CloudShape

Application Security Analyst

Washington DC, DC - Full Time

Application Security Analyst

Location: Remote

Citizenship required: Yes

Clearance Type: Secret

Telecommute: Yes

Travel Required: No

Positions Available: 

At Cloudshape our employees have incredible opportunities to work in helping organizations securely transform their IT Infrastructure to meet the changing business cultures. We help government agencies transform their IT infrastructure using a solutions-driven approach that focuses on business outcomes rather than activities and tasks. This results in reduced capital requirements; lower and predictable operating costs; better alignment with business objectives; and reduced risk.

Our people make us who we are. We believe that to be a good partner for our clients we must have a solid team dynamic. We place emphasis on personal growth, learning new skills and we offer a remote work policy.

Cloudshape is experiencing rapid growth within our IT & Engineering Portfolio. We are currently seeking a talented Application Security Analyst to join our growing team. This person will be responsible for assisting various technical teams in maintaining the security of web applications and application servers within the customer’s portfolio.

To be considered for this position, US Citizenship and an active secret security clearance is required.

Basic Qualifications: 

  • Relevant experience is required for these positions. These positions can be filled at multiple levels.
    • For a Jr. Level Application Security Analyst, Four (4) years of relevant experience is required.
    • For a Mid Level Application Security Analyst, Eight (8) years of relevant experience is required. 
    • For a Sr. Level Application Security Analyst, Twelve (12) years of relevant experience is required. 
  • Strong understanding of web application security principles, common vulnerabilities, and best practices (e.g., OWASP Top Ten).
  • Familiarity with security testing tools and techniques, including web vulnerability scanners, penetration testing, and code review.
  • Solid knowledge of various operating systems, including both Windows and Linux, and their security features.
  • Understanding of network protocols, firewall configurations, and network security concepts.
  • Strong communication skills to collaborate with development teams, articulate security findings, and provide recommendations for remediation.
  • Strong analytical skills to identify and assess security risks and develop strategies for mitigation.
  • US Citizen with an active secret security clearance.

Preferred Qualifications: 

  • Knowledge of security frameworks and standards like NIST Cybersecurity Framework.
  • Proficiency in using a range of security tools including Nessus and Qualys.
  • Familiarity with cloud security principles and experience securing web applications hosted in cloud environments like AWS, Azure, or Google Cloud.
  • Experience in conducting web application security assessments, vulnerability scanning, and penetration testing.
  • Understanding of incident response processes and the ability to participate in security incident investigations.
  • Basic certifications in web application security or general security, such as CompTIA Security+, Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH).

What a new Cloudshape team member can expect starting out:

  • During the first 30 days of employment onboarding activities to include training requirements, program overviews, system familiarization, and department-specific training will establish a solid foundation for the new Cloudshape team member. Introductions to management and team leads will provide insight into the team dynamics while identifying key areas where the new Cloudshape team member can provide value to the program.
  • Day 30 through 90 will consist of further integrating the new Cloudshape team member into daily activities with a team lead to guide them. Tasks will be assigned in accordance with the appropriate pace needed to ensure process and system assimilation.
  • Day 90 and onward will consist of mission-guided projects and opportunities for the new Cloudshape team member to collaborate in a cross-functional team environment. From leading day-to-day activities in the operations department, this person will have the ability to invest in their future while delivering maximum value to our customer.

Cloudshape is committed to employee growth through learning, training, advancement, and rewards. We offer a full range of benefits that includes:

  • Flexible Work Schedule
  • Paid Time Off
  • Medical, Dental and Vision Insurance
  • Cloudshape will contribute to 401K plans without any employee contributions.
  • Profit Sharing
  • Life Insurance and AD&D Insurance
  • Short-Term and Long-Term Disability Insurance
  • Training Assistance
  • Employee Referral Program

The health and safety of our employees and their families is a top priority. The company encourages employees to remain up-to-date on their COVID-19 vaccinations. U.S. Cloudshape employees may be required, in the future, to be vaccinated or have an approved disability/medical or religious accommodation, pursuant to future court decisions and/or government action on the currently stayed federal contractor vaccine mandate under Executive Order 14042 https://www.saferfederalworkforce.gov/contractors/.

Cloudshape is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. U.S. Citizenship is required for most positions.

Apply: Application Security Analyst
* Required fields
First name*
Last name*
Email address*
Location
Phone number*
Resume*

Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or paste resume

Paste your resume here or attach resume file

Do you have an active Security Clearance at the Secret (or higher) level?*
Human Check*