Senior Application Security Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

Triumph · 2 weeks ago

Senior Application Security Analyst

Triumph is seeking a Senior Application Security Analyst to join their cybersecurity defense team. In this role, you will work closely with developers and security partners to identify risks and reduce vulnerabilities, ensuring secure application development and deployment.

BankingCommercial LendingFinancial ServicesPayments
check
Culture & Values
check
H1B Sponsor Likelynote

Responsibilities

Analyze application architectures to identify security risks and potential attack paths
Perform secure code reviews and vulnerability assessments, recommending effective remediation
Integrate security tools and automated checks into CI/CD and DevOps pipelines
Use static and dynamic scanning tools to identify, prioritize, and track security findings
Partner with developers and operations teams to embed security throughout the SDLC
Document and report application security issues, including remediation guidance and validation
Support new application and technology launches to prevent misconfigurations and data exposure
Collaborate with red teams, threat intelligence, and risk teams to reduce overall attack surface
Communicate security risks clearly to both technical and non-technical audiences
Support internal and external audits focused on compliance and risk reduction
Help define metrics and KPIs that demonstrate the effectiveness of the application security program
Participate in change management discussions and continuous improvement initiatives

Qualification

Application securitySecure software developmentStaticDynamic testingDevSecOps conceptsVulnerability management toolsScripting languagesAnalytical mindsetSecurity certificationsCommunication skillsAttention to detailCollaboration

Required

3–5+ years of experience in application security, with exposure to secure software development practices
Solid understanding of application architecture, APIs, microservices, and web and mobile security
Experience with static and dynamic application security testing and vulnerability management tools
Working knowledge of DevSecOps concepts and CI/CD security integration
Ability to script or work with languages such as Python, Bash, PowerShell, or Perl
Familiarity with OWASP Top 10, CVSS, MITRE ATT&CK, and the software development lifecycle
Comfortable reviewing code and understanding security risks across different programming languages
Strong communication skills with the ability to explain security risks in business-friendly terms
Analytical mindset, attention to detail, and a collaborative approach to problem-solving
Bachelor's degree in Information Security, Computer Science, Information Systems, or equivalent experience

Preferred

Security certifications such as GWEB, CSSLP, or GPEN are a plus

Benefits

Medical
Dental
Vision
Paid Time Off
401k
And much more.

Company

Triumph

twittertwittertwitter
company-logo
Triumph is a financial and technology company serving the transportation industry with pioneering payments, factoring, intelligence and banking solutions, powered by The Triumph Network.

H1B Sponsorship

Triumph has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (2)
2022 (2)
2021 (2)
2020 (1)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Mitchell Lee
EVP, Chief Risk and Compliance Officer
linkedin
Company data provided by crunchbase