Application Security Data Analyst 3652226

Axiom Path

  • Charlotte, North Carolina
  • Today

    Highlights

    This team is managing a significant volume of security findings and is focused on separating actionable risk from false positives, strengthening security practices throughout the software development lifecycle, and improving how sensitive information and application vulnerabilities are identified and managed. Clearly understand source control management, including repositories, code check-in/check-out concepts, pushes, pulls, and pull requests.

    Numbers & Facts

    LocationCharlotte, North Carolina

    Description

    Be Part Of A High-Performing Team

    Join a technology and security-focused team responsible for improving the quality, governance, and usability of application security and vulnerability data across a complex enterprise environment. This team is managing a significant volume of security findings and is focused on separating actionable risk from false positives, strengthening security practices throughout the software development lifecycle, and improving how sensitive information and application vulnerabilities are identified and managed.

    What’s In Store For You

    • Contract opportunity.
    • Hybrid work environment with Charlotte, NC strongly preferred.
    • Opportunity to work at the intersection of data analysis, application security, software development, and data governance.
    • Exposure to enterprise vulnerability management, source control practices, secure development processes, and sensitive-data protection.

    How You Will Make An Impact

    • Analyze application security and vulnerability data to help distinguish legitimate security risks from false-positive findings.
    • Support efforts to investigate findings involving exposed secrets, credentials, tokens, passwords, SaaS applications, and other application security vulnerabilities.
    • Navigate source-control repositories and review information associated with code changes, repositories, commits, pushes, pulls, and pull requests.
    • Partner with technical and security stakeholders to understand vulnerabilities and communicate findings in clear business and technical language.
    • Apply secure SDLC concepts when evaluating application and software-development risks.
    • Support data-governance activities involving sensitive information, including PHI and other protected data.
    • Help categorize, explain, and prioritize security risks using foundational cybersecurity principles.
    • Contribute to improving the accuracy and effectiveness of vulnerability-management processes.

    Are you an experienced application security and data professional ready to make an impact?

    • Bring foundational experience in cybersecurity, application security, vulnerability management, software development, data analysis, or a closely related technical discipline.
    • Clearly understand source control management, including repositories, code check-in/check-out concepts, pushes, pulls, and pull requests.
    • Understand what secrets are within software environments, including credentials, passwords, API keys, access tokens, and similar sensitive values.
    • Demonstrate knowledge of the Software Development Life Cycle (SDLC) and how security is incorporated through a secure SDLC.
    • Understand common application-security vulnerabilities and how technical findings translate into organizational risk.
    • Bring working knowledge of data governance, sensitive-data handling, and concepts such as PHI.
    • Understand foundational cybersecurity principles, including confidentiality, integrity, availability, and basic risk concepts.
    • Be able to distinguish and explain concepts such as SaaS and DaaS.
    • Possess enough software-development knowledge to understand how applications, repositories, code changes, and security findings relate to one another.
    • Communicate technical and security concepts clearly to audiences with varying levels of technical expertise.
    • Be comfortable being evaluated on practical understanding rather than memorized terminology or years of experience alone.

    Similar Jobs

    See more jobs