Cybersecurity Engineer 3 - AI Security Analyst


ChaTeck Incorporated
Dice Job Match Score™
🔢 Crunching numbers...
Job Details
Skills
- DevSecOps
- Cybersecurity
- SDLC
- Agile
- Scrum
- Burp Suite
- GitHub
- CodeQL
- SAST
- SCA
- CI/CD
Summary
Location: Denver, CO
Let’s create our future together at The AES Group!
About The AES Group
The AES Group is a premier technology and engineering consulting company that has been bringing businesses and talent together for over 20 years to deliver innovative solutions that have the greatest positive impact on society. AES has helped over 40 business enterprises, including Fortune 500 companies, engage their customers, empower their employees, and transform their business operations with the power of cloud, data, AI, engineering, and other emerging technologies.
Position Overview
Our client is seeking a Cybersecurity Engineer 3 – AI Security Analyst to strengthen application security across the software development lifecycle. This role will perform security assessments, vulnerability analysis, remediation, secure code review, and security automation across applications, APIs, cloud workloads, repositories, and infrastructure.
The ideal candidate will bring strong Application Security / DevSecOps experience, hands-on knowledge of security scanning and vulnerability management, and the ability to work with Java and Python code. Experience using AI-assisted security tools to improve threat modeling, code review, vulnerability validation, and remediation is highly valuable.
Key Responsibilities
- Embed application security practices into the SDLC, including security standards, workflows, processes, and Definition of Done criteria.
- Perform application, API, cloud, repository, and infrastructure security assessments using traditional and AI-assisted security techniques.
- Manage SAST, SCA, secret scanning, dependency analysis, and infrastructure security scanning.
- Use GitHub Advanced Security, CodeQL, Burp Suite, and other approved security tools to identify and validate vulnerabilities.
- Analyze and prioritize findings based on exploitability, severity, business impact, compensating controls, and remediation requirements.
- Drive vulnerabilities from discovery through remediation, retesting, evidence collection, and verified closure.
- Identify and reduce security debt, dependency vulnerabilities, open-source risks, and software supply-chain exposure.
- Perform manual security testing, secure code review, API testing, and vulnerability validation.
- Apply OWASP Top 10, API Security Top 10, authentication/authorization, and secure coding principles.
- Read, analyze, test, and modify Java and Python application code to validate findings and support remediation.
- Support remediation through code fixes, configuration changes, infrastructure updates, and compensating controls.
- Develop security metrics, coverage reports, dashboards, and portfolio-level security insights.
- Safely leverage AI tools for security analysis, threat modeling, code review, vulnerability validation, documentation, and remediation guidance.
- Collaborate with architects, developers, DevOps engineers, product owners, and business stakeholders to communicate risks and drive remediation.
- Participate in Agile/Scrum ceremonies and maintain security-related stories, tasks, defects, and backlog items.
- Provide security coaching, knowledge sharing, and best-practice guidance to application teams.
Required Qualifications
- 5–7 years of hands-on Application Security / DevSecOps experience.
- Bachelor’s or Master’s degree in Computer Science, Cybersecurity, Information Systems, or related field; equivalent practical experience may be considered.
- Strong experience with Secure SDLC, DevSecOps, Agile, and Scrum.
- Hands-on experience with:
- Burp Suite
- GitHub Advanced Security
- CodeQL
- SAST / SCA
- Secret Scanning
- Dependency Analysis
- CI/CD Security
- Ability to analyze and modify Java and Python code for security validation and remediation.
- Strong understanding of OWASP Top 10 and API Security Top 10.
- Experience with cloud security, IAM, APIs, and modern application architectures.
- Strong vulnerability triage, validation, prioritization, and remediation experience.
- Understanding of responsible and secure use of AI-assisted development/security tools.
- Strong communication, stakeholder management, documentation, and problem-solving skills.
- Ability to work independently across multiple applications, teams, and technology stacks.
- Dice Id: 10230026
- Position Id: 683-15984-1788280451
- Posted 1 hour ago
Company Info
About ChaTeck Incorporated
ChaTeck Inc, located in Santa Clara, CA formed by a team of highly experienced software architects, Managers and technology professional who have implemented numerous projects for fortune 50 companies for over a decade.
Our mission is to provide fast paced and efficient solutions in the area of e-commerce, Business Intelligence, Data Warehouse, m-commerce, application development and integration, database development, CRM and Mobile computing.


Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs