Application Security Associate Analyst...

Truist Inc
Atlanta, GA, United States
about 1 month ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Internship / Graduate position
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) JavaScript (Programming Language) Artificial Intelligence Microsoft Azure Business Systems C Sharp (Programming Language) Spreadsheets Cyber Security Computer Programming Github JSON Python (Programming Language)
+16 more
Open Source Intelligence Open Web Application Security Software Engineering Software Vulnerability Management Scripting Enterprise Software Applications Large Language Models Software Security Gitlab Information Technology Enterprise Integration Machine Learning Operations Software Version Control Devsecops Servicenow Static Application Security Testing

Job description

You will work across the full range of our AppSec functions, such as static and composition analysis (SAST, SCA), cloud and container scanning, security tool pipeline integration, OSINT, and DevSecOps automation. With guidance from senior analysts and stack owners, you will learn each area well enough to help developers, document processes, and build the training and automation that scale the team’s impact., Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Learn how the team supports developers across AppSec disciplines (such as SAST, SCA, cloud and container scanning, OSINT, and DevSecOps automation) and help address routine questions under guidance.

  • Help create and maintain developer training, secure-coding guidance, and self-service enablement content.

  • Document team processes and workflows clearly so knowledge is easy to share and reuse.

  • Assist with security tool and pipeline integration workflows and help explain results to developers.

  • Help build and maintain metrics, dashboards, and reporting on vulnerability posture and remediation progress.

  • Write scripts to automate evidence collection, data gathering, and repetitive tasks, with support from senior team members.

  • Gather and organize data from multiple tools and sources to support insights and reporting.

Requirements

The successful candidate has a demonstrated technical foundation, typically developed through a technical degree, internships, or hands-on project work, and is prepared to build deeper security expertise while supporting our teams., + A working foundation in programming or scripting (Python, Java, JavaScript, C#, or similar), sufficient to read and write code.

  • Familiarity with application security concepts such as SAST, SCA, cloud and container scanning, security tool pipeline integration, OSINT, and similar disciplines.

  • Basic understanding of CI/CD pipelines and DevSecOps concepts.

  • Comfort working with data (JSON, CSV, spreadsheets) and an aptitude for automation and reporting.

  • Awareness of core vulnerability concepts (severity, exploitability, CVSS) and the OWASP Top 10.

  • Exposure to source control and pipeline platforms (such as GitLab, GitHub, or Azure DevOps).

  • Ability to produce clear technical documentation and training content.

  • Understanding of how AI/ML tools can support security and automation.

  • Strong analytical and problem-solving skills with the ability to learn quickly in a technical environment.

Required Qualifications

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Bachelor’s degree in Information Technology, Computer Science, or related field.

  • At least 2 years of experience in business systems analysis, system support, or related roles within enterprise technology environments.

  • Strong understanding of business process analysis, requirements gathering, and documentation.

  • Knowledge of enterprise systems, software development lifecycle, and support processes.

  • Relevant certifications such as CBAP, CCBA, or equivalent are preferred.

Preferred Qualifications

  • Degree or coursework in Computer Science, Software Engineering, Cybersecurity, or a related field.

  • Hands-on experience through internships, project work, or security competitions (e.g., CTFs, hackathons).

  • Exposure to AI/ML tools and frameworks (e.g., LLM APIs, prompt-based automation).

  • Progress toward an entry-level security certification (e.g., Security+).

  • Exposure to vulnerability management platforms (e.g., ServiceNow VR).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:22 min

Addressing the shortage of application security specialists

Joseph Katsioloudes Joseph Katsioloudes · World Congress 2025

3:47 min

Exploring JSON, CBOR, and JOSE for data serialization

Aaron Russell · LIVE

6:14 min

Structuring CI/CD pipelines with integrated security and quality checks

Christoph Ruggenthaler · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:03 min

Distinguishing type definition constructs from data validation routines

Clemens Vasters Clemens Vasters · World Congress 2025

Videos

See all

Related articles

See all