Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
S&P Global

Application Security Analyst

S&P Global

Cyber Security Analyst securing S&P Global applications and software supply chains. Assessing vulnerabilities, strengthening CI/CD, containers, cloud environments, and secure development practices.

Posted 8/4/2026full-timeGurugram • 🇮🇳 IndiaJuniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Application Security assessments, including SAST, DAST, and SCA tools, while effectively managing software supply chain security and cloud security posture. Proficient in vulnerability analysis and remediation, with strong collaboration skills to integrate security into the software development lifecycle.

Highest-signal resume keywords
Application Security AssessmentsSoftware Supply Chain SecuritySAST Tools ProficiencyCloud Security KnowledgeVulnerability Remediation

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
SASTDASTSCADependency AnalysisThreat ModelingCI/CD Pipeline SecurityDocker SecurityPython ScriptingBash ScriptingSecure Coding Practices
Soft Skills
Problem-SolvingAnalytical SkillsCommunication SkillsCollaborationLearning Agility
Tools & Technologies
SonarQubeSemgrepFortifyCheckmarxOWASP ZAPBurp SuiteSnykBlack DuckDependabotTrivy
Industry Keywords
SBOMOWASP Top 10CWECVECloud SecurityIAMSecurity GroupsCloudTrailSecurity HubCycloneDX

Tech Stack

Tools & technologies
AWSAzureCloudCyber SecurityDockerGoogle Cloud PlatformPythonSDLC

About the role

Key responsibilities & impact
  • Perform hands-on Application Security assessments using SAST, DAST, SCA, and manual code reviews
  • Identify, analyze, and remediate vulnerabilities in web, mobile, and API applications
  • Lead and support Software Supply Chain Security initiatives
  • Manage dependency vulnerabilities and generate and analyze SBOMs
  • Secure CI/CD pipelines, code signing, artifact repositories, and open-source components
  • Conduct threat modeling for applications and integration points
  • Review and secure build pipelines, container images, and third-party libraries
  • Collaborate with development, DevOps, and infrastructure teams to embed security into the SDLC
  • Monitor and triage findings from AppSec tools
  • Support cloud security posture reviews covering IAM, network security, and cloud misconfigurations
  • Prepare security reports, risk assessments, and remediation guidance
  • Stay updated on emerging application security and software supply chain threats

Requirements

What you’ll need
  • 1–3 years of cybersecurity experience with strong hands-on Application Security exposure
  • Practical Software Supply Chain Security experience, including SCA tools, dependency analysis, and SBOMs, highly preferred
  • Basic to working knowledge of Cloud Security using AWS, Azure, or GCP
  • Proficiency with SAST tools including SonarQube, Semgrep, Fortify, and Checkmarx
  • Proficiency with DAST tools including OWASP ZAP and Burp Suite
  • Proficiency with SCA tools including Snyk, Black Duck, Dependabot, and Trivy
  • Familiarity with GitHub Advanced Security, GitLab Ultimate, and similar tools
  • Understanding of OWASP Top 10, CWE, CVE, and secure coding practices
  • Experience with Docker/container security and CI/CD pipeline security
  • Familiarity with CycloneDX and SPDX SBOM formats
  • Knowledge of cloud services including IAM, Security Groups, CloudTrail, and Security Hub
  • Basic Python or Bash scripting skills are an added advantage
  • Bachelor’s degree in Computer Science, IT, Cybersecurity, or equivalent
  • Strong learning agility and willingness to explore new tools and attack techniques
  • Excellent problem-solving and analytical skills
  • Good communication skills for explaining security risks to non-technical audiences
  • Collaborative mindset with a security-by-design approach

Benefits

Comp & perks
  • Hands-on work on core AppSec and Supply Chain Security projects
  • Exposure to modern tools and real-world security challenges
  • Mentorship and structured learning path
  • Clear growth opportunities in Application Security domain
  • Competitive compensation and benefits
  • Health care coverage designed for the mind and body
  • Generous time off
  • Continuous learning resources
  • Retirement planning
  • Continuing education program with a company-matched student loan contribution
  • Financial wellness programs
  • Family-friendly benefits and perks
  • Retail discounts
  • Referral incentive awards