengthen DevSecOps practices throughout the software development lifecycle.
. Develop FAQs, guidance, and reusable security best practices for development and technology communities.

Required qualifications to be successful in this role:

. 5+ years of experience with application security and secure software development practices.
. Experience using SAST, DAST, and SCA tools to identify application vulnerabilities.
. Experience conducting manual code reviews, threat modeling, and application security risk assessments.
. Working knowledge of AWS security and securing applications deployed in cloud environments.
. Experience with DevSecOps practices and integrating security testing into CI/CD pipelines.
. Experience with GitHub, Jenkins, or comparable CI/CD platforms.
. Understanding of container security and associated application security risks.
. Programming or code review experience with Java, Python, JavaScript, C#, or similar languages.
. Strong understanding of network protocols, encryption, authentication, and common application security vulnerabilities.
. Ability to clearly communicate security findings and remediation recommendations to developers and other technical stakeholders.
. Experience in financial services or another highly regulated environment is preferred.

Desried Skillset:
Relevant security or cloud certifications, such as AWS Certified Security - Specialty, CISSP, CSSLP, or GIAC application security certifications, may be beneficial.
Education:
Bachelor's degree in Computer Science, Information Systems, or a related field.

Other Information:
CGI is required by law in some jurisdictions to include a reasonable estimate of the compensation range for this role. The determination of this range includes various factors not limited to skill set, level, experience, relevant training, and licensure and certifications. To support the ability to reward for merit based performance, CGI typically does not hire individuals at or near the top of the range for their role. Compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range for this role in the U.S. is $97,300.00 $123,800.00.

CGI's benefits are offered to eligible professionals on their first day of employment to include: . Competitive compensation . Comprehensive insurance options . Matching contributions through the 401(k) plan and the share purchase plan . Paid time off for vacation, holidays, and sick time . Paid parental leave .Learning opportunities and tuition assistance . Wellness and Well being programs

Skills:
  • GitHub
  • Java
  • JavaScript
  • Jenkins
  • Python
  • DevOps Security

Similar Jobs

More Jobs at CGI

More Finance & Insurance Jobs

Find similar AWS Application Security Analyst * jobs: