Demo

Applications Security Analyst

Zane State College
Zane State College Salary
Roanoke, VA Temporary
POSTED ON 4/2/2026
AVAILABLE BEFORE 4/30/2026
General Description

Performs professional and technical work involving the analysis, assessment, and coordination of application security activities for County systems and business applications. Conducts security reviews of applications, databases, interfaces, file shares, cloud and SaaS platforms, and related systems to identify vulnerabilities, access control weaknesses, insecure configurations, and data exposure risks. Utilizes approved vulnerability assessment and security analysis tools to identify, validate, document, and track security issues affecting applications and supporting systems. Works with application owners, technical staff, business units, and vendors to support remediation planning, implementation of corrective actions, mitigation strategies, and documentation of approved exceptions. Assists in the development and maintenance of procedures, standards, and documentation related to application security, vulnerability management, and access governance. Prepares findings summaries, reports, and recommendations for technical staff, business users, management, and leadership. Assigned systems may include one or more major systems supporting multiple business units and/or several smaller systems with cross-system integration requirements. Assigned security tasks cover a diverse range of on-premise and cloud-based enterprise systems, spanning departments such as Finance, Public Safety, General Services, etc. Work may include securing in-house processes and software within Windows, SQL, and web-based environments. Work is performed under the general direction of designated Information Technology leadership.

This is a temporary position, only expected to last 6 months

Essential Job Functions

~ Conducts security assessments of assigned applications, databases, interfaces, file shares, collaboration platforms, cloud services, SaaS platforms, and related systems to identify vulnerabilities, access control weaknesses, insecure configurations, and data exposure risks.

~ Documents security findings, risk observations, technical conditions, business impact, and recommended corrective actions in accordance with established procedures and standards.

~ Utilizes approved vulnerability assessment, scanning, and security analysis tools to identify, validate, document, and prioritize security findings affecting applications and supporting systems.

~ Reviews user, group, shared, service, and administrative access to assigned systems and applications to identify excessive privileges, inappropriate access, dormant accounts, and opportunities to improve least-privilege enforcement.

~ Works with application owners, infrastructure staff, database administrators, business units, vendors, and other Information Technology personnel to support remediation of identified vulnerabilities and security control deficiencies.

~ Assists with review and documentation of security exceptions, compensating controls, mitigation strategies, and risk acceptance decisions in accordance with established policies and procedures.

~ Supports periodic access reviews and evaluates onboarding, transfer, and offboarding processes for control weaknesses, inconsistent access assignments, and access governance gaps.

~ Identifies systems that store, process, or transmit sensitive, confidential, or business-critical data and assists in mapping data types, access groups, and applicable security controls.

~ Reviews application- and system-level security controls, including access restrictions, role design, encryption settings, data sharing controls, and other protective measures, as applicable.

~ Assists in the development, maintenance, and improvement of procedures, standards, templates, and documentation used for application security assessments, vulnerability management, and related review processes.

~ Prepares reports, summaries, metrics, dashboards, and status updates related to security findings, remediation activities, and risk conditions for management, leadership, auditors, and other stakeholders.

~ Participates in project planning, implementation, upgrade, and change review activities to identify security requirements and reduce security risk in new or modified applications.

~ Works with users, technical staff, and vendors in troubleshooting security-related issues, validating corrective actions, and supporting practical resolutions.

~ Keeps abreast of modern cybersecurity methods, technologies, threats, standards, and software through workshops, seminars, trade journals, professional associations, and self-study.

~ Assists other Information Technology staff in resolving security-related system and application issues and participates in planning, audit support, procurement review, and technical standards activities as requested.

Requirements/Preferences

Education:

Preferred: Associate or bachelor’s degree from an accredited college or university with major course work in cybersecurity, information systems, computer science, information technology, or a related field; or equivalent combination of training, education, and experience that demonstrates the ability to perform the work described.

Experience

Preferred: Experience documenting security findings, supporting remediation activities, reviewing system or application access, and working with business applications, databases, cloud services, SaaS platforms, or vendor-hosted application environments. Experience with assigned business processes and systems, such as Finance, Human Resources, Public Safety, Tax, Billing, Web, or document/content management systems.

Certifications/Licenses

Required: Valid Virginia driver’s license with good driving record. Preferred: Security-related certification.

Knowledge, Skills And Abilities

Working knowledge of principles, practices, and methods used in application security, vulnerability assessment, access control review, risk identification, and remediation support. Working knowledge of authentication and authorization concepts, least-privilege principles, security configuration review, encryption concepts, data protection controls, and common security weaknesses affecting enterprise applications and systems. Working knowledge of current techniques used in systems analysis, business process analysis, interface review, and security documentation. Some knowledge of security assessment tools, reporting methods, issue tracking processes, and risk documentation practices. Skilled in analytical thinking, problem solving, technical documentation, and communication with technical and non-technical personnel. Ability to logically and systematically assess security issues and recommend practical courses of action. Ability to identify, validate, and prioritize vulnerabilities and access-related risks across multiple systems and business processes. Ability to coordinate effectively with system owners, vendors, technical staff, and departmental personnel. Ability to prepare concise and accurate reports, findings summaries, remediation recommendations, and exception documentation. Ability to prioritize and perform work effectively with minimum direction in a complex and fast-paced environment. Ability to learn, understand, and apply new technologies, security tools, and assessment methods. Ability to work independently and in a self-motivated fashion. Ability to communicate both orally and in writing ideas, concepts, recommendations, technical matters, and complex information clearly and concisely in a timely manner, at a level consistent with the audience. Ability to analyze data sufficient to verify and identify problems such as inaccurate, incomplete, or improperly protected information and suggest appropriate solutions. Ability to work well with end-users and other employees in a team-based environment with minimal supervision.

Supervisory Responsibilities

None

Additional Requirements

Must be a United States citizen or a lawful permanent resident of the United States and eligible for naturalization. Subject to a complete criminal history background search with acceptable results. May be subject to DMV driving record review as required by amount of work-related driving, specified by support responsibilities. Must be able to perform the job as described in the Physical and Environmental Demands section of this job description. May need to utilize personal vehicle with mileage reimbursement.

Other Information

Benefits are available to full-time positions only.

Hourly Wage Estimation for Applications Security Analyst in Roanoke, VA
$33.00 to $44.00
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Applications Security Analyst?

Sign up to receive alerts about other jobs on the Applications Security Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Zane State College

  • Zane State College Roanoke, VA
  • General Description Performs responsible recreational and clerical work in accordance with the program standards for children and/or youth at an assigned l... more
  • 11 Days Ago

  • Zane State College The Colony, TX
  • Job Summary The primary function of this position is to conduct jail operations with regards to the safe and secure detention and processing of arrested pe... more
  • 11 Days Ago

  • Zane State College Roanoke, VA
  • General Description Performs routine service work and clerical support in the care, intake and maintenance of stray and owner surrendered animals at the Re... more
  • 13 Days Ago

  • Zane State College Roanoke, VA
  • General Description Performs repetitive manual work involving the efficient cleaning of a Recreation Center/grounds and the performance of project work. Ap... more
  • 14 Days Ago


Not the job you're looking for? Here are some other Applications Security Analyst jobs in the Roanoke, VA area that may be a better fit.

  • Shentel Roanoke, VA
  • Shenandoah Telecommunications Company (“Shentel”) specializes in providing High-Speed Internet and other telecommunications services to customers in the Mi... more
  • 1 Month Ago

  • Optical Cable Corporation Roanoke, VA
  • Security & Technical Support Analyst Basic Function This critical IT role combines security operations and technology support for various business areas at... more
  • 26 Days Ago

AI Assistant is available now!

Feel free to start your new journey!