> Markdown version of [/jobs/ext/1472439-application-security-analyst](https://www.wearedevelopers.com/jobs/ext/1472439-application-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Analyst - **Company:** Dhl Express (usa), Inc. - **Location:** Weston, FL, United States (Remote available) - **Experience:** Experienced - **Salary:** $63,300.0 - $84,400.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Microsoft Word, Java (Programming Language), JavaScript (Programming Language), Microsoft Excel, Artificial Intelligence, Business Analytics Applications, Data Analysis, Software System Penetration Testing, Cloud Computing Security, Static Program Analysis, Cyber Security, IT Management, Information Systems Security Architecture Professional, Python (Programming Language), Microsoft Office, Open Web Application Security, Microsoft PowerPoint, Smartsuite, Software Vulnerability Management, Cloud Platform System, ReactJS, Software Security, Information Technology, Devsecops, Static Application Security Testing, Programming Languages, Dynamic Application Security Testing - **Published:** July 28, 2026 - **Apply:** https://phg.tbe.taleo.net/phg03/ats/careers/v2/applyRequisition?org=DHLECOMMERCE&cws=43&rid=10998 ## About the Role * Knowledge of OWASP Top 10 and ASVS frameworks including best practice implementations. * Experience with cloud security and AI security standards (e.g. ISO 27017, CSA CCM, NIST AI RMF, ISO 42001) and best practices. * Ability to interpret different coding languages incl. python, Java, ReAct and JavaScript as well as further widespread languages. * Excellent organizational and analytical skills. * Must be able to analyze data, draw conclusions, interpret results, and make recommendations with respect to various IT systems. * Ability to communicate effectively with all levels of management. * Ability to work effectively in a global environment, including awareness of and sensitivity to cultural differences. * Ability to produce high quality work under pressure or tight deadlines. * Good written, oral, and interpersonal communication skills. * Strong Microsoft Office skills (Word, Excel, PowerPoint). * Strong attention to detail. * Ability to multi-task., * Bachelor's degree in information technology, or related field of study preferred. * 3+ years of experience required in application security, DevSecOps or security architecture. * Experience with best practices and tools in API security, container security, modern identity frameworks and supply chain security * Knowledge of most common SAST, DAST and penetration testing tools and procedures. * Experience with CVSS, risk management and GRC tools. * Experience and knowledge of Microsoft Office (Word, Excel, PowerPoint). * Process automation experience preferred. * Experience working with a global organization and/or interacting with colleagues in foreign jurisdictions. * Security certifications such as CISSP, CISA, CEH, OSCP or CCSP are preferred. ## Description The Application Security Analyst is responsible for ensuring the security of homegrown and 3rd party applications. The role emphasizes analytical and advisory responsibilities rather than hands-on implementation, supporting secure architecture practices, overseeing the security posture of applications (including cloud and AI solutions), and providing transparency to IT management through status reporting and risk insights. The Application Security Analyst assesses and advises on security architecture and configuration of systems, applications and infrastructure. The role also collaborates with the DevSecOps team on state-of-the-art procedures. The position also independently assesses the results of security test reports like static code analysis, dynamic application analysis and penetration testing and supports development teams with the mitigation of findings. This position works within a fast paced, agile environment collaborating with business and technology teams across the Americas region to implement and support next generation security solutions., * Review and advice on security architecture of systems, applications and infrastructure throughout the lifecycle in classic and cloud environments. * Document and improve security and DevSecOps procedures and documentation requirements. * Assess the results of security test reports incl. static code analysis (SAST) reports, dynamic application analysis (DAST) reports and penetration testing reports with a focus on OWASP Top 10. * Document test results and remaining risks in GRC tool. Present them to Director IT Security and management. * Amalgamate industry best practices and organization specifics into security solutions. * Assist developers with the identification, understanding and implementation of remediation measures. * Support the creation of application security concepts and perform security reviews. * Assist in review and security assessments of AI solutions and their security guardrails and compliance. * Support security audits and security testing. * Support risk management process and vulnerability management process. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Watch Tests Go Brrrr! : Getting Started with Cypress in ReactJS](https://www.wearedevelopers.com/videos/282-watch-tests-go-brrrr-getting-started-with-cypress-in-reactjs) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)