Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
CCC Intelligent Solutions

Application Security Analyst

CCC Intelligent Solutions

. Perform application security assessments, including static analysis, dynamic analysis, software composition analysis, and manual validation of findings.

Posted 10/9/2026full-timeChicago • Illinois • United StatesMid-LevelSenior💰 $56,931 - $70,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in application security assessments, including static and dynamic analysis, and supports secure software development lifecycle initiatives. Proficient in scripting and automation to enhance security workflows and possesses strong communication skills for conveying technical findings.

Highest-signal resume keywords
Application Security AssessmentsScripting Languages (Python, PowerShell, JavaScript, Go)Security Testing Tools (SAST, DAST, SCA)Vulnerability Management ProcessesCloud Security Concepts (Azure, AWS, GCP)

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Static AnalysisDynamic AnalysisSoftware Composition AnalysisThreat ModelingPenetration TestingSecurity Metrics DevelopmentAutomation and ScriptingApplication ArchitecturesWeb Application VulnerabilitiesCI/CD Pipelines
Soft Skills
Analytical SkillsTroubleshooting SkillsCommunication Skills
Tools & Technologies
GitHubGitLabAzure DevOpsEndor LabsWizGitHub Advanced SecurityVeracodeCheckmarxBurp SuiteSecrets Detection Platforms
Certifications & Qualifications
Security+GSECCSSLPGWAPTOSCP
Industry Keywords
Secure Software Development LifecycleSecurity-By-Design PracticesSoftware Supply Chain SecurityIncident ResponseSecurity Standards and Procedures

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityGoogle Cloud PlatformJavaScriptPythonGo

About the role

Key responsibilities & impact
  • Perform application security assessments, including static analysis, dynamic analysis, software composition analysis, and manual validation of findings.
  • Review and triage security findings, distinguishing true positives from false positives and helping development teams prioritize remediation efforts.
  • Support secure software development lifecycle (SSDLC) initiatives and security-by-design practices across engineering teams.
  • Conduct threat modeling and security reviews for new applications, services, and technology implementations.
  • Partner with development teams to identify security weaknesses and provide remediation guidance.
  • Assist with penetration testing coordination and validation of remediation activities.
  • Develop and maintain security metrics, reporting, and dashboards related to application security risk.
  • Support vulnerability management processes, including identification, prioritization, tracking, and verification of remediation efforts.
  • Create automation, scripts, and integrations that improve security workflows and reduce manual effort.
  • Evaluate software supply chain risks and support secure use of open-source components.
  • Assist in developing security standards, procedures, and secure coding guidance.
  • Deliver security awareness and secure coding training to engineering teams.
  • Support incident response activities involving application security vulnerabilities when required.
  • Be familiar with AI workflows and enablement.

Requirements

What you’ll need
  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Understanding of common web application vulnerabilities, including the OWASP Top 10.
  • Experience working with security testing tools such as SAST, DAST, SCA, and secrets detection platforms.
  • Knowledge of application architectures, APIs, cloud-native applications, and modern development practices.
  • Experience with scripting languages such as Python, PowerShell, JavaScript, Go, or similar.
  • Familiarity with CI/CD pipelines and source control platforms such as GitHub, GitLab, or Azure DevOps.
  • Strong analytical, troubleshooting, and communication skills.
  • Ability to effectively communicate technical findings to both technical and non-technical stakeholders.
  • Experience with software supply chain security programs.
  • Familiarity with tools such as Endor Labs, Wiz, GitHub Advanced Security, Veracode, Checkmarx, Burp Suite, or similar technologies.
  • Knowledge of cloud security concepts across Azure, AWS, or GCP.
  • Experience automating security processes and workflow integrations.
  • Relevant certifications such as Security+, GSEC, CSSLP, GWAPT, OSCP, or related credentials.
  • Experience participating in secure architecture reviews and threat modeling exercises.
  • A video interview is required for this position.

Benefits

Comp & perks
  • 401K Match
  • Paid time off
  • Annual Incentive Plan Performance Bonus
  • Comprehensive health insurance
  • Adoption Assistance
  • Tuition Reimbursement
  • Wellness Programs
  • Stock Purchase Plan options
  • Employee Resource Groups