> Markdown version of [/jobs/ext/2424845-application-security-associate-analyst](https://www.wearedevelopers.com/jobs/ext/2424845-application-security-associate-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Application Security Associate Analyst... - **Company:** Truist Inc - **Location:** Atlanta, GA, United States - **Experience:** Experienced - **Contract:** Internship / Graduate position - **Skills:** Java (Programming Language), JavaScript (Programming Language), Artificial Intelligence, Microsoft Azure, Business Systems, C Sharp (Programming Language), Spreadsheets, Cyber Security, Computer Programming, Github, JSON, Python (Programming Language), Open Source Intelligence, Open Web Application Security, Software Engineering, Software Vulnerability Management, Scripting, Enterprise Software Applications, Large Language Models, Software Security, Gitlab, Information Technology, Enterprise Integration, Machine Learning Operations, Software Version Control, Devsecops, Servicenow, Static Application Security Testing - **Published:** August 1, 2026 - **Apply:** https://www.juju.com/job/00000000glwbkc ## About the Role The successful candidate has a demonstrated technical foundation, typically developed through a technical degree, internships, or hands-on project work, and is prepared to build deeper security expertise while supporting our teams., + A working foundation in programming or scripting (Python, Java, JavaScript, C#, or similar), sufficient to read and write code. + Familiarity with application security concepts such as SAST, SCA, cloud and container scanning, security tool pipeline integration, OSINT, and similar disciplines. + Basic understanding of CI/CD pipelines and DevSecOps concepts. + Comfort working with data (JSON, CSV, spreadsheets) and an aptitude for automation and reporting. + Awareness of core vulnerability concepts (severity, exploitability, CVSS) and the OWASP Top 10. + Exposure to source control and pipeline platforms (such as GitLab, GitHub, or Azure DevOps). + Ability to produce clear technical documentation and training content. + Understanding of how AI/ML tools can support security and automation. + Strong analytical and problem-solving skills with the ability to learn quickly in a technical environment. Required Qualifications The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. + Bachelor's degree in Information Technology, Computer Science, or related field. + At least 2 years of experience in business systems analysis, system support, or related roles within enterprise technology environments. + Strong understanding of business process analysis, requirements gathering, and documentation. + Knowledge of enterprise systems, software development lifecycle, and support processes. + Relevant certifications such as CBAP, CCBA, or equivalent are preferred. Preferred Qualifications + Degree or coursework in Computer Science, Software Engineering, Cybersecurity, or a related field. + Hands-on experience through internships, project work, or security competitions (e.g., CTFs, hackathons). + Exposure to AI/ML tools and frameworks (e.g., LLM APIs, prompt-based automation). + Progress toward an entry-level security certification (e.g., Security+). + Exposure to vulnerability management platforms (e.g., ServiceNow VR). ## Description You will work across the full range of our AppSec functions, such as static and composition analysis (SAST, SCA), cloud and container scanning, security tool pipeline integration, OSINT, and DevSecOps automation. With guidance from senior analysts and stack owners, you will learn each area well enough to help developers, document processes, and build the training and automation that scale the team's impact., Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time. + Learn how the team supports developers across AppSec disciplines (such as SAST, SCA, cloud and container scanning, OSINT, and DevSecOps automation) and help address routine questions under guidance. + Help create and maintain developer training, secure-coding guidance, and self-service enablement content. + Document team processes and workflows clearly so knowledge is easy to share and reuse. + Assist with security tool and pipeline integration workflows and help explain results to developers. + Help build and maintain metrics, dashboards, and reporting on vulnerability posture and remediation progress. + Write scripts to automate evidence collection, data gathering, and repetitive tasks, with support from senior team members. + Gather and organize data from multiple tools and sources to support insights and reporting. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer)