Boeing Logo

Boeing

Mid-Level Application Security Analyst

Posted 3 Hours Ago
Be an Early Applicant
In-Office
Wichita, KS
Senior level
In-Office
Wichita, KS
Senior level
Leads application security analysis across web, mobile, API, cloud, enterprise, and third-party applications. Evaluates and prioritizes risks, coordinates remediation, validates fixes, supports secure development, prepares metrics and audit evidence, improves security processes, and mentors junior analysts. Collaborates with security leaders, developers, infrastructure teams, compliance, vendors, and business stakeholders to reduce application risk and align practices with organizational standards and regulatory requirements.
The summary above was generated by AI
At Boeing, we innovate and collaborate to make the world a better place. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us.
This role is at Spirit AeroSystems, Inc. a wholly owned subsidiary of The Boeing Company, supporting Spirit's Commercial Business Units ("Spirit Commercial"). Spirit Commercial designs and builds commercial aerostructures, including for Boeing Commercial Airplanes, one of Boeing's three business units and the premier manufacturer of commercial jetliners for decades. Spirit Commercial's core products include fuselages, pylons, nacelles and wing components, with a focus on innovative composite and aluminum manufacturing solutions.
Position Summary
The Application Security Analyst III is an experienced cybersecurity professional responsible for advanced application security analysis, risk-based prioritization, remediation coordination, secure development support, reporting, and process improvement. This role works closely with security leadership, application teams, software developers, infrastructure teams, compliance teams, and business stakeholders to reduce enterprise application risk. The analyst provides technical guidance, supports program maturity, and helps ensure application security practices align with organizational risk tolerance, regulatory requirements, secure development practices, and security standards.
Position Responsibilities:
  • Lead application security analysis across web applications, APIs, mobile applications, enterprise systems, cloud-based applications, and third-party solutions.
  • Evaluate application security findings based on severity, exploitability, data sensitivity, exposure, business impact, compensating controls, and threat context.
  • Develop, coordinate, and validate risk-based remediation efforts for application teams, developers, vendors, and business stakeholders.
  • Support application security metrics, dashboards, executive summaries, and audit evidence.
  • Contribute to application security standards, procedures, playbooks, secure development guidance, and continuous improvement efforts.
  • Provide guidance and mentorship to junior analysts.

Basic Qualifications (Required Skills/Experience):
  • Minimum 5 years of cybersecurity, application security, software development, vulnerability management, security operations, or related experience.
  • Advanced cybersecurity, application security, secure software development, or information security certification. A relevant degree may qualify in lieu of certification.
  • Strong knowledge of application security lifecycle processes, including intake, assessment, analysis, prioritization, remediation, validation, and reporting.
  • Hand-on experience administering, engineering or supporting application security platforms.
  • Ability to assess risk using vulnerability data, threat context, application criticality, data sensitivity, exposure, and business impact.
  • Experience preparing reports, metrics, and recommendations for technical and leadership audiences.
  • Strong analytical, communication, and stakeholder management skills.

Preferred Qualifications (Desired Skills/Experience):
  • Bachelor's degree in cybersecurity, information technology, computer science, software engineering, or a related field.
  • Familiarity with NIST guidelines, CIS Controls, ISO 27002, CMMC, and/or other regulatory and security frameworks.
  • Experience with secure software development lifecycle practices, application architecture review, cloud application security, API security or third-party application risk.
  • Strong understanding of web applications, APIs, authentication, authorization, secure coding, data protection, application architecture, cloud-based applications, and secure configuration practices.
  • Experience with scripting, automation, data analysis and/or API-based reporting.

Drug Free Workplace:
We are a Drug Free Workplace where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria are met as outlined in our policies.
Pay & Benefits:
We strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities.
We also provide eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.
The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements.
Pay is based upon candidate experience and qualifications, as well as market and business considerations.
Summary Pay Range - Mid-Level (Level 3): $88,150 - $135,150
Kansas Tax Credit: Join Spirit AeroSystems' Kansas team and you may be eligible for a $5,000 state of Kansas Aviation tax credit for up to five years. Click here for more information on the tax credit.
Export Control Requirements:
Export Control Requirements: This position must meet export control compliance requirements. To meet export control compliance requirements, a "U.S. Person" as defined by 22 C.F.R. §120.15 is required. "U.S. Person" includes U.S. Citizen, lawful permanent resident, refugee, or asylee.
Equal Opportunity Employer
Boeing is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status or other characteristics protected by law.

Similar Jobs at Boeing

2 Days Ago
In-Office
Senior level
Senior level
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
Lead end-to-end delivery of AI initiatives from discovery and prioritization through production launch and post-launch evaluation. Establish delivery standards, manage plans, risks, dependencies, budgets, and trade-offs, and coordinate business, data science, engineering, infrastructure, architecture, and security teams. Define success metrics, assess AI feasibility, communicate with technical and executive stakeholders, monitor outcomes, and guide iteration. Lead and coach AI delivery resources while improving predictability and execution quality.
Top Skills: Ai/MlAWSAzureCloud-Based Data And Ai PlatformsResponsible Ai
2 Days Ago
In-Office
Mid level
Mid level
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
Develops and maintains budgets, schedules, forecasts, cost reports, and financial analyses for commercial aerospace programs. The role reconciles cost data, analyzes risks and variances, supports compliance and regulatory reporting, communicates with customers and senior management, and contributes to project planning, process improvement, training, and tool troubleshooting.
Top Skills: Crm SystemsMicrosoft AccessExcelSAP
2 Days Ago
In-Office
Junior
Junior
Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
Set up, operate, inspect, and maintain conventional and CNC machines to produce precision aerospace parts. Responsibilities include multi-axis machining, milling, drilling, boring, grinding, measurement, quality documentation, nonconformance reporting, material movement, and basic machine maintenance. The role requires cross-training in inspection, supporting production flow, and working any shift, including alternative work weeks.
Top Skills: 5-Axis Cnc MachiningCnc MachiningCnc ProgrammingConventional MachiningDmg MoriHaasMazakModigMulti-Axis MachiningOkuma

What you need to know about the Toronto Tech Scene

Although home to some of the biggest names in tech, including Google, Microsoft and Amazon, Toronto has established itself as one of the largest startup ecosystems in the world. And with over 2,000 startups — more than 30 percent of the country's total startups — Toronto continues to attract new businesses. Be it helping entrepreneurs manage their finances, simplifying business operations by automating payroll or assisting pharmaceutical companies in launching new drugs, the city's tech scene is just getting started.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account